Search

Find a vulnerability

Search criteria

    36 vulnerabilities found for bash by gnu

    CVE-2022-3715 (GCVE-0-2022-3715)

    Vulnerability from nvd – Published: 2023-01-05 00:00 – Updated: 2025-11-03 21:46
    VLAI
    Summary
    A flaw was found in the bash package, where a heap-buffer overflow can occur in valid parameter_transform. This issue may lead to memory problems.
    SSVC
    Exploitation: poc Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-04-10 14:57 UTC
    CWE
    Impacted products
    Vendor Product Version
    n/a bash Affected: bash 5.1.8
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2025-11-03T21:46:30.575Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2126720"
              },
              {
                "url": "https://security.netapp.com/advisory/ntap-20241108-0002/"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "LOCAL",
                  "availabilityImpact": "HIGH",
                  "baseScore": 7.8,
                  "baseSeverity": "HIGH",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "LOW",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2022-3715",
                    "options": [
                      {
                        "Exploitation": "poc"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-04-10T14:57:24.142960Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-04-10T14:57:58.294Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "bash",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "bash 5.1.8"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "A flaw was found in the bash package, where a heap-buffer overflow can occur in valid parameter_transform. This issue may lead to memory problems."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-119",
                  "description": "CWE-119",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2023-01-05T00:00:00.000Z",
            "orgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
            "shortName": "redhat"
          },
          "references": [
            {
              "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2126720"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
        "assignerShortName": "redhat",
        "cveId": "CVE-2022-3715",
        "datePublished": "2023-01-05T00:00:00.000Z",
        "dateReserved": "2022-10-27T00:00:00.000Z",
        "dateUpdated": "2025-11-03T21:46:30.575Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2019-18276 (GCVE-0-2019-18276)

    Vulnerability from nvd – Published: 2019-11-28 00:27 – Updated: 2025-06-09 15:51
    VLAI
    Summary
    An issue was discovered in disable_priv_mode in shell.c in GNU Bash through 5.0 patch 11. By default, if Bash is run with its effective UID not equal to its real UID, it will drop privileges by setting its effective UID to its real UID. However, it does so incorrectly. On Linux and other systems that support "saved UID" functionality, the saved UID is not dropped. An attacker with command execution in the shell can use "enable -f" for runtime loading of a new builtin, which can be a shared object that calls setuid() and therefore regains privileges. However, binaries running with an effective UID of 0 are unaffected.
    SSVC
    Exploitation: poc Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-06-09 15:50 UTC
    CWE
    • n/a
    • CWE-273 - Improper Check for Dropped Privileges
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-05T01:47:14.188Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "[mina-dev] 20210225 [jira] [Created] (FTPSERVER-500) Security vulnerability in common/lib/log4j-1.2.17.jar",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E"
              },
              {
                "name": "GLSA-202105-34",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_GENTOO",
                  "x_transferred"
                ],
                "url": "https://security.gentoo.org/glsa/202105-34"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://www.oracle.com/security-alerts/cpuapr2022.html"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://www.youtube.com/watch?v=-wGtxJ8opa8"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://github.com/bminor/bash/commit/951bdaad7a18cc0dc1036bba86b18b90874d39ff"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/155498/Bash-5.0-Patch-11-Privilege-Escalation.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://security.netapp.com/advisory/ntap-20200430-0003/"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "LOCAL",
                  "availabilityImpact": "HIGH",
                  "baseScore": 7.8,
                  "baseSeverity": "HIGH",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "LOW",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2019-18276",
                    "options": [
                      {
                        "Exploitation": "poc"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-06-09T15:50:29.163562Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-273",
                    "description": "CWE-273 Improper Check for Dropped Privileges",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-06-09T15:51:35.168Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "An issue was discovered in disable_priv_mode in shell.c in GNU Bash through 5.0 patch 11. By default, if Bash is run with its effective UID not equal to its real UID, it will drop privileges by setting its effective UID to its real UID. However, it does so incorrectly. On Linux and other systems that support \"saved UID\" functionality, the saved UID is not dropped. An attacker with command execution in the shell can use \"enable -f\" for runtime loading of a new builtin, which can be a shared object that calls setuid() and therefore regains privileges. However, binaries running with an effective UID of 0 are unaffected."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2022-04-19T23:20:34.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "name": "[mina-dev] 20210225 [jira] [Created] (FTPSERVER-500) Security vulnerability in common/lib/log4j-1.2.17.jar",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E"
            },
            {
              "name": "GLSA-202105-34",
              "tags": [
                "vendor-advisory",
                "x_refsource_GENTOO"
              ],
              "url": "https://security.gentoo.org/glsa/202105-34"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://www.oracle.com/security-alerts/cpuapr2022.html"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://www.youtube.com/watch?v=-wGtxJ8opa8"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://github.com/bminor/bash/commit/951bdaad7a18cc0dc1036bba86b18b90874d39ff"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/155498/Bash-5.0-Patch-11-Privilege-Escalation.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://security.netapp.com/advisory/ntap-20200430-0003/"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2019-18276",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "An issue was discovered in disable_priv_mode in shell.c in GNU Bash through 5.0 patch 11. By default, if Bash is run with its effective UID not equal to its real UID, it will drop privileges by setting its effective UID to its real UID. However, it does so incorrectly. On Linux and other systems that support \"saved UID\" functionality, the saved UID is not dropped. An attacker with command execution in the shell can use \"enable -f\" for runtime loading of a new builtin, which can be a shared object that calls setuid() and therefore regains privileges. However, binaries running with an effective UID of 0 are unaffected."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "[mina-dev] 20210225 [jira] [Created] (FTPSERVER-500) Security vulnerability in common/lib/log4j-1.2.17.jar",
                  "refsource": "MLIST",
                  "url": "https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772@%3Cdev.mina.apache.org%3E"
                },
                {
                  "name": "GLSA-202105-34",
                  "refsource": "GENTOO",
                  "url": "https://security.gentoo.org/glsa/202105-34"
                },
                {
                  "name": "https://www.oracle.com/security-alerts/cpuapr2022.html",
                  "refsource": "MISC",
                  "url": "https://www.oracle.com/security-alerts/cpuapr2022.html"
                },
                {
                  "name": "https://www.youtube.com/watch?v=-wGtxJ8opa8",
                  "refsource": "MISC",
                  "url": "https://www.youtube.com/watch?v=-wGtxJ8opa8"
                },
                {
                  "name": "https://github.com/bminor/bash/commit/951bdaad7a18cc0dc1036bba86b18b90874d39ff",
                  "refsource": "CONFIRM",
                  "url": "https://github.com/bminor/bash/commit/951bdaad7a18cc0dc1036bba86b18b90874d39ff"
                },
                {
                  "name": "http://packetstormsecurity.com/files/155498/Bash-5.0-Patch-11-Privilege-Escalation.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/155498/Bash-5.0-Patch-11-Privilege-Escalation.html"
                },
                {
                  "name": "https://security.netapp.com/advisory/ntap-20200430-0003/",
                  "refsource": "CONFIRM",
                  "url": "https://security.netapp.com/advisory/ntap-20200430-0003/"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2019-18276",
        "datePublished": "2019-11-28T00:27:51.000Z",
        "dateReserved": "2019-10-23T00:00:00.000Z",
        "dateUpdated": "2025-06-09T15:51:35.168Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2012-6711 (GCVE-0-2012-6711)

    Vulnerability from nvd – Published: 2019-06-18 17:34 – Updated: 2024-08-06 21:36
    VLAI
    Summary
    A heap-based buffer overflow exists in GNU Bash before 4.3 when wide characters, not supported by the current locale set in the LC_CTYPE environment variable, are printed through the echo built-in function. A local attacker, who can provide data to print through the "echo -e" built-in function, may use this flaw to crash a script or execute code with the privileges of the bash process. This occurs because ansicstr() in lib/sh/strtrans.c mishandles u32cconv().
    CWE
    • n/a
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T21:36:02.224Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1721071"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://git.savannah.gnu.org/cgit/bash.git/commit/?h=devel\u0026id=863d31ae775d56b785dc5b0105b6d251515d81d5"
              },
              {
                "name": "108824",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/108824"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/csp/article/K05122252"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/csp/article/K05122252?utm_source=f5support\u0026amp%3Butm_medium=RSS"
              },
              {
                "name": "USN-4180-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "https://usn.ubuntu.com/4180-1/"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "A heap-based buffer overflow exists in GNU Bash before 4.3 when wide characters, not supported by the current locale set in the LC_CTYPE environment variable, are printed through the echo built-in function. A local attacker, who can provide data to print through the \"echo -e\" built-in function, may use this flaw to crash a script or execute code with the privileges of the bash process. This occurs because ansicstr() in lib/sh/strtrans.c mishandles u32cconv()."
            }
          ],
          "metrics": [
            {
              "cvssV3_0": {
                "attackComplexity": "HIGH",
                "attackVector": "LOCAL",
                "availabilityImpact": "HIGH",
                "baseScore": 7,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.0/AC:H/AV:L/A:H/C:H/I:H/PR:L/S:U/UI:N",
                "version": "3.0"
              }
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2019-11-11T15:06:56.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1721071"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://git.savannah.gnu.org/cgit/bash.git/commit/?h=devel\u0026id=863d31ae775d56b785dc5b0105b6d251515d81d5"
            },
            {
              "name": "108824",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/108824"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/csp/article/K05122252"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/csp/article/K05122252?utm_source=f5support\u0026amp%3Butm_medium=RSS"
            },
            {
              "name": "USN-4180-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "https://usn.ubuntu.com/4180-1/"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2012-6711",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "A heap-based buffer overflow exists in GNU Bash before 4.3 when wide characters, not supported by the current locale set in the LC_CTYPE environment variable, are printed through the echo built-in function. A local attacker, who can provide data to print through the \"echo -e\" built-in function, may use this flaw to crash a script or execute code with the privileges of the bash process. This occurs because ansicstr() in lib/sh/strtrans.c mishandles u32cconv()."
                }
              ]
            },
            "impact": {
              "cvss": {
                "attackComplexity": "HIGH",
                "attackVector": "LOCAL",
                "availabilityImpact": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.0/AC:H/AV:L/A:H/C:H/I:H/PR:L/S:U/UI:N",
                "version": "3.0"
              }
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1721071",
                  "refsource": "MISC",
                  "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1721071"
                },
                {
                  "name": "http://git.savannah.gnu.org/cgit/bash.git/commit/?h=devel\u0026id=863d31ae775d56b785dc5b0105b6d251515d81d5",
                  "refsource": "MISC",
                  "url": "http://git.savannah.gnu.org/cgit/bash.git/commit/?h=devel\u0026id=863d31ae775d56b785dc5b0105b6d251515d81d5"
                },
                {
                  "name": "108824",
                  "refsource": "BID",
                  "url": "http://www.securityfocus.com/bid/108824"
                },
                {
                  "name": "https://support.f5.com/csp/article/K05122252",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/csp/article/K05122252"
                },
                {
                  "name": "https://support.f5.com/csp/article/K05122252?utm_source=f5support\u0026amp;utm_medium=RSS",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/csp/article/K05122252?utm_source=f5support\u0026amp;utm_medium=RSS"
                },
                {
                  "name": "USN-4180-1",
                  "refsource": "UBUNTU",
                  "url": "https://usn.ubuntu.com/4180-1/"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2012-6711",
        "datePublished": "2019-06-18T17:34:08.000Z",
        "dateReserved": "2019-06-18T00:00:00.000Z",
        "dateUpdated": "2024-08-06T21:36:02.224Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2019-9924 (GCVE-0-2019-9924)

