Lucene search

K
osvGoogleOSV:DSA-3032-1
HistorySep 24, 2014 - 12:00 a.m.

bash - security update

2014-09-2400:00:00
Google
osv.dev
21

0.976 High

EPSS

Percentile

100.0%

Stephane Chazelas discovered a vulnerability in bash, the GNU
Bourne-Again Shell, related to how environment variables are
processed. In many common configurations, this vulnerability is
exploitable over the network, especially if bash has been configured
as the system shell.

For the stable distribution (wheezy), this problem has been fixed in
version 4.2+dfsg-0.1+deb7u1.

We recommend that you upgrade your bash packages.

CPENameOperatorVersion
basheq4.2+dfsg-0.1