CVE-2014-7169
Description
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute code. This CVE correctly remediates the vulnerability in CVE-2014-6271.
CISA KEV
- Vendor
- GNU
- Product
- Bourne-Again Shell (Bash)
- Due date
- 2022-07-28
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or — if you've already worked around this in production — publish your fix to the community-verified tier.
✚ Propose a mitigation on Community → Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
Exploits
Public proof-of-concept code below. AS-IS, for defenders and authorised testing only.
Exploit-DB
dhclient 4.1 - Bash Environment Variable Command Injection (Shellshock)
OpenVPN 2.2.29 - 'Shellshock' Remote Command Injection
Postfix SMTP 4.2.x < 4.2.48 - 'Shellshock' Remote Command Injection
Pure-FTPd - External Authentication Bash Environment Variable Code Injection (Metasploit)
PHP < 5.6.2 - 'Shellshock' Safe Mode / disable_functions Bypass / Command Injection
IPFire - CGI Web Interface (Authenticated) Bash Environment Variable Code Injection
GNU Bash - Environment Variable Command Injection (Metasploit)
Bash CGI - 'Shellshock' Remote Command Injection (Metasploit)
QNAP - Admin Shell via Bash Environment Variable Code Injection (Metasploit)
QNAP - Web Server Remote Code Execution via Bash Environment Variable Code Injection (Metasploit)
Bash - 'Shellshock' Environment Variables Command Injection
CUPS Filter - Bash Environment Variable Code Injection (Metasploit)
GNU Bash - 'Shellshock' Environment Variable Command Injection
GNU bash 4.3.11 - Environment Variable dhclient
Kemp Load Master 7.1.16 - Multiple Vulnerabilities
OS impact
Debian Fixed 5 releases
| Version | Status | Fixed in |
|---|---|---|
| trixie | Fixed | 4.3-9.2 |
| sid | Fixed | 4.3-9.2 |
| forky | Fixed | 4.3-9.2 |
| bullseye | Fixed | 4.3-9.2 |
| bookworm | Fixed | 4.3-9.2 |
References
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.