    Vulnerability from nvd – Published: 2019-03-22 07:05 – Updated: 2024-08-04 22:01
    VLAI
    Summary
    rbash in Bash before 4.4-beta2 did not prevent the shell user from modifying BASH_CMDS, thus allowing the user to execute any command with the permissions of the shell.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-04T22:01:55.187Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://bugs.launchpad.net/ubuntu/+source/bash/+bug/1803441"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://git.savannah.gnu.org/cgit/bash.git/tree/CHANGES?h=bash-4.4-testing#n65"
              },
              {
                "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
              },
              {
                "name": "openSUSE-SU-2019:1178",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00049.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://security.netapp.com/advisory/ntap-20190411-0001/"
              },
              {
                "name": "USN-4058-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "https://usn.ubuntu.com/4058-1/"
              },
              {
                "name": "USN-4058-2",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "https://usn.ubuntu.com/4058-2/"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "rbash in Bash before 4.4-beta2 did not prevent the shell user from modifying BASH_CMDS, thus allowing the user to execute any command with the permissions of the shell."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2019-08-05T17:06:08.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://bugs.launchpad.net/ubuntu/+source/bash/+bug/1803441"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://git.savannah.gnu.org/cgit/bash.git/tree/CHANGES?h=bash-4.4-testing#n65"
            },
            {
              "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
            },
            {
              "name": "openSUSE-SU-2019:1178",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00049.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://security.netapp.com/advisory/ntap-20190411-0001/"
            },
            {
              "name": "USN-4058-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "https://usn.ubuntu.com/4058-1/"
            },
            {
              "name": "USN-4058-2",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "https://usn.ubuntu.com/4058-2/"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2019-9924",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "rbash in Bash before 4.4-beta2 did not prevent the shell user from modifying BASH_CMDS, thus allowing the user to execute any command with the permissions of the shell."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "https://bugs.launchpad.net/ubuntu/+source/bash/+bug/1803441",
                  "refsource": "MISC",
                  "url": "https://bugs.launchpad.net/ubuntu/+source/bash/+bug/1803441"
                },
                {
                  "name": "http://git.savannah.gnu.org/cgit/bash.git/tree/CHANGES?h=bash-4.4-testing#n65",
                  "refsource": "MISC",
                  "url": "http://git.savannah.gnu.org/cgit/bash.git/tree/CHANGES?h=bash-4.4-testing#n65"
                },
                {
                  "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
                  "refsource": "MLIST",
                  "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
                },
                {
                  "name": "openSUSE-SU-2019:1178",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00049.html"
                },
                {
                  "name": "https://security.netapp.com/advisory/ntap-20190411-0001/",
                  "refsource": "CONFIRM",
                  "url": "https://security.netapp.com/advisory/ntap-20190411-0001/"
                },
                {
                  "name": "USN-4058-1",
                  "refsource": "UBUNTU",
                  "url": "https://usn.ubuntu.com/4058-1/"
                },
                {
                  "name": "USN-4058-2",
                  "refsource": "UBUNTU",
                  "url": "https://usn.ubuntu.com/4058-2/"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2019-9924",
        "datePublished": "2019-03-22T07:05:28.000Z",
        "dateReserved": "2019-03-22T00:00:00.000Z",
        "dateUpdated": "2024-08-04T22:01:55.187Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2016-0634 (GCVE-0-2016-0634)

    Vulnerability from nvd – Published: 2017-08-28 15:00 – Updated: 2024-10-04 17:00
    VLAI
    Summary
    The expansion of '\h' in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in 'hostname' of a machine.
    Severity
    No CVSS data available.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-10-04 15:39 UTC
    CWE
    • n/a
    Date Public
    2016-09-16 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-05T22:22:55.842Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "[oss-security] 20160927 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/27/9"
              },
              {
                "name": "[oss-security] 20160916 CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/16/8"
              },
              {
                "name": "RHSA-2017:0725",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
              },
              {
                "name": "[oss-security] 20160929 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/29/27"
              },
              {
                "name": "[oss-security] 20160920 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/20/1"
              },
              {
                "name": "92999",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/92999"
              },
              {
                "name": "RHSA-2017:1931",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/errata/RHSA-2017:1931"
              },
              {
                "name": "[oss-security] 20161007 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/10/07/6"
              },
              {
                "name": "[oss-security] 20160918 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/18/11"
              },
              {
                "name": "[oss-security] 20160919 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/19/7"
              },
              {
                "name": "[oss-security] 20161010 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/10/10/4"
              },
              {
                "name": "[oss-security] 20160916 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/16/12"
              },
              {
                "name": "GLSA-201612-39",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_GENTOO",
                  "x_transferred"
                ],
                "url": "https://security.gentoo.org/glsa/201612-39"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1377613"
              },
              {
                "name": "[oss-security] 20161010 RE: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/10/10/3"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2016-0634",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-10-04T15:39:15.651571Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-10-04T17:00:57.944Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2016-09-16T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "The expansion of \u0027\\h\u0027 in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in \u0027hostname\u0027 of a machine."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2018-01-04T19:57:01.000Z",
            "orgId": "43595867-4340-4103-b7a2-9a5208d29a85",
            "shortName": "oracle"
          },
          "references": [
            {
              "name": "[oss-security] 20160927 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/27/9"
            },
            {
              "name": "[oss-security] 20160916 CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/16/8"
            },
            {
              "name": "RHSA-2017:0725",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
            },
            {
              "name": "[oss-security] 20160929 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/29/27"
            },
            {
              "name": "[oss-security] 20160920 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/20/1"
            },
            {
              "name": "92999",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/92999"
            },
            {
              "name": "RHSA-2017:1931",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "https://access.redhat.com/errata/RHSA-2017:1931"
            },
            {
              "name": "[oss-security] 20161007 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/10/07/6"
            },
            {
              "name": "[oss-security] 20160918 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/18/11"
            },
            {
              "name": "[oss-security] 20160919 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/19/7"
            },
            {
              "name": "[oss-security] 20161010 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/10/10/4"
            },
            {
              "name": "[oss-security] 20160916 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/16/12"
            },
            {
              "name": "GLSA-201612-39",
              "tags": [
                "vendor-advisory",
                "x_refsource_GENTOO"
              ],
              "url": "https://security.gentoo.org/glsa/201612-39"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1377613"
            },
            {
              "name": "[oss-security] 20161010 RE: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/10/10/3"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "secalert_us@oracle.com",
              "ID": "CVE-2016-0634",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "The expansion of \u0027\\h\u0027 in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in \u0027hostname\u0027 of a machine."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "[oss-security] 20160927 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/27/9"
                },
                {
                  "name": "[oss-security] 20160916 CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/16/8"
                },
                {
                  "name": "RHSA-2017:0725",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
                },
                {
                  "name": "[oss-security] 20160929 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/29/27"
                },
                {
                  "name": "[oss-security] 20160920 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/20/1"
                },
                {
                  "name": "92999",
                  "refsource": "BID",
                  "url": "http://www.securityfocus.com/bid/92999"
                },
                {
                  "name": "RHSA-2017:1931",
                  "refsource": "REDHAT",
                  "url": "https://access.redhat.com/errata/RHSA-2017:1931"
                },
                {
                  "name": "[oss-security] 20161007 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/10/07/6"
                },
                {
                  "name": "[oss-security] 20160918 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/18/11"
                },
                {
                  "name": "[oss-security] 20160919 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/19/7"
                },
                {
                  "name": "[oss-security] 20161010 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/10/10/4"
                },
                {
                  "name": "[oss-security] 20160916 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/16/12"
                },
                {
                  "name": "GLSA-201612-39",
                  "refsource": "GENTOO",
                  "url": "https://security.gentoo.org/glsa/201612-39"
                },
                {
                  "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1377613",
                  "refsource": "CONFIRM",
                  "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1377613"
                },
                {
                  "name": "[oss-security] 20161010 RE: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/10/10/3"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "43595867-4340-4103-b7a2-9a5208d29a85",
        "assignerShortName": "oracle",
        "cveId": "CVE-2016-0634",
        "datePublished": "2017-08-28T15:00:00.000Z",
        "dateReserved": "2015-12-09T00:00:00.000Z",
        "dateUpdated": "2024-10-04T17:00:57.944Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2017-5932 (GCVE-0-2017-5932)

    Vulnerability from nvd – Published: 2017-03-27 15:00 – Updated: 2024-08-05 15:18
    VLAI
    Summary
    The path autocompletion feature in Bash 4.4 allows local users to gain privileges via a crafted filename starting with a " (double quote) character and a command substitution metacharacter.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    Date Public
    2017-01-20 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-05T15:18:48.374Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://git.savannah.gnu.org/cgit/bash.git/commit/?id=4f747edc625815f449048579f6e65869914dd715"
              },
              {
                "name": "[bug-bash] 20170120  Bash-4.4 Official Patch 7",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "https://lists.gnu.org/archive/html/bug-bash/2017-01/msg00034.html"
              },
              {
                "name": "[oss-security] 20170207 Re: CVE Request - Code execution vulnerability in GNU/bash v4.4 autocompletion",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2017/02/08/3"
              },
              {
                "name": "96136",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/96136"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2017-01-20T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "The path autocompletion feature in Bash 4.4 allows local users to gain privileges via a crafted filename starting with a \" (double quote) character and a command substitution metacharacter."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2017-03-27T14:57:01.000Z",
            "orgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
            "shortName": "redhat"
          },
          "references": [
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://git.savannah.gnu.org/cgit/bash.git/commit/?id=4f747edc625815f449048579f6e65869914dd715"
            },
            {
              "name": "[bug-bash] 20170120  Bash-4.4 Official Patch 7",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "https://lists.gnu.org/archive/html/bug-bash/2017-01/msg00034.html"
            },
            {
              "name": "[oss-security] 20170207 Re: CVE Request - Code execution vulnerability in GNU/bash v4.4 autocompletion",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2017/02/08/3"
            },
            {
              "name": "96136",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/96136"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
        "assignerShortName": "redhat",
        "cveId": "CVE-2017-5932",
        "datePublished": "2017-03-27T15:00:00.000Z",
        "dateReserved": "2017-02-07T00:00:00.000Z",
        "dateUpdated": "2024-08-05T15:18:48.374Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2016-9401 (GCVE-0-2016-9401)

    Vulnerability from nvd – Published: 2017-01-23 21:00 – Updated: 2025-08-06 21:12
    VLAI
    Summary
    popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address.
    SSVC
    Exploitation: poc Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-08-06 21:11 UTC
    CWE
    References
    URL Tags
    http://rhn.redhat.com/errata/RHSA-2017-0725.html vendor-advisoryx_refsource_REDHAT
    https://access.redhat.com/errata/RHSA-2017:1931 vendor-advisoryx_refsource_REDHAT
    http://www.openwall.com/lists/oss-security/2016/11/17/5 mailing-listx_refsource_MLIST
    http://www.openwall.com/lists/oss-security/2016/11/17/9 mailing-listx_refsource_MLIST
    http://www.securityfocus.com/bid/94398 vdb-entryx_refsource_BID
    https://security.gentoo.org/glsa/201701-02 vendor-advisoryx_refsource_GENTOO
    https://lists.debian.org/debian-lts-announce/2019… mailing-listx_refsource_MLIST
    Date Public
    2016-11-17 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T02:50:37.655Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "RHSA-2017:0725",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
              },
              {
                "name": "RHSA-2017:1931",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/errata/RHSA-2017:1931"
              },
              {
                "name": "[oss-security] 20161117 bash - popd controlled free",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/11/17/5"
              },
              {
                "name": "[oss-security] 20161117 Re: bash - popd controlled free",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/11/17/9"
              },
              {
                "name": "94398",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/94398"
              },
              {
                "name": "GLSA-201701-02",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_GENTOO",
                  "x_transferred"
                ],
                "url": "https://security.gentoo.org/glsa/201701-02"
              },
              {
                "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "LOCAL",
                  "availabilityImpact": "HIGH",
                  "baseScore": 6.2,
                  "baseSeverity": "MEDIUM",
                  "confidentialityImpact": "NONE",
                  "integrityImpact": "NONE",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2016-9401",
                    "options": [
                      {
                        "Exploitation": "poc"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-08-06T21:11:48.635928Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-416",
                    "description": "CWE-416 Use After Free",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-08-06T21:12:45.629Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2016-11-17T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2019-03-25T13:06:16.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "name": "RHSA-2017:0725",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
            },
            {
              "name": "RHSA-2017:1931",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "https://access.redhat.com/errata/RHSA-2017:1931"
            },
            {
              "name": "[oss-security] 20161117 bash - popd controlled free",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/11/17/5"
            },
            {
              "name": "[oss-security] 20161117 Re: bash - popd controlled free",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/11/17/9"
            },
            {
              "name": "94398",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/94398"
            },
            {
              "name": "GLSA-201701-02",
              "tags": [
                "vendor-advisory",
                "x_refsource_GENTOO"
              ],
              "url": "https://security.gentoo.org/glsa/201701-02"
            },
            {
              "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2016-9401",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "RHSA-2017:0725",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
                },
                {
                  "name": "RHSA-2017:1931",
                  "refsource": "REDHAT",
                  "url": "https://access.redhat.com/errata/RHSA-2017:1931"
                },
                {
                  "name": "[oss-security] 20161117 bash - popd controlled free",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/11/17/5"
                },
                {
                  "name": "[oss-security] 20161117 Re: bash - popd controlled free",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/11/17/9"
                },
                {
                  "name": "94398",
                  "refsource": "BID",
                  "url": "http://www.securityfocus.com/bid/94398"
                },
                {
                  "name": "GLSA-201701-02",
                  "refsource": "GENTOO",
                  "url": "https://security.gentoo.org/glsa/201701-02"
                },
                {
                  "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
                  "refsource": "MLIST",
                  "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2016-9401",
        "datePublished": "2017-01-23T21:00:00.000Z",
        "dateReserved": "2016-11-17T00:00:00.000Z",
        "dateUpdated": "2025-08-06T21:12:45.629Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2016-7543 (GCVE-0-2016-7543)

