CVE-2019-9924
22.03.2019, 08:29
rbash in Bash before 4.4-beta2 did not prevent the shell user from modifying BASH_CMDS, thus allowing the user to execute any command with the permissions of the shell.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| gnu | bash | 𝑥 < 4.4 |
| gnu | bash | 4.4:beta1 |
| debian | debian_linux | 8.0 |
| opensuse | leap | 42.3 |
| netapp | hci_management_node | - |
| netapp | solidfire | - |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 16.04 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| bash |
| ||||||||||||||||||
| bash-doc |
| ||||||||||||||||||
| libreadline6 |
| ||||||||||||||||||
| libreadline6-32bit |
| ||||||||||||||||||
| readline-doc |
|
Red Hat Enterprise Linux Releases
Common Weakness Enumeration
References