IM
IronMonkey Threat Research

CVE-2014-7186 HIGH

Published: 2014-09-28 | Last Modified: 2026-06-17 | Status: Modified

Description

The redirection implementation in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted use of here documents, aka the "redir_stack" issue.

Additional Descriptions (1)

La implementación de redirección en parse.y en GNU Bash hasta 4.3 bash43-026 permite a atacantes remotos causar una denegación de servicio (acceso a array fuera de rango y caída de la aplicación) o posiblemente tener otro impacto no especificado a través de el uso manipulado de documentos here, también conocido como el problema 'redir_stack'.

CVSS Metrics

Base Score: 10.0 (HIGH)

AV:N/AC:L/Au:N/C:C/I:C/A:C

Access VectorNETWORK
Access ComplexityLOW
AuthenticationNONE
Confidentiality ImpactCOMPLETE
Integrity ImpactCOMPLETE
Availability ImpactCOMPLETE

Source: [email protected]

Type: Primary

Exploitability Score: 10.0

Impact Score: 10.0

Weaknesses

Source Type Description
[email protected] Primary
en CWE-119

Affected Products

Vendor Product Version Update Type
gnu bash 1.14.0 <built-in method update of dict object at 0x7e60a87b5800> Application
gnu bash 1.14.1 <built-in method update of dict object at 0x7e60a87b7700> Application
gnu bash 1.14.2 <built-in method update of dict object at 0x7e60a87b7a80> Application
gnu bash 1.14.3 <built-in method update of dict object at 0x7e60a888da80> Application
gnu bash 1.14.4 <built-in method update of dict object at 0x7e60a87b7f00> Application
gnu bash 1.14.5 <built-in method update of dict object at 0x7e60a888eb00> Application
gnu bash 1.14.6 <built-in method update of dict object at 0x7e60ba0aed80> Application
gnu bash 1.14.7 <built-in method update of dict object at 0x7e60a87b5e80> Application
gnu bash 2.0 <built-in method update of dict object at 0x7e60a888e980> Application
gnu bash 2.01 <built-in method update of dict object at 0x7e60a87b57c0> Application
gnu bash 2.01.1 <built-in method update of dict object at 0x7e60a87b7800> Application
gnu bash 2.02 <built-in method update of dict object at 0x7e60a87b5c40> Application
gnu bash 2.02.1 <built-in method update of dict object at 0x7e6134293b40> Application
gnu bash 2.03 <built-in method update of dict object at 0x7e613c3cd700> Application
gnu bash 2.04 <built-in method update of dict object at 0x7e60a87b5900> Application
gnu bash 2.05 <built-in method update of dict object at 0x7e60a87b4340> Application
gnu bash 2.05 <built-in method update of dict object at 0x7e60a87b5000> Application
gnu bash 2.05 <built-in method update of dict object at 0x7e60a87b4e40> Application
gnu bash 3.0 <built-in method update of dict object at 0x7e6108407d40> Application
gnu bash 3.0.16 <built-in method update of dict object at 0x7e6107f3b840> Application
gnu bash 3.1 <built-in method update of dict object at 0x7e60a87b6600> Application
gnu bash 3.2 <built-in method update of dict object at 0x7e60a87b4600> Application
gnu bash 3.2.48 <built-in method update of dict object at 0x7e60a87b6100> Application
gnu bash 4.0 <built-in method update of dict object at 0x7e60a87b4480> Application
gnu bash 4.0 <built-in method update of dict object at 0x7e611232dc80> Application
gnu bash 4.1 <built-in method update of dict object at 0x7e60ba0add00> Application
gnu bash 4.2 <built-in method update of dict object at 0x7e613c3cc600> Application
gnu bash 4.3 <built-in method update of dict object at 0x7e60b9fb5e80> Application

Affected Configurations

Operator: OR

Vulnerable CPE
Yes cpe:2.3:a:gnu:bash:1.14.0:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:1.14.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:1.14.2:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:1.14.3:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:1.14.4:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:1.14.5:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:1.14.6:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:1.14.7:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:2.0:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:2.01:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:2.01.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:2.02:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:2.02.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:2.03:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:2.04:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:2.05:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:2.05:a:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:2.05:b:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:3.0:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:3.0.16:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:3.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:3.2:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:3.2.48:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:4.0:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:4.0:rc1:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:4.1:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:4.2:*:*:*:*:*:*:*
Yes cpe:2.3:a:gnu:bash:4.3:*:*:*:*:*:*:*

References

Notification
Message here