    Vulnerability from nvd – Published: 2017-01-19 20:00 – Updated: 2024-08-06 02:04
    VLAI
    Summary
    Bash before 4.4 allows local users to execute arbitrary commands with root privileges via crafted SHELLOPTS and PS4 environment variables.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    URL Tags
    http://rhn.redhat.com/errata/RHSA-2017-0725.html vendor-advisoryx_refsource_REDHAT
    https://lists.fedoraproject.org/archives/list/pac… vendor-advisoryx_refsource_FEDORA
    https://access.redhat.com/errata/RHSA-2017:1931 vendor-advisoryx_refsource_REDHAT
    https://lists.fedoraproject.org/archives/list/pac… vendor-advisoryx_refsource_FEDORA
    http://www.openwall.com/lists/oss-security/2016/09/26/9 mailing-listx_refsource_MLIST
    https://lists.gnu.org/archive/html/bug-bash/2016-… mailing-listx_refsource_MLIST
    http://www.securityfocus.com/bid/93183 vdb-entryx_refsource_BID
    https://h20566.www2.hpe.com/portal/site/hpsc/publ… x_refsource_CONFIRM
    https://lists.fedoraproject.org/archives/list/pac… vendor-advisoryx_refsource_FEDORA
    http://www.securitytracker.com/id/1037812 vdb-entryx_refsource_SECTRACK
    https://security.gentoo.org/glsa/201701-02 vendor-advisoryx_refsource_GENTOO
    Date Public
    2016-09-16 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T02:04:54.955Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "RHSA-2017:0725",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
              },
              {
                "name": "FEDORA-2016-5a54fb4784",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_FEDORA",
                  "x_transferred"
                ],
                "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OU3C756YPHDAAPFX76UGZBAQQQ5UMHS5/"
              },
              {
                "name": "RHSA-2017:1931",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/errata/RHSA-2017:1931"
              },
              {
                "name": "FEDORA-2016-2c4b5ad64e",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_FEDORA",
                  "x_transferred"
                ],
                "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F7XOQSHU63Y357NHU5FPTFBM6I3YOCQB/"
              },
              {
                "name": "[oss-security] 20160926 CVE-2016-7543 -- bash SHELLOPTS+PS4",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/26/9"
              },
              {
                "name": "[bug-bash] 20160916 Bash-4.4 Release available",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "https://lists.gnu.org/archive/html/bug-bash/2016-09/msg00018.html"
              },
              {
                "name": "93183",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/93183"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05388115"
              },
              {
                "name": "FEDORA-2016-f84391516d",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_FEDORA",
                  "x_transferred"
                ],
                "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2VRBSIPZDZ75ZQ2DLITHUIDW4W26KVR/"
              },
              {
                "name": "1037812",
                "tags": [
                  "vdb-entry",
                  "x_refsource_SECTRACK",
                  "x_transferred"
                ],
                "url": "http://www.securitytracker.com/id/1037812"
              },
              {
                "name": "GLSA-201701-02",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_GENTOO",
                  "x_transferred"
                ],
                "url": "https://security.gentoo.org/glsa/201701-02"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2016-09-16T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "Bash before 4.4 allows local users to execute arbitrary commands with root privileges via crafted SHELLOPTS and PS4 environment variables."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2018-01-04T19:57:01.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "name": "RHSA-2017:0725",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
            },
            {
              "name": "FEDORA-2016-5a54fb4784",
              "tags": [
                "vendor-advisory",
                "x_refsource_FEDORA"
              ],
              "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OU3C756YPHDAAPFX76UGZBAQQQ5UMHS5/"
            },
            {
              "name": "RHSA-2017:1931",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "https://access.redhat.com/errata/RHSA-2017:1931"
            },
            {
              "name": "FEDORA-2016-2c4b5ad64e",
              "tags": [
                "vendor-advisory",
                "x_refsource_FEDORA"
              ],
              "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F7XOQSHU63Y357NHU5FPTFBM6I3YOCQB/"
            },
            {
              "name": "[oss-security] 20160926 CVE-2016-7543 -- bash SHELLOPTS+PS4",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/26/9"
            },
            {
              "name": "[bug-bash] 20160916 Bash-4.4 Release available",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "https://lists.gnu.org/archive/html/bug-bash/2016-09/msg00018.html"
            },
            {
              "name": "93183",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/93183"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05388115"
            },
            {
              "name": "FEDORA-2016-f84391516d",
              "tags": [
                "vendor-advisory",
                "x_refsource_FEDORA"
              ],
              "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2VRBSIPZDZ75ZQ2DLITHUIDW4W26KVR/"
            },
            {
              "name": "1037812",
              "tags": [
                "vdb-entry",
                "x_refsource_SECTRACK"
              ],
              "url": "http://www.securitytracker.com/id/1037812"
            },
            {
              "name": "GLSA-201701-02",
              "tags": [
                "vendor-advisory",
                "x_refsource_GENTOO"
              ],
              "url": "https://security.gentoo.org/glsa/201701-02"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2016-7543",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "Bash before 4.4 allows local users to execute arbitrary commands with root privileges via crafted SHELLOPTS and PS4 environment variables."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "RHSA-2017:0725",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
                },
                {
                  "name": "FEDORA-2016-5a54fb4784",
                  "refsource": "FEDORA",
                  "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OU3C756YPHDAAPFX76UGZBAQQQ5UMHS5/"
                },
                {
                  "name": "RHSA-2017:1931",
                  "refsource": "REDHAT",
                  "url": "https://access.redhat.com/errata/RHSA-2017:1931"
                },
                {
                  "name": "FEDORA-2016-2c4b5ad64e",
                  "refsource": "FEDORA",
                  "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/F7XOQSHU63Y357NHU5FPTFBM6I3YOCQB/"
                },
                {
                  "name": "[oss-security] 20160926 CVE-2016-7543 -- bash SHELLOPTS+PS4",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/26/9"
                },
                {
                  "name": "[bug-bash] 20160916 Bash-4.4 Release available",
                  "refsource": "MLIST",
                  "url": "https://lists.gnu.org/archive/html/bug-bash/2016-09/msg00018.html"
                },
                {
                  "name": "93183",
                  "refsource": "BID",
                  "url": "http://www.securityfocus.com/bid/93183"
                },
                {
                  "name": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05388115",
                  "refsource": "CONFIRM",
                  "url": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05388115"
                },
                {
                  "name": "FEDORA-2016-f84391516d",
                  "refsource": "FEDORA",
                  "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Z2VRBSIPZDZ75ZQ2DLITHUIDW4W26KVR/"
                },
                {
                  "name": "1037812",
                  "refsource": "SECTRACK",
                  "url": "http://www.securitytracker.com/id/1037812"
                },
                {
                  "name": "GLSA-201701-02",
                  "refsource": "GENTOO",
                  "url": "https://security.gentoo.org/glsa/201701-02"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2016-7543",
        "datePublished": "2017-01-19T20:00:00.000Z",
        "dateReserved": "2016-09-09T00:00:00.000Z",
        "dateUpdated": "2024-08-06T02:04:54.955Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2014-6278 (GCVE-0-2014-6278)

    Vulnerability from nvd – Published: 2014-09-30 10:00 – Updated: 2025-12-30 20:24
    VLAI CISA Previdian
    Summary
    GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary commands via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271, CVE-2014-7169, and CVE-2014-6277.
    SSVC
    Exploitation: active Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-10-02 03:55 UTC
    CWE
    • n/a
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    References
    URL Tags
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://linux.oracle.com/errata/ELSA-2014-3093 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://packetstormsecurity.com/files/137344/Sun-S… x_refsource_MISC
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://www.ubuntu.com/usn/USN-2380-1 vendor-advisoryx_refsource_UBUNTU
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    https://security-tracker.debian.org/tracker/CVE-2… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    https://www.exploit-db.com/exploits/39887/ exploitx_refsource_EXPLOIT-DB
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://secunia.com/advisories/60325 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    http://lcamtuf.blogspot.com/2014/10/bash-bug-how-… x_refsource_MISC
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    https://bugzilla.redhat.com/show_bug.cgi?id=1147414 x_refsource_CONFIRM
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://linux.oracle.com/errata/ELSA-2014-3094 x_refsource_CONFIRM
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://support.novell.com/security/cve/CVE-2014-6… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383465822787&w=2 vendor-advisoryx_refsource_HP
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61780 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    https://www.exploit-db.com/exploits/39568/ exploitx_refsource_EXPLOIT-DB
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383353622268&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/61471 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59961 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://lcamtuf.blogspot.com/2014/09/bash-bug-appl… x_refsource_MISC
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61857 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    https://www.arista.com/en/support/advisories-noti… x_refsource_MISC
    https://www.cisa.gov/known-exploited-vulnerabilit… government-resource
    Date Public
    2014-09-29 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:10:13.322Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/137344/Sun-Secure-Global-Desktop-Oracle-Global-Desktop-Shellshock.html"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "openSUSE-SU-2014:1310",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "name": "USN-2380-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2380-1"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://security-tracker.debian.org/tracker/CVE-2014-6278"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "name": "39887",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/39887/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "name": "SUSE-SU-2014:1287",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60325",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60325"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
              },
              {
                "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1147414"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-6278.html"
              },
              {
                "name": "HPSBHF03145",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "name": "61780",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61780"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "name": "39568",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/39568/"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBHF03146",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "61471",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61471"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "59961",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59961"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "name": "61857",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61857"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "NETWORK",
                  "availabilityImpact": "HIGH",
                  "baseScore": 8.8,
                  "baseSeverity": "HIGH",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "REQUIRED",
                  "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2014-6278",
                    "options": [
                      {
                        "Exploitation": "active"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-10-02T03:55:45.174012Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              },
              {
                "other": {
                  "content": {
                    "dateAdded": "2025-10-02",
                    "reference": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-6278"
                  },
                  "type": "kev"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-78",
                    "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-12-30T20:24:56.789Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "references": [
              {
                "tags": [
                  "government-resource"
                ],
                "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-6278"
              }
            ],
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-29T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary commands via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271, CVE-2014-7169, and CVE-2014-6277."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2021-11-05T16:38:18.000Z",
            "orgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
            "shortName": "debian"
          },
          "references": [
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/137344/Sun-Secure-Global-Desktop-Oracle-Global-Desktop-Shellshock.html"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "openSUSE-SU-2014:1310",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "name": "USN-2380-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2380-1"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://security-tracker.debian.org/tracker/CVE-2014-6278"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "name": "39887",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/39887/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "name": "SUSE-SU-2014:1287",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60325",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60325"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
            },
            {
              "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1147414"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-6278.html"
            },
            {
              "name": "HPSBHF03145",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "name": "61780",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61780"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "name": "39568",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/39568/"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBHF03146",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "61471",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61471"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "59961",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59961"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "name": "61857",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61857"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "security@debian.org",
              "ID": "CVE-2014-6278",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary commands via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271, CVE-2014-7169, and CVE-2014-6277."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3093",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "http://packetstormsecurity.com/files/137344/Sun-Secure-Global-Desktop-Oracle-Global-Desktop-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/137344/Sun-Secure-Global-Desktop-Oracle-Global-Desktop-Shellshock.html"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "openSUSE-SU-2014:1310",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "USN-2380-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2380-1"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "https://security-tracker.debian.org/tracker/CVE-2014-6278",
                  "refsource": "CONFIRM",
                  "url": "https://security-tracker.debian.org/tracker/CVE-2014-6278"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "39887",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/39887/"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "SUSE-SU-2014:1287",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60325",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60325"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
                },
                {
                  "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1147414",
                  "refsource": "CONFIRM",
                  "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1147414"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3094",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-6278.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-6278.html"
                },
                {
                  "name": "HPSBHF03145",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "61780",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61780"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "39568",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/39568/"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBHF03146",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "61471",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61471"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "59961",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59961"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "61857",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61857"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                },
                {
                  "name": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006",
                  "refsource": "MISC",
                  "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
        "assignerShortName": "debian",
        "cveId": "CVE-2014-6278",
        "datePublished": "2014-09-30T10:00:00.000Z",
        "dateReserved": "2014-09-09T00:00:00.000Z",
        "dateUpdated": "2025-12-30T20:24:56.789Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2014-7187 (GCVE-0-2014-7187)

