CISA Known Exploited Vulnerability
This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.
Remediation Deadline: Jul 28, 2022
High
CISA KEVCVE-2014-7169
GNU—Bourne-Again Shell (Bash)
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute code. This CVE correctly remediates the vulnerability in CVE-2014-6271.
Required Action
https://nvd.nist.gov/vuln/detail/CVE-2014-7169
Vulnerability Overview
- Severity
- High
- CISA KEV
- Yes
- Ransomware
- Unknown
- Published
- Jan 28, 2022
- KEV Added
- Jan 28, 2022
- Due Date
- Jul 28, 2022
- Related Articles
- 0
Vendor
GNU
Bourne-Again Shell (Bash)