CVE-2016-0634
28.08.2017, 15:29
The expansion of '\h' in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in 'hostname' of a machine.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gnu | bash | 4.3 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| bash |
|
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| bash |
| ||||||||||||||
| bash-doc |
| ||||||||||||||
| libreadline6 |
| ||||||||||||||
| libreadline6-32bit |
| ||||||||||||||
| readline-doc |
|
Red Hat Enterprise Linux Releases
References