    Vulnerability from nvd – Published: 2014-09-28 19:00 – Updated: 2024-08-06 12:40
    VLAI
    Summary
    Off-by-one error in the read_token_word function in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via deeply nested for loops, aka the "word_lineno" issue.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    URL Tags
    http://packetstormsecurity.com/files/128517/VMwar… x_refsource_MISC
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383138121313&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://www.securityfocus.com/archive/1/533593/100… mailing-listx_refsource_BUGTRAQ
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61188 third-party-advisoryx_refsource_SECUNIA
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    http://openwall.com/lists/oss-security/2014/09/25/32 mailing-listx_refsource_MLIST
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://support.novell.com/security/cve/CVE-2014-7… x_refsource_CONFIRM
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61636 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1312.html vendor-advisoryx_refsource_REDHAT
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://www.ubuntu.com/usn/USN-2364-1 vendor-advisoryx_refsource_UBUNTU
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://seclists.org/fulldisclosure/2014/Oct/0 mailing-listx_refsource_FULLDISC
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    https://support.apple.com/HT205267 x_refsource_CONFIRM
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    http://secunia.com/advisories/61622 third-party-advisoryx_refsource_SECUNIA
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    http://openwall.com/lists/oss-security/2014/09/28/10 mailing-listx_refsource_MLIST
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://support.apple.com/HT204244 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142289270617409&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61873 third-party-advisoryx_refsource_SECUNIA
    http://openwall.com/lists/oss-security/2014/09/26/2 mailing-listx_refsource_MLIST
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61618 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://secunia.com/advisories/61479 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://rhn.redhat.com/errata/RHSA-2014-1354.html vendor-advisoryx_refsource_REDHAT
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141694386919794&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61855 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1311.html vendor-advisoryx_refsource_REDHAT
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61857 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    Date Public
    2014-09-25 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:40:19.211Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "name": "HPSBST03131",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_BUGTRAQ",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "openSUSE-SU-2014:1229",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "61188",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61188"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "openSUSE-SU-2014:1254",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-7187.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61636",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61636"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "openSUSE-SU-2014:1310",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "name": "APPLE-SA-2015-09-30-3",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "openSUSE-SU-2014:1308",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "RHSA-2014:1312",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "name": "USN-2364-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2364-1"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "name": "SUSE-SU-2014:1247",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_FULLDISC",
                  "x_transferred"
                ],
                "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.apple.com/HT205267"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "name": "61622",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61622"
              },
              {
                "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.apple.com/HT204244"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101830",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61873",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61873"
              },
              {
                "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "name": "openSUSE-SU-2014:1242",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
              },
              {
                "name": "61618",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61618"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "name": "61479",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61479"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "name": "RHSA-2014:1354",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
              },
              {
                "name": "HPSBMU03236",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "HPSBST03148",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "61855",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61855"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "APPLE-SA-2015-01-27-4",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "name": "RHSA-2014:1311",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "SUSE-SU-2014:1259",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "name": "61857",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61857"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-25T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "Off-by-one error in the read_token_word function in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via deeply nested for loops, aka the \"word_lineno\" issue."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2018-10-09T18:57:01.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "name": "HPSBST03131",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_BUGTRAQ"
              ],
              "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "openSUSE-SU-2014:1229",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "61188",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61188"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "openSUSE-SU-2014:1254",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-7187.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61636",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61636"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "openSUSE-SU-2014:1310",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "name": "APPLE-SA-2015-09-30-3",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "openSUSE-SU-2014:1308",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "RHSA-2014:1312",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "name": "USN-2364-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2364-1"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "name": "SUSE-SU-2014:1247",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_FULLDISC"
              ],
              "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.apple.com/HT205267"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "name": "61622",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61622"
            },
            {
              "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.apple.com/HT204244"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101830",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61873",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61873"
            },
            {
              "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "name": "openSUSE-SU-2014:1242",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
            },
            {
              "name": "61618",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61618"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "name": "61479",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61479"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "name": "RHSA-2014:1354",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
            },
            {
              "name": "HPSBMU03236",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "HPSBST03148",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "61855",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61855"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "APPLE-SA-2015-01-27-4",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "name": "RHSA-2014:1311",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "SUSE-SU-2014:1259",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "name": "61857",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61857"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2014-7187",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "Off-by-one error in the read_token_word function in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via deeply nested for loops, aka the \"word_lineno\" issue."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "HPSBST03131",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "BUGTRAQ",
                  "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "openSUSE-SU-2014:1229",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "61188",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61188"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "openSUSE-SU-2014:1254",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-7187.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-7187.html"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61636",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61636"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "openSUSE-SU-2014:1310",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "APPLE-SA-2015-09-30-3",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "openSUSE-SU-2014:1308",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1312",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "USN-2364-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2364-1"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "SUSE-SU-2014:1247",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "FULLDISC",
                  "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "https://support.apple.com/HT205267",
                  "refsource": "CONFIRM",
                  "url": "https://support.apple.com/HT205267"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "61622",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61622"
                },
                {
                  "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "http://support.apple.com/HT204244",
                  "refsource": "CONFIRM",
                  "url": "http://support.apple.com/HT204244"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101830",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61873",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61873"
                },
                {
                  "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "openSUSE-SU-2014:1242",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
                },
                {
                  "name": "61618",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61618"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "61479",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61479"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "RHSA-2014:1354",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
                },
                {
                  "name": "HPSBMU03236",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "HPSBST03148",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "61855",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61855"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "APPLE-SA-2015-01-27-4",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1311",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "SUSE-SU-2014:1259",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "61857",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61857"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2014-7187",
        "datePublished": "2014-09-28T19:00:00.000Z",
        "dateReserved": "2014-09-25T00:00:00.000Z",
        "dateUpdated": "2024-08-06T12:40:19.211Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2014-7186 (GCVE-0-2014-7186)

    Vulnerability from nvd – Published: 2014-09-28 19:00 – Updated: 2024-08-06 12:40
    VLAI
    Summary
    The redirection implementation in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted use of here documents, aka the "redir_stack" issue.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    URL Tags
    http://packetstormsecurity.com/files/128517/VMwar… x_refsource_MISC
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383138121313&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://www.securityfocus.com/archive/1/533593/100… mailing-listx_refsource_BUGTRAQ
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61188 third-party-advisoryx_refsource_SECUNIA
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    http://openwall.com/lists/oss-security/2014/09/25/32 mailing-listx_refsource_MLIST
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61636 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142113462216480&w=2 vendor-advisoryx_refsource_HP
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1312.html vendor-advisoryx_refsource_REDHAT
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://www.ubuntu.com/usn/USN-2364-1 vendor-advisoryx_refsource_UBUNTU
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://seclists.org/fulldisclosure/2014/Oct/0 mailing-listx_refsource_FULLDISC
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    https://support.apple.com/HT205267 x_refsource_CONFIRM
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    http://secunia.com/advisories/61622 third-party-advisoryx_refsource_SECUNIA
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    http://support.novell.com/security/cve/CVE-2014-7… x_refsource_CONFIRM
    http://openwall.com/lists/oss-security/2014/09/28/10 mailing-listx_refsource_MLIST
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://support.apple.com/HT204244 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142289270617409&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61873 third-party-advisoryx_refsource_SECUNIA
    http://openwall.com/lists/oss-security/2014/09/26/2 mailing-listx_refsource_MLIST
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61618 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://secunia.com/advisories/61479 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://rhn.redhat.com/errata/RHSA-2014-1354.html vendor-advisoryx_refsource_REDHAT
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141694386919794&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61780 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/62228 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61711 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1311.html vendor-advisoryx_refsource_REDHAT
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/61471 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    Date Public
    2014-09-25 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:40:19.198Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "name": "HPSBST03131",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_BUGTRAQ",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "openSUSE-SU-2014:1229",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "61188",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61188"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "openSUSE-SU-2014:1254",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61636",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61636"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "name": "SSRT101711",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "name": "APPLE-SA-2015-09-30-3",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "RHSA-2014:1312",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "name": "USN-2364-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2364-1"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "name": "SUSE-SU-2014:1247",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_FULLDISC",
                  "x_transferred"
                ],
                "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.apple.com/HT205267"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "name": "61622",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61622"
              },
              {
                "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-7186.html"
              },
              {
                "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.apple.com/HT204244"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101830",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61873",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61873"
              },
              {
                "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "name": "openSUSE-SU-2014:1242",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
              },
              {
                "name": "61618",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61618"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "name": "61479",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61479"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "name": "RHSA-2014:1354",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
              },
              {
                "name": "HPSBMU03236",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "HPSBST03148",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "name": "61780",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61780"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
              },
              {
                "name": "62228",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62228"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61711",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61711"
              },
              {
                "name": "HPSBOV03228",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "APPLE-SA-2015-01-27-4",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "name": "RHSA-2014:1311",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "61471",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61471"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "SUSE-SU-2014:1259",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-25T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "The redirection implementation in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted use of here documents, aka the \"redir_stack\" issue."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2018-10-09T18:57:01.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "name": "HPSBST03131",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_BUGTRAQ"
              ],
              "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "openSUSE-SU-2014:1229",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "61188",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61188"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "openSUSE-SU-2014:1254",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61636",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61636"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "name": "SSRT101711",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "name": "APPLE-SA-2015-09-30-3",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "RHSA-2014:1312",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "name": "USN-2364-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2364-1"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "name": "SUSE-SU-2014:1247",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_FULLDISC"
              ],
              "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.apple.com/HT205267"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "name": "61622",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61622"
            },
            {
              "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-7186.html"
            },
            {
              "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.apple.com/HT204244"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101830",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61873",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61873"
            },
            {
              "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "name": "openSUSE-SU-2014:1242",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
            },
            {
              "name": "61618",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61618"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "name": "61479",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61479"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "name": "RHSA-2014:1354",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
            },
            {
              "name": "HPSBMU03236",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "HPSBST03148",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "name": "61780",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61780"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
            },
            {
              "name": "62228",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62228"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61711",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61711"
            },
            {
              "name": "HPSBOV03228",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "APPLE-SA-2015-01-27-4",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "name": "RHSA-2014:1311",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "61471",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61471"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "SUSE-SU-2014:1259",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2014-7186",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "The redirection implementation in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted use of here documents, aka the \"redir_stack\" issue."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "HPSBST03131",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "BUGTRAQ",
                  "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "openSUSE-SU-2014:1229",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "61188",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61188"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "openSUSE-SU-2014:1254",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61636",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61636"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "SSRT101711",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "APPLE-SA-2015-09-30-3",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1312",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "USN-2364-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2364-1"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "SUSE-SU-2014:1247",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "FULLDISC",
                  "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "https://support.apple.com/HT205267",
                  "refsource": "CONFIRM",
                  "url": "https://support.apple.com/HT205267"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "61622",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61622"
                },
                {
                  "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-7186.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-7186.html"
                },
                {
                  "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "http://support.apple.com/HT204244",
                  "refsource": "CONFIRM",
                  "url": "http://support.apple.com/HT204244"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101830",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61873",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61873"
                },
                {
                  "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "openSUSE-SU-2014:1242",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
                },
                {
                  "name": "61618",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61618"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "61479",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61479"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "RHSA-2014:1354",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
                },
                {
                  "name": "HPSBMU03236",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "HPSBST03148",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "61780",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61780"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
                },
                {
                  "name": "62228",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62228"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61711",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61711"
                },
                {
                  "name": "HPSBOV03228",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "APPLE-SA-2015-01-27-4",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1311",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "61471",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61471"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "SUSE-SU-2014:1259",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2014-7186",
        "datePublished": "2014-09-28T19:00:00.000Z",
        "dateReserved": "2014-09-25T00:00:00.000Z",
        "dateUpdated": "2024-08-06T12:40:19.198Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2014-6277 (GCVE-0-2014-6277)

    Vulnerability from nvd – Published: 2014-09-27 22:00 – Updated: 2024-08-06 12:10
    VLAI
    Summary
    GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized memory access, and untrusted-pointer read and write operations) via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271 and CVE-2014-7169.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    URL Tags
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://linux.oracle.com/errata/ELSA-2014-3093 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://www.ubuntu.com/usn/USN-2380-1 vendor-advisoryx_refsource_UBUNTU
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    https://support.apple.com/HT205267 x_refsource_CONFIRM
    http://secunia.com/advisories/60325 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    http://lcamtuf.blogspot.com/2014/10/bash-bug-how-… x_refsource_MISC
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://support.apple.com/HT204244 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142289270617409&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://linux.oracle.com/errata/ELSA-2014-3094 x_refsource_CONFIRM
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383465822787&w=2 vendor-advisoryx_refsource_HP
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61780 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383353622268&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/61471 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59961 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://lcamtuf.blogspot.com/2014/09/bash-bug-appl… x_refsource_MISC
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://support.novell.com/security/cve/CVE-2014-6… x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61857 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    Date Public
    2014-09-27 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:10:13.286Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "openSUSE-SU-2014:1310",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "name": "APPLE-SA-2015-09-30-3",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "name": "USN-2380-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2380-1"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "name": "SUSE-SU-2014:1287",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.apple.com/HT205267"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60325",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60325"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
              },
              {
                "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.apple.com/HT204244"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101830",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "name": "HPSBMU03236",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "name": "HPSBHF03145",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "name": "61780",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61780"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBHF03146",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "APPLE-SA-2015-01-27-4",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "61471",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61471"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "59961",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59961"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-6277.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "name": "61857",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61857"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-27T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized memory access, and untrusted-pointer read and write operations) via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271 and CVE-2014-7169."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2018-08-08T09:57:01.000Z",
            "orgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
            "shortName": "debian"
          },
          "references": [
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "openSUSE-SU-2014:1310",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "name": "APPLE-SA-2015-09-30-3",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "name": "USN-2380-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2380-1"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "name": "SUSE-SU-2014:1287",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.apple.com/HT205267"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60325",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60325"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
            },
            {
              "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.apple.com/HT204244"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101830",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "name": "HPSBMU03236",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "name": "HPSBHF03145",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "name": "61780",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61780"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBHF03146",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "APPLE-SA-2015-01-27-4",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "61471",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61471"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "59961",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59961"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-6277.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "name": "61857",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61857"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "security@debian.org",
              "ID": "CVE-2014-6277",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized memory access, and untrusted-pointer read and write operations) via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271 and CVE-2014-7169."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3093",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "openSUSE-SU-2014:1310",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "APPLE-SA-2015-09-30-3",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "USN-2380-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2380-1"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "SUSE-SU-2014:1287",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "https://support.apple.com/HT205267",
                  "refsource": "CONFIRM",
                  "url": "https://support.apple.com/HT205267"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60325",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60325"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
                },
                {
                  "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "http://support.apple.com/HT204244",
                  "refsource": "CONFIRM",
                  "url": "http://support.apple.com/HT204244"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101830",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3094",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "HPSBMU03236",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "HPSBHF03145",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "61780",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61780"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBHF03146",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "APPLE-SA-2015-01-27-4",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "61471",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61471"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "59961",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59961"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-6277.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-6277.html"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "61857",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61857"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
        "assignerShortName": "debian",
        "cveId": "CVE-2014-6277",
        "datePublished": "2014-09-27T22:00:00.000Z",
        "dateReserved": "2014-09-09T00:00:00.000Z",
        "dateUpdated": "2024-08-06T12:10:13.286Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2014-7169 (GCVE-0-2014-7169)

    Vulnerability from nvd – Published: 2014-09-25 01:00 – Updated: 2025-10-22 00:05
    VLAI CISA Previdian
    Summary
    GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown other impact via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271.
    SSVC
    Exploitation: active Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-02-10 19:31 UTC
    CWE
    • n/a
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    References
    URL Tags
    http://packetstormsecurity.com/files/128517/VMwar… x_refsource_MISC
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.openwall.com/lists/oss-security/2014/0… mailing-listx_refsource_MLIST
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141216668515282&w=2 vendor-advisoryx_refsource_HP
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383138121313&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://www.securityfocus.com/archive/1/533593/100… mailing-listx_refsource_BUGTRAQ
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61188 third-party-advisoryx_refsource_SECUNIA
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://secunia.com/advisories/61676 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1306.html vendor-advisoryx_refsource_REDHAT
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61715 third-party-advisoryx_refsource_SECUNIA
    http://www.ubuntu.com/usn/USN-2363-2 vendor-advisoryx_refsource_UBUNTU
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142805027510172&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142113462216480&w=2 vendor-advisoryx_refsource_HP
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015701 x_refsource_CONFIRM
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59272 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141319209015420&w=2 vendor-advisoryx_refsource_HP
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1312.html vendor-advisoryx_refsource_REDHAT
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.ubuntu.com/usn/USN-2363-1 vendor-advisoryx_refsource_UBUNTU
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://support.apple.com/kb/HT6495 x_refsource_CONFIRM
    http://www.kb.cert.org/vuls/id/252743 third-party-advisoryx_refsource_CERT-VN
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://linux.oracle.com/errata/ELSA-2014-3075.html x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://support.novell.com/security/cve/CVE-2014-7… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://www.us-cert.gov/ncas/alerts/TA14-268A third-party-advisoryx_refsource_CERT
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    https://access.redhat.com/node/1200223 x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://archives.neohapsis.com/archives/bugtraq/20… vendor-advisoryx_refsource_APPLE
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://seclists.org/fulldisclosure/2014/Oct/0 mailing-listx_refsource_FULLDISC
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    http://secunia.com/advisories/61619 third-party-advisoryx_refsource_SECUNIA
    http://linux.oracle.com/errata/ELSA-2014-3078.html x_refsource_CONFIRM
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://secunia.com/advisories/60325 third-party-advisoryx_refsource_SECUNIA
    https://help.ecostruxureit.com/display/public/UAD… x_refsource_CONFIRM
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    https://www.exploit-db.com/exploits/34879/ exploitx_refsource_EXPLOIT-DB
    http://secunia.com/advisories/61622 third-party-advisoryx_refsource_SECUNIA
    https://access.redhat.com/articles/1200223 x_refsource_CONFIRM
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://advisories.mageia.org/MGASA-2014-0393.html x_refsource_CONFIRM
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61873 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61618 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60947 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    https://support.apple.com/kb/HT6535 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://secunia.com/advisories/61479 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141330425327438&w=2 vendor-advisoryx_refsource_HP
    http://lcamtuf.blogspot.com/2014/09/quick-notes-a… x_refsource_MISC
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://twitter.com/taviso/statuses/514887394294652929 x_refsource_MISC
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://rhn.redhat.com/errata/RHSA-2014-1354.html vendor-advisoryx_refsource_REDHAT
    http://marc.info/?l=bugtraq&m=141216207813411&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383465822787&w=2 vendor-advisoryx_refsource_HP
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141694386919794&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61780 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    http://linux.oracle.com/errata/ELSA-2014-3077.html x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/62228 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61855 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141235957116749&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/59737 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383353622268&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61711 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1311.html vendor-advisoryx_refsource_REDHAT
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    http://www.debian.org/security/2014/dsa-3035 vendor-advisoryx_refsource_DEBIAN
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/61471 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://linux.oracle.com/errata/ELSA-2014-1306.html x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61700 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61626 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61857 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    https://www.arista.com/en/support/advisories-noti… x_refsource_MISC
    https://www.cisa.gov/known-exploited-vulnerabilit… government-resource
    Date Public
    2014-09-24 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:40:19.217Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "[oss-security] 20140924 Re: CVE-2014-6271: remote code execution through bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2014/09/24/32"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "name": "HPSBHF03119",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "name": "HPSBST03131",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_BUGTRAQ",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "openSUSE-SU-2014:1229",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "61188",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61188"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "61676",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61676"
              },
              {
                "name": "openSUSE-SU-2014:1254",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "name": "RHSA-2014:1306",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1306.html"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
              },
              {
                "name": "61715",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61715"
              },
              {
                "name": "USN-2363-2",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2363-2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "openSUSE-SU-2014:1310",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "HPSBST03195",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "name": "SSRT101711",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "openSUSE-SU-2014:1308",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "name": "59272",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59272"
              },
              {
                "name": "HPSBST03122",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "RHSA-2014:1312",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "USN-2363-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2363-1"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.apple.com/kb/HT6495"
              },
              {
                "name": "VU#252743",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_CERT-VN",
                  "x_transferred"
                ],
                "url": "http://www.kb.cert.org/vuls/id/252743"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3075.html"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-7169.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "TA14-268A",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_CERT",
                  "x_transferred"
                ],
                "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "name": "SUSE-SU-2014:1247",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/node/1200223"
              },
              {
                "name": "SUSE-SU-2014:1287",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "name": "APPLE-SA-2014-10-16-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_FULLDISC",
                  "x_transferred"
                ],
                "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "name": "61619",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61619"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3078.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60325",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60325"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "name": "34879",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/34879/"
              },
              {
                "name": "61622",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61622"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/articles/1200223"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://advisories.mageia.org/MGASA-2014-0393.html"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61873",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61873"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "name": "openSUSE-SU-2014:1242",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
              },
              {
                "name": "61618",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61618"
              },
              {
                "name": "60947",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60947"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.apple.com/kb/HT6535"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "name": "61479",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61479"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "HPSBMU03133",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://twitter.com/taviso/statuses/514887394294652929"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "name": "RHSA-2014:1354",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
              },
              {
                "name": "HPSBGN03117",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "name": "HPSBHF03145",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "HPSBST03148",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "name": "61780",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61780"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3077.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
              },
              {
                "name": "62228",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62228"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "61855",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61855"
              },
              {
                "name": "HPSBHF03124",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "59737",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59737"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBHF03146",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61711",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61711"
              },
              {
                "name": "HPSBOV03228",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "name": "RHSA-2014:1311",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "name": "DSA-3035",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_DEBIAN",
                  "x_transferred"
                ],
                "url": "http://www.debian.org/security/2014/dsa-3035"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "61471",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61471"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-1306.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "SUSE-SU-2014:1259",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61700",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61700"
              },
              {
                "name": "61626",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61626"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "name": "61857",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61857"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "NETWORK",
                  "availabilityImpact": "HIGH",
                  "baseScore": 9.8,
                  "baseSeverity": "CRITICAL",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2014-7169",
                    "options": [
                      {
                        "Exploitation": "active"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-02-10T19:31:47.209255Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              },
              {
                "other": {
                  "content": {
                    "dateAdded": "2022-01-28",
                    "reference": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-7169"
                  },
                  "type": "kev"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-78",
                    "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-10-22T00:05:36.027Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "references": [
              {
                "tags": [
                  "government-resource"
                ],
                "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-7169"
              }
            ],
            "timeline": [
              {
                "lang": "en",
                "time": "2022-01-28T00:00:00.000Z",
                "value": "CVE-2014-7169 added to CISA KEV"
              }
            ],
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-24T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown other impact via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2021-11-05T16:41:42.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "[oss-security] 20140924 Re: CVE-2014-6271: remote code execution through bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2014/09/24/32"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "name": "HPSBHF03119",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "name": "HPSBST03131",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_BUGTRAQ"
              ],
              "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "openSUSE-SU-2014:1229",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "61188",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61188"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "61676",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61676"
            },
            {
              "name": "openSUSE-SU-2014:1254",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "name": "RHSA-2014:1306",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1306.html"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
            },
            {
              "name": "61715",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61715"
            },
            {
              "name": "USN-2363-2",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2363-2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "openSUSE-SU-2014:1310",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "HPSBST03195",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "name": "SSRT101711",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "openSUSE-SU-2014:1308",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "name": "59272",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59272"
            },
            {
              "name": "HPSBST03122",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "RHSA-2014:1312",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "USN-2363-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2363-1"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.apple.com/kb/HT6495"
            },
            {
              "name": "VU#252743",
              "tags": [
                "third-party-advisory",
                "x_refsource_CERT-VN"
              ],
              "url": "http://www.kb.cert.org/vuls/id/252743"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3075.html"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-7169.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "TA14-268A",
              "tags": [
                "third-party-advisory",
                "x_refsource_CERT"
              ],
              "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "name": "SUSE-SU-2014:1247",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://access.redhat.com/node/1200223"
            },
            {
              "name": "SUSE-SU-2014:1287",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "name": "APPLE-SA-2014-10-16-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_FULLDISC"
              ],
              "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "name": "61619",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61619"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3078.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60325",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60325"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "name": "34879",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/34879/"
            },
            {
              "name": "61622",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61622"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://access.redhat.com/articles/1200223"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://advisories.mageia.org/MGASA-2014-0393.html"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61873",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61873"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "name": "openSUSE-SU-2014:1242",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
            },
            {
              "name": "61618",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61618"
            },
            {
              "name": "60947",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60947"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.apple.com/kb/HT6535"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "name": "61479",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61479"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "HPSBMU03133",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://twitter.com/taviso/statuses/514887394294652929"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "name": "RHSA-2014:1354",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
            },
            {
              "name": "HPSBGN03117",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "name": "HPSBHF03145",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "HPSBST03148",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "name": "61780",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61780"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3077.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
            },
            {
              "name": "62228",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62228"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "61855",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61855"
            },
            {
              "name": "HPSBHF03124",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "59737",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59737"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBHF03146",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61711",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61711"
            },
            {
              "name": "HPSBOV03228",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "name": "RHSA-2014:1311",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "name": "DSA-3035",
              "tags": [
                "vendor-advisory",
                "x_refsource_DEBIAN"
              ],
              "url": "http://www.debian.org/security/2014/dsa-3035"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "61471",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61471"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-1306.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "SUSE-SU-2014:1259",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61700",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61700"
            },
            {
              "name": "61626",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61626"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "name": "61857",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61857"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2014-7169",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown other impact via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "[oss-security] 20140924 Re: CVE-2014-6271: remote code execution through bash",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2014/09/24/32"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "HPSBHF03119",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "HPSBST03131",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "BUGTRAQ",
                  "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "openSUSE-SU-2014:1229",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "61188",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61188"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "61676",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61676"
                },
                {
                  "name": "openSUSE-SU-2014:1254",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1306",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1306.html"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
                },
                {
                  "name": "61715",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61715"
                },
                {
                  "name": "USN-2363-2",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2363-2"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "openSUSE-SU-2014:1310",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "HPSBST03195",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "SSRT101711",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "openSUSE-SU-2014:1308",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015701",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "59272",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59272"
                },
                {
                  "name": "HPSBST03122",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1312",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "USN-2363-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2363-1"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "http://support.apple.com/kb/HT6495",
                  "refsource": "CONFIRM",
                  "url": "http://support.apple.com/kb/HT6495"
                },
                {
                  "name": "VU#252743",
                  "refsource": "CERT-VN",
                  "url": "http://www.kb.cert.org/vuls/id/252743"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3075.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3075.html"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-7169.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-7169.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "TA14-268A",
                  "refsource": "CERT",
                  "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "SUSE-SU-2014:1247",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "https://access.redhat.com/node/1200223",
                  "refsource": "CONFIRM",
                  "url": "https://access.redhat.com/node/1200223"
                },
                {
                  "name": "SUSE-SU-2014:1287",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "APPLE-SA-2014-10-16-1",
                  "refsource": "APPLE",
                  "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "FULLDISC",
                  "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "61619",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61619"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3078.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3078.html"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60325",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60325"
                },
                {
                  "name": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes",
                  "refsource": "CONFIRM",
                  "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "34879",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/34879/"
                },
                {
                  "name": "61622",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61622"
                },
                {
                  "name": "https://access.redhat.com/articles/1200223",
                  "refsource": "CONFIRM",
                  "url": "https://access.redhat.com/articles/1200223"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "http://advisories.mageia.org/MGASA-2014-0393.html",
                  "refsource": "CONFIRM",
                  "url": "http://advisories.mageia.org/MGASA-2014-0393.html"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61873",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61873"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "openSUSE-SU-2014:1242",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
                },
                {
                  "name": "61618",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61618"
                },
                {
                  "name": "60947",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60947"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "https://support.apple.com/kb/HT6535",
                  "refsource": "CONFIRM",
                  "url": "https://support.apple.com/kb/HT6535"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "61479",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61479"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "HPSBMU03133",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://twitter.com/taviso/statuses/514887394294652929",
                  "refsource": "MISC",
                  "url": "http://twitter.com/taviso/statuses/514887394294652929"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "RHSA-2014:1354",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
                },
                {
                  "name": "HPSBGN03117",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "HPSBHF03145",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "HPSBST03148",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "61780",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61780"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3077.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3077.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
                },
                {
                  "name": "62228",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62228"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "61855",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61855"
                },
                {
                  "name": "HPSBHF03124",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "59737",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59737"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBHF03146",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61711",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61711"
                },
                {
                  "name": "HPSBOV03228",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1311",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "DSA-3035",
                  "refsource": "DEBIAN",
                  "url": "http://www.debian.org/security/2014/dsa-3035"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "61471",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61471"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-1306.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-1306.html"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "SUSE-SU-2014:1259",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61700",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61700"
                },
                {
                  "name": "61626",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61626"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "61857",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61857"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                },
                {
                  "name": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006",
                  "refsource": "MISC",
                  "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2014-7169",
        "datePublished": "2014-09-25T01:00:00.000Z",
        "dateReserved": "2014-09-24T00:00:00.000Z",
        "dateUpdated": "2025-10-22T00:05:36.027Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2014-6271 (GCVE-0-2014-6271)

    Vulnerability from nvd – Published: 2014-09-24 18:00 – Updated: 2025-10-22 00:05
    VLAI CISA Previdian
    Summary
    GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution, aka "ShellShock." NOTE: the original fix for this issue was incorrect; CVE-2014-7169 has been assigned to cover the vulnerability that is still present after the incorrect fix.
    SSVC
    Exploitation: active Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-02-07 13:45 UTC
    CWE
    • n/a
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    References
    URL Tags
    https://www.exploit-db.com/exploits/37816/ exploitx_refsource_EXPLOIT-DB
    http://packetstormsecurity.com/files/128517/VMwar… x_refsource_MISC
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142719845423222&w=2 vendor-advisoryx_refsource_HP
    https://www.exploit-db.com/exploits/39918/ exploitx_refsource_EXPLOIT-DB
    http://marc.info/?l=bugtraq&m=141216668515282&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1295.html vendor-advisoryx_refsource_REDHAT
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    https://securityblog.redhat.com/2014/09/24/bash-s… x_refsource_CONFIRM
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383138121313&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://www.securityfocus.com/archive/1/533593/100… mailing-listx_refsource_BUGTRAQ
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61188 third-party-advisoryx_refsource_SECUNIA
    http://www.websense.com/support/article/kbarticle… x_refsource_CONFIRM
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://secunia.com/advisories/61676 third-party-advisoryx_refsource_SECUNIA
    https://www.exploit-db.com/exploits/40619/ exploitx_refsource_EXPLOIT-DB
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    https://www.exploit-db.com/exploits/38849/ exploitx_refsource_EXPLOIT-DB
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://kb.juniper.net/InfoCenter/index?page=conte… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61715 third-party-advisoryx_refsource_SECUNIA
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142805027510172&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142113462216480&w=2 vendor-advisoryx_refsource_HP
    http://www.ubuntu.com/usn/USN-2362-1 vendor-advisoryx_refsource_UBUNTU
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61542 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015701 x_refsource_CONFIRM
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59272 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141319209015420&w=2 vendor-advisoryx_refsource_HP
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://support.apple.com/kb/HT6495 x_refsource_CONFIRM
    http://www.kb.cert.org/vuls/id/252743 third-party-advisoryx_refsource_CERT-VN
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.securityfocus.com/bid/70103 vdb-entryx_refsource_BID
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://www.us-cert.gov/ncas/alerts/TA14-268A third-party-advisoryx_refsource_CERT
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    https://access.redhat.com/node/1200223 x_refsource_CONFIRM
    http://packetstormsecurity.com/files/137376/IPFir… x_refsource_MISC
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://archives.neohapsis.com/archives/bugtraq/20… vendor-advisoryx_refsource_APPLE
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://seclists.org/fulldisclosure/2014/Oct/0 mailing-listx_refsource_FULLDISC
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    http://rhn.redhat.com/errata/RHSA-2014-1293.html vendor-advisoryx_refsource_REDHAT
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/60325 third-party-advisoryx_refsource_SECUNIA
    https://help.ecostruxureit.com/display/public/UAD… x_refsource_CONFIRM
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    https://www.exploit-db.com/exploits/34879/ exploitx_refsource_EXPLOIT-DB
    https://access.redhat.com/articles/1200223 x_refsource_CONFIRM
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61873 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60947 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    https://support.apple.com/kb/HT6535 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142546741516006&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://linux.oracle.com/errata/ELSA-2014-1294.html x_refsource_CONFIRM
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128573/Apach… x_refsource_MISC
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141330425327438&w=2 vendor-advisoryx_refsource_HP
    http://lcamtuf.blogspot.com/2014/09/quick-notes-a… x_refsource_MISC
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://rhn.redhat.com/errata/RHSA-2014-1354.html vendor-advisoryx_refsource_REDHAT
    https://www.exploit-db.com/exploits/40938/ exploitx_refsource_EXPLOIT-DB
    http://marc.info/?l=bugtraq&m=141216207813411&w=2 vendor-advisoryx_refsource_HP
    http://support.novell.com/security/cve/CVE-2014-6… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://secunia.com/advisories/61547 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383465822787&w=2 vendor-advisoryx_refsource_HP
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141694386919794&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61780 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    http://www.debian.org/security/2014/dsa-3032 vendor-advisoryx_refsource_DEBIAN
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/62228 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61855 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141235957116749&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://rhn.redhat.com/errata/RHSA-2014-1294.html vendor-advisoryx_refsource_REDHAT
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/59737 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383353622268&w=2 vendor-advisoryx_refsource_HP
    https://bugzilla.redhat.com/show_bug.cgi?id=1141597 x_refsource_CONFIRM
    http://secunia.com/advisories/61711 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://advisories.mageia.org/MGASA-2014-0388.html x_refsource_CONFIRM
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/61471 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://linux.oracle.com/errata/ELSA-2014-1293.html x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    https://www.exploit-db.com/exploits/42938/ exploitx_refsource_EXPLOIT-DB
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61700 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61857 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://packetstormsecurity.com/files/161107/Sonic… x_refsource_MISC
    https://www.arista.com/en/support/advisories-noti… x_refsource_MISC
    https://www.cisa.gov/known-exploited-vulnerabilit… government-resource
    Date Public
    2014-09-24 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:10:13.276Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "37816",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/37816/"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
              },
              {
                "name": "SUSE-SU-2014:1223",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00034.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "name": "SSRT101816",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
              },
              {
                "name": "39918",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/39918/"
              },
              {
                "name": "HPSBHF03119",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
              },
              {
                "name": "RHSA-2014:1295",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1295.html"
              },
              {
                "name": "openSUSE-SU-2014:1226",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00037.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "name": "HPSBST03131",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_BUGTRAQ",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "HPSBST03196",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
              },
              {
                "name": "61188",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61188"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.websense.com/support/article/kbarticle/Vulnerabilities-resolved-in-TRITON-APX-Version-8-0"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "61676",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61676"
              },
              {
                "name": "40619",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/40619/"
              },
              {
                "name": "openSUSE-SU-2014:1254",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "38849",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/38849/"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10673"
              },
              {
                "name": "SUSE-SU-2014:1260",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00049.html"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
              },
              {
                "name": "61715",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61715"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "openSUSE-SU-2014:1310",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "HPSBST03195",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "name": "SSRT101711",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "name": "USN-2362-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2362-1"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "openSUSE-SU-2014:1308",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "name": "61542",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61542"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "name": "59272",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59272"
              },
              {
                "name": "HPSBST03122",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.apple.com/kb/HT6495"
              },
              {
                "name": "VU#252743",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_CERT-VN",
                  "x_transferred"
                ],
                "url": "http://www.kb.cert.org/vuls/id/252743"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "name": "SUSE-SU-2014:1213",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00029.html"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "70103",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/70103"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "TA14-268A",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_CERT",
                  "x_transferred"
                ],
                "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
              },
              {
                "name": "SUSE-SU-2014:1212",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00028.html"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/node/1200223"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/137376/IPFire-Bash-Environment-Variable-Injection-Shellshock.html"
              },
              {
                "name": "SUSE-SU-2014:1287",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "name": "APPLE-SA-2014-10-16-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_FULLDISC",
                  "x_transferred"
                ],
                "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "name": "RHSA-2014:1293",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1293.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "name": "openSUSE-SU-2014:1238",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00040.html"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60325",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60325"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "name": "34879",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/34879/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/articles/1200223"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61873",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61873"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "name": "60947",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60947"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.apple.com/kb/HT6535"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "name": "HPSBST03265",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142546741516006\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-1294.html"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128573/Apache-mod_cgi-Remote-Command-Execution.html"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "HPSBMU03133",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "name": "RHSA-2014:1354",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
              },
              {
                "name": "40938",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/40938/"
              },
              {
                "name": "HPSBGN03117",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-6271.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "name": "61547",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61547"
              },
              {
                "name": "HPSBHF03145",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "HPSBST03148",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "name": "61780",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61780"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "name": "DSA-3032",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_DEBIAN",
                  "x_transferred"
                ],
                "url": "http://www.debian.org/security/2014/dsa-3032"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
              },
              {
                "name": "62228",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62228"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "61855",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61855"
              },
              {
                "name": "HPSBHF03124",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "RHSA-2014:1294",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1294.html"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "59737",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59737"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBHF03146",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1141597"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61711",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61711"
              },
              {
                "name": "HPSBOV03228",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://advisories.mageia.org/MGASA-2014-0388.html"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "61471",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61471"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-1293.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "42938",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/42938/"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61700",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61700"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "name": "61857",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61857"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/161107/SonicWall-SSL-VPN-Shellshock-Remote-Code-Execution.html"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "NETWORK",
                  "availabilityImpact": "HIGH",
                  "baseScore": 9.8,
                  "baseSeverity": "CRITICAL",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2014-6271",
                    "options": [
                      {
                        "Exploitation": "active"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-02-07T13:45:49.549420Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              },
              {
                "other": {
                  "content": {
                    "dateAdded": "2022-01-28",
                    "reference": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-6271"
                  },
                  "type": "kev"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-78",
                    "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-10-22T00:05:36.342Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "references": [
              {
                "tags": [
                  "government-resource"
                ],
                "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-6271"
              }
            ],
            "timeline": [
              {
                "lang": "en",
                "time": "2022-01-28T00:00:00.000Z",
                "value": "CVE-2014-6271 added to CISA KEV"
              }
            ],
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-24T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution, aka \"ShellShock.\"  NOTE: the original fix for this issue was incorrect; CVE-2014-7169 has been assigned to cover the vulnerability that is still present after the incorrect fix."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2021-11-05T16:37:05.000Z",
            "orgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
            "shortName": "debian"
          },
          "references": [
            {
              "name": "37816",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/37816/"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
            },
            {
              "name": "SUSE-SU-2014:1223",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00034.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "name": "SSRT101816",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
            },
            {
              "name": "39918",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/39918/"
            },
            {
              "name": "HPSBHF03119",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
            },
            {
              "name": "RHSA-2014:1295",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1295.html"
            },
            {
              "name": "openSUSE-SU-2014:1226",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00037.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "name": "HPSBST03131",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_BUGTRAQ"
              ],
              "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "HPSBST03196",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
            },
            {
              "name": "61188",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61188"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.websense.com/support/article/kbarticle/Vulnerabilities-resolved-in-TRITON-APX-Version-8-0"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "61676",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61676"
            },
            {
              "name": "40619",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/40619/"
            },
            {
              "name": "openSUSE-SU-2014:1254",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "38849",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/38849/"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10673"
            },
            {
              "name": "SUSE-SU-2014:1260",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00049.html"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
            },
            {
              "name": "61715",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61715"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "openSUSE-SU-2014:1310",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "HPSBST03195",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "name": "SSRT101711",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "name": "USN-2362-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2362-1"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "openSUSE-SU-2014:1308",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "name": "61542",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61542"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "name": "59272",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59272"
            },
            {
              "name": "HPSBST03122",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.apple.com/kb/HT6495"
            },
            {
              "name": "VU#252743",
              "tags": [
                "third-party-advisory",
                "x_refsource_CERT-VN"
              ],
              "url": "http://www.kb.cert.org/vuls/id/252743"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "name": "SUSE-SU-2014:1213",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00029.html"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "70103",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/70103"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "TA14-268A",
              "tags": [
                "third-party-advisory",
                "x_refsource_CERT"
              ],
              "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
            },
            {
              "name": "SUSE-SU-2014:1212",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00028.html"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://access.redhat.com/node/1200223"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/137376/IPFire-Bash-Environment-Variable-Injection-Shellshock.html"
            },
            {
              "name": "SUSE-SU-2014:1287",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "name": "APPLE-SA-2014-10-16-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_FULLDISC"
              ],
              "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "name": "RHSA-2014:1293",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1293.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "name": "openSUSE-SU-2014:1238",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00040.html"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60325",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60325"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "name": "34879",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/34879/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://access.redhat.com/articles/1200223"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61873",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61873"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "name": "60947",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60947"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.apple.com/kb/HT6535"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "name": "HPSBST03265",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142546741516006\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-1294.html"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128573/Apache-mod_cgi-Remote-Command-Execution.html"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "HPSBMU03133",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "name": "RHSA-2014:1354",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
            },
            {
              "name": "40938",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/40938/"
            },
            {
              "name": "HPSBGN03117",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-6271.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "name": "61547",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61547"
            },
            {
              "name": "HPSBHF03145",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "HPSBST03148",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "name": "61780",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61780"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "name": "DSA-3032",
              "tags": [
                "vendor-advisory",
                "x_refsource_DEBIAN"
              ],
              "url": "http://www.debian.org/security/2014/dsa-3032"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
            },
            {
              "name": "62228",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62228"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "61855",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61855"
            },
            {
              "name": "HPSBHF03124",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "RHSA-2014:1294",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1294.html"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "59737",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59737"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBHF03146",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1141597"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61711",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61711"
            },
            {
              "name": "HPSBOV03228",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://advisories.mageia.org/MGASA-2014-0388.html"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "61471",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61471"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-1293.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "42938",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/42938/"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61700",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61700"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "name": "61857",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61857"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/161107/SonicWall-SSL-VPN-Shellshock-Remote-Code-Execution.html"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "security@debian.org",
              "ID": "CVE-2014-6271",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution, aka \"ShellShock.\"  NOTE: the original fix for this issue was incorrect; CVE-2014-7169 has been assigned to cover the vulnerability that is still present after the incorrect fix."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "37816",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/37816/"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
                },
                {
                  "name": "SUSE-SU-2014:1223",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00034.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "SSRT101816",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
                },
                {
                  "name": "39918",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/39918/"
                },
                {
                  "name": "HPSBHF03119",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1295",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1295.html"
                },
                {
                  "name": "openSUSE-SU-2014:1226",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00037.html"
                },
                {
                  "name": "https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/",
                  "refsource": "CONFIRM",
                  "url": "https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "HPSBST03131",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "BUGTRAQ",
                  "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "HPSBST03196",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
                },
                {
                  "name": "61188",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61188"
                },
                {
                  "name": "http://www.websense.com/support/article/kbarticle/Vulnerabilities-resolved-in-TRITON-APX-Version-8-0",
                  "refsource": "CONFIRM",
                  "url": "http://www.websense.com/support/article/kbarticle/Vulnerabilities-resolved-in-TRITON-APX-Version-8-0"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "61676",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61676"
                },
                {
                  "name": "40619",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/40619/"
                },
                {
                  "name": "openSUSE-SU-2014:1254",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "38849",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/38849/"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10673",
                  "refsource": "CONFIRM",
                  "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10673"
                },
                {
                  "name": "SUSE-SU-2014:1260",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00049.html"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
                },
                {
                  "name": "61715",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61715"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "openSUSE-SU-2014:1310",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "HPSBST03195",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "SSRT101711",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "USN-2362-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2362-1"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "openSUSE-SU-2014:1308",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "61542",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61542"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015701",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "59272",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59272"
                },
                {
                  "name": "HPSBST03122",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "http://support.apple.com/kb/HT6495",
                  "refsource": "CONFIRM",
                  "url": "http://support.apple.com/kb/HT6495"
                },
                {
                  "name": "VU#252743",
                  "refsource": "CERT-VN",
                  "url": "http://www.kb.cert.org/vuls/id/252743"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "SUSE-SU-2014:1213",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00029.html"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "70103",
                  "refsource": "BID",
                  "url": "http://www.securityfocus.com/bid/70103"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "TA14-268A",
                  "refsource": "CERT",
                  "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
                },
                {
                  "name": "SUSE-SU-2014:1212",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00028.html"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "https://access.redhat.com/node/1200223",
                  "refsource": "CONFIRM",
                  "url": "https://access.redhat.com/node/1200223"
                },
                {
                  "name": "http://packetstormsecurity.com/files/137376/IPFire-Bash-Environment-Variable-Injection-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/137376/IPFire-Bash-Environment-Variable-Injection-Shellshock.html"
                },
                {
                  "name": "SUSE-SU-2014:1287",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "APPLE-SA-2014-10-16-1",
                  "refsource": "APPLE",
                  "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "FULLDISC",
                  "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "RHSA-2014:1293",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1293.html"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "openSUSE-SU-2014:1238",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00040.html"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60325",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60325"
                },
                {
                  "name": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes",
                  "refsource": "CONFIRM",
                  "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "34879",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/34879/"
                },
                {
                  "name": "https://access.redhat.com/articles/1200223",
                  "refsource": "CONFIRM",
                  "url": "https://access.redhat.com/articles/1200223"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61873",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61873"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "60947",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60947"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "https://support.apple.com/kb/HT6535",
                  "refsource": "CONFIRM",
                  "url": "https://support.apple.com/kb/HT6535"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "HPSBST03265",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142546741516006\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-1294.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-1294.html"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128573/Apache-mod_cgi-Remote-Command-Execution.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128573/Apache-mod_cgi-Remote-Command-Execution.html"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "HPSBMU03133",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "RHSA-2014:1354",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
                },
                {
                  "name": "40938",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/40938/"
                },
                {
                  "name": "HPSBGN03117",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-6271.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-6271.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "61547",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61547"
                },
                {
                  "name": "HPSBHF03145",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "HPSBST03148",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "61780",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61780"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "DSA-3032",
                  "refsource": "DEBIAN",
                  "url": "http://www.debian.org/security/2014/dsa-3032"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
                },
                {
                  "name": "62228",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62228"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "61855",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61855"
                },
                {
                  "name": "HPSBHF03124",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "RHSA-2014:1294",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1294.html"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "59737",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59737"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBHF03146",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1141597",
                  "refsource": "CONFIRM",
                  "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1141597"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61711",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61711"
                },
                {
                  "name": "HPSBOV03228",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "http://advisories.mageia.org/MGASA-2014-0388.html",
                  "refsource": "CONFIRM",
                  "url": "http://advisories.mageia.org/MGASA-2014-0388.html"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "61471",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61471"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-1293.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-1293.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "42938",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/42938/"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61700",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61700"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "61857",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61857"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                },
                {
                  "name": "http://packetstormsecurity.com/files/161107/SonicWall-SSL-VPN-Shellshock-Remote-Code-Execution.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/161107/SonicWall-SSL-VPN-Shellshock-Remote-Code-Execution.html"
                },
                {
                  "name": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006",
                  "refsource": "MISC",
                  "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
        "assignerShortName": "debian",
        "cveId": "CVE-2014-6271",
        "datePublished": "2014-09-24T18:00:00.000Z",
        "dateReserved": "2014-09-09T00:00:00.000Z",
        "dateUpdated": "2025-10-22T00:05:36.342Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2012-3410 (GCVE-0-2012-3410)

    Vulnerability from nvd – Published: 2012-08-27 23:00 – Updated: 2024-08-06 20:05
    VLAI
    Summary
    Stack-based buffer overflow in lib/sh/eaccess.c in GNU Bash before 4.2 patch 33 might allow local users to bypass intended restricted shell access via a long filename in /dev/fd, which is not properly handled when expanding the /dev/fd prefix.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    Date Public
    2012-07-11 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T20:05:12.514Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "[oss-security] 20120712 Re: CVE Request: Overflow fix in bash 4.2 patch 33",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2012/07/11/22"
              },
              {
                "name": "MDVSA-2012:128",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2012:128"
              },
              {
                "name": "bash-devfd-bo(77551)",
                "tags": [
                  "vdb-entry",
                  "x_refsource_XF",
                  "x_transferred"
                ],
                "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77551"
              },
              {
                "name": "openSUSE-SU-2012:0898",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "https://hermes.opensuse.org/messages/15227834"
              },
              {
                "name": "51086",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/51086"
              },
              {
                "name": "[oss-security] 20120711 CVE Request: Overflow fix in bash 4.2 patch 33",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2012/07/11/11"
              },
              {
                "name": "54937",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/54937"
              },
              {
                "name": "GLSA-201210-05",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_GENTOO",
                  "x_transferred"
                ],
                "url": "http://security.gentoo.org/glsa/glsa-201210-05.xml"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=681278"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "ftp://ftp.gnu.org/pub/gnu/bash/bash-4.2-patches/bash42-033"
              },
              {
                "name": "[oss-security] 20120712 Re: CVE Request: Overflow fix in bash 4.2 patch 33",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2012/07/12/4"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2012-07-11T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "Stack-based buffer overflow in lib/sh/eaccess.c in GNU Bash before 4.2 patch 33 might allow local users to bypass intended restricted shell access via a long filename in /dev/fd, which is not properly handled when expanding the /dev/fd prefix."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2017-08-28T12:57:01.000Z",
            "orgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
            "shortName": "redhat"
          },
          "references": [
            {
              "name": "[oss-security] 20120712 Re: CVE Request: Overflow fix in bash 4.2 patch 33",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2012/07/11/22"
            },
            {
              "name": "MDVSA-2012:128",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2012:128"
            },
            {
              "name": "bash-devfd-bo(77551)",
              "tags": [
                "vdb-entry",
                "x_refsource_XF"
              ],
              "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77551"
            },
            {
              "name": "openSUSE-SU-2012:0898",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "https://hermes.opensuse.org/messages/15227834"
            },
            {
              "name": "51086",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/51086"
            },
            {
              "name": "[oss-security] 20120711 CVE Request: Overflow fix in bash 4.2 patch 33",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2012/07/11/11"
            },
            {
              "name": "54937",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/54937"
            },
            {
              "name": "GLSA-201210-05",
              "tags": [
                "vendor-advisory",
                "x_refsource_GENTOO"
              ],
              "url": "http://security.gentoo.org/glsa/glsa-201210-05.xml"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=681278"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "ftp://ftp.gnu.org/pub/gnu/bash/bash-4.2-patches/bash42-033"
            },
            {
              "name": "[oss-security] 20120712 Re: CVE Request: Overflow fix in bash 4.2 patch 33",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2012/07/12/4"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
        "assignerShortName": "redhat",
        "cveId": "CVE-2012-3410",
        "datePublished": "2012-08-27T23:00:00.000Z",
        "dateReserved": "2012-06-14T00:00:00.000Z",
        "dateUpdated": "2024-08-06T20:05:12.514Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2022-3715 (GCVE-0-2022-3715)

    Vulnerability from cvelistv5 – Published: 2023-01-05 00:00 – Updated: 2025-11-03 21:46
    VLAI
    Summary
    A flaw was found in the bash package, where a heap-buffer overflow can occur in valid parameter_transform. This issue may lead to memory problems.
    SSVC
    Exploitation: poc Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-04-10 14:57 UTC
    CWE
    Impacted products
    Vendor Product Version
    n/a bash Affected: bash 5.1.8
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2025-11-03T21:46:30.575Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_transferred"
                ],
                "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2126720"
              },
              {
                "url": "https://security.netapp.com/advisory/ntap-20241108-0002/"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "LOCAL",
                  "availabilityImpact": "HIGH",
                  "baseScore": 7.8,
                  "baseSeverity": "HIGH",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "LOW",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2022-3715",
                    "options": [
                      {
                        "Exploitation": "poc"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-04-10T14:57:24.142960Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-04-10T14:57:58.294Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "bash",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "bash 5.1.8"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "A flaw was found in the bash package, where a heap-buffer overflow can occur in valid parameter_transform. This issue may lead to memory problems."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "cweId": "CWE-119",
                  "description": "CWE-119",
                  "lang": "en",
                  "type": "CWE"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2023-01-05T00:00:00.000Z",
            "orgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
            "shortName": "redhat"
          },
          "references": [
            {
              "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2126720"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
        "assignerShortName": "redhat",
        "cveId": "CVE-2022-3715",
        "datePublished": "2023-01-05T00:00:00.000Z",
        "dateReserved": "2022-10-27T00:00:00.000Z",
        "dateUpdated": "2025-11-03T21:46:30.575Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2019-18276 (GCVE-0-2019-18276)

    Vulnerability from cvelistv5 – Published: 2019-11-28 00:27 – Updated: 2025-06-09 15:51
    VLAI
    Summary
    An issue was discovered in disable_priv_mode in shell.c in GNU Bash through 5.0 patch 11. By default, if Bash is run with its effective UID not equal to its real UID, it will drop privileges by setting its effective UID to its real UID. However, it does so incorrectly. On Linux and other systems that support "saved UID" functionality, the saved UID is not dropped. An attacker with command execution in the shell can use "enable -f" for runtime loading of a new builtin, which can be a shared object that calls setuid() and therefore regains privileges. However, binaries running with an effective UID of 0 are unaffected.
    SSVC
    Exploitation: poc Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-06-09 15:50 UTC
    CWE
    • n/a
    • CWE-273 - Improper Check for Dropped Privileges
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-05T01:47:14.188Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "[mina-dev] 20210225 [jira] [Created] (FTPSERVER-500) Security vulnerability in common/lib/log4j-1.2.17.jar",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E"
              },
              {
                "name": "GLSA-202105-34",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_GENTOO",
                  "x_transferred"
                ],
                "url": "https://security.gentoo.org/glsa/202105-34"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://www.oracle.com/security-alerts/cpuapr2022.html"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://www.youtube.com/watch?v=-wGtxJ8opa8"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://github.com/bminor/bash/commit/951bdaad7a18cc0dc1036bba86b18b90874d39ff"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/155498/Bash-5.0-Patch-11-Privilege-Escalation.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://security.netapp.com/advisory/ntap-20200430-0003/"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "LOCAL",
                  "availabilityImpact": "HIGH",
                  "baseScore": 7.8,
                  "baseSeverity": "HIGH",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "LOW",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2019-18276",
                    "options": [
                      {
                        "Exploitation": "poc"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-06-09T15:50:29.163562Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-273",
                    "description": "CWE-273 Improper Check for Dropped Privileges",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-06-09T15:51:35.168Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "An issue was discovered in disable_priv_mode in shell.c in GNU Bash through 5.0 patch 11. By default, if Bash is run with its effective UID not equal to its real UID, it will drop privileges by setting its effective UID to its real UID. However, it does so incorrectly. On Linux and other systems that support \"saved UID\" functionality, the saved UID is not dropped. An attacker with command execution in the shell can use \"enable -f\" for runtime loading of a new builtin, which can be a shared object that calls setuid() and therefore regains privileges. However, binaries running with an effective UID of 0 are unaffected."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2022-04-19T23:20:34.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "name": "[mina-dev] 20210225 [jira] [Created] (FTPSERVER-500) Security vulnerability in common/lib/log4j-1.2.17.jar",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772%40%3Cdev.mina.apache.org%3E"
            },
            {
              "name": "GLSA-202105-34",
              "tags": [
                "vendor-advisory",
                "x_refsource_GENTOO"
              ],
              "url": "https://security.gentoo.org/glsa/202105-34"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://www.oracle.com/security-alerts/cpuapr2022.html"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://www.youtube.com/watch?v=-wGtxJ8opa8"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://github.com/bminor/bash/commit/951bdaad7a18cc0dc1036bba86b18b90874d39ff"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/155498/Bash-5.0-Patch-11-Privilege-Escalation.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://security.netapp.com/advisory/ntap-20200430-0003/"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2019-18276",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "An issue was discovered in disable_priv_mode in shell.c in GNU Bash through 5.0 patch 11. By default, if Bash is run with its effective UID not equal to its real UID, it will drop privileges by setting its effective UID to its real UID. However, it does so incorrectly. On Linux and other systems that support \"saved UID\" functionality, the saved UID is not dropped. An attacker with command execution in the shell can use \"enable -f\" for runtime loading of a new builtin, which can be a shared object that calls setuid() and therefore regains privileges. However, binaries running with an effective UID of 0 are unaffected."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "[mina-dev] 20210225 [jira] [Created] (FTPSERVER-500) Security vulnerability in common/lib/log4j-1.2.17.jar",
                  "refsource": "MLIST",
                  "url": "https://lists.apache.org/thread.html/rf9fa47ab66495c78bb4120b0754dd9531ca2ff0430f6685ac9b07772@%3Cdev.mina.apache.org%3E"
                },
                {
                  "name": "GLSA-202105-34",
                  "refsource": "GENTOO",
                  "url": "https://security.gentoo.org/glsa/202105-34"
                },
                {
                  "name": "https://www.oracle.com/security-alerts/cpuapr2022.html",
                  "refsource": "MISC",
                  "url": "https://www.oracle.com/security-alerts/cpuapr2022.html"
                },
                {
                  "name": "https://www.youtube.com/watch?v=-wGtxJ8opa8",
                  "refsource": "MISC",
                  "url": "https://www.youtube.com/watch?v=-wGtxJ8opa8"
                },
                {
                  "name": "https://github.com/bminor/bash/commit/951bdaad7a18cc0dc1036bba86b18b90874d39ff",
                  "refsource": "CONFIRM",
                  "url": "https://github.com/bminor/bash/commit/951bdaad7a18cc0dc1036bba86b18b90874d39ff"
                },
                {
                  "name": "http://packetstormsecurity.com/files/155498/Bash-5.0-Patch-11-Privilege-Escalation.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/155498/Bash-5.0-Patch-11-Privilege-Escalation.html"
                },
                {
                  "name": "https://security.netapp.com/advisory/ntap-20200430-0003/",
                  "refsource": "CONFIRM",
                  "url": "https://security.netapp.com/advisory/ntap-20200430-0003/"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2019-18276",
        "datePublished": "2019-11-28T00:27:51.000Z",
        "dateReserved": "2019-10-23T00:00:00.000Z",
        "dateUpdated": "2025-06-09T15:51:35.168Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2012-6711 (GCVE-0-2012-6711)

    Vulnerability from cvelistv5 – Published: 2019-06-18 17:34 – Updated: 2024-08-06 21:36
    VLAI
    Summary
    A heap-based buffer overflow exists in GNU Bash before 4.3 when wide characters, not supported by the current locale set in the LC_CTYPE environment variable, are printed through the echo built-in function. A local attacker, who can provide data to print through the "echo -e" built-in function, may use this flaw to crash a script or execute code with the privileges of the bash process. This occurs because ansicstr() in lib/sh/strtrans.c mishandles u32cconv().
    CWE
    • n/a
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T21:36:02.224Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1721071"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://git.savannah.gnu.org/cgit/bash.git/commit/?h=devel\u0026id=863d31ae775d56b785dc5b0105b6d251515d81d5"
              },
              {
                "name": "108824",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/108824"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/csp/article/K05122252"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/csp/article/K05122252?utm_source=f5support\u0026amp%3Butm_medium=RSS"
              },
              {
                "name": "USN-4180-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "https://usn.ubuntu.com/4180-1/"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "A heap-based buffer overflow exists in GNU Bash before 4.3 when wide characters, not supported by the current locale set in the LC_CTYPE environment variable, are printed through the echo built-in function. A local attacker, who can provide data to print through the \"echo -e\" built-in function, may use this flaw to crash a script or execute code with the privileges of the bash process. This occurs because ansicstr() in lib/sh/strtrans.c mishandles u32cconv()."
            }
          ],
          "metrics": [
            {
              "cvssV3_0": {
                "attackComplexity": "HIGH",
                "attackVector": "LOCAL",
                "availabilityImpact": "HIGH",
                "baseScore": 7,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.0/AC:H/AV:L/A:H/C:H/I:H/PR:L/S:U/UI:N",
                "version": "3.0"
              }
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2019-11-11T15:06:56.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1721071"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://git.savannah.gnu.org/cgit/bash.git/commit/?h=devel\u0026id=863d31ae775d56b785dc5b0105b6d251515d81d5"
            },
            {
              "name": "108824",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/108824"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/csp/article/K05122252"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/csp/article/K05122252?utm_source=f5support\u0026amp%3Butm_medium=RSS"
            },
            {
              "name": "USN-4180-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "https://usn.ubuntu.com/4180-1/"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2012-6711",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "A heap-based buffer overflow exists in GNU Bash before 4.3 when wide characters, not supported by the current locale set in the LC_CTYPE environment variable, are printed through the echo built-in function. A local attacker, who can provide data to print through the \"echo -e\" built-in function, may use this flaw to crash a script or execute code with the privileges of the bash process. This occurs because ansicstr() in lib/sh/strtrans.c mishandles u32cconv()."
                }
              ]
            },
            "impact": {
              "cvss": {
                "attackComplexity": "HIGH",
                "attackVector": "LOCAL",
                "availabilityImpact": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.0/AC:H/AV:L/A:H/C:H/I:H/PR:L/S:U/UI:N",
                "version": "3.0"
              }
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1721071",
                  "refsource": "MISC",
                  "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1721071"
                },
                {
                  "name": "http://git.savannah.gnu.org/cgit/bash.git/commit/?h=devel\u0026id=863d31ae775d56b785dc5b0105b6d251515d81d5",
                  "refsource": "MISC",
                  "url": "http://git.savannah.gnu.org/cgit/bash.git/commit/?h=devel\u0026id=863d31ae775d56b785dc5b0105b6d251515d81d5"
                },
                {
                  "name": "108824",
                  "refsource": "BID",
                  "url": "http://www.securityfocus.com/bid/108824"
                },
                {
                  "name": "https://support.f5.com/csp/article/K05122252",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/csp/article/K05122252"
                },
                {
                  "name": "https://support.f5.com/csp/article/K05122252?utm_source=f5support\u0026amp;utm_medium=RSS",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/csp/article/K05122252?utm_source=f5support\u0026amp;utm_medium=RSS"
                },
                {
                  "name": "USN-4180-1",
                  "refsource": "UBUNTU",
                  "url": "https://usn.ubuntu.com/4180-1/"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2012-6711",
        "datePublished": "2019-06-18T17:34:08.000Z",
        "dateReserved": "2019-06-18T00:00:00.000Z",
        "dateUpdated": "2024-08-06T21:36:02.224Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2019-9924 (GCVE-0-2019-9924)

    Vulnerability from cvelistv5 – Published: 2019-03-22 07:05 – Updated: 2024-08-04 22:01
    VLAI
    Summary
    rbash in Bash before 4.4-beta2 did not prevent the shell user from modifying BASH_CMDS, thus allowing the user to execute any command with the permissions of the shell.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-04T22:01:55.187Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://bugs.launchpad.net/ubuntu/+source/bash/+bug/1803441"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://git.savannah.gnu.org/cgit/bash.git/tree/CHANGES?h=bash-4.4-testing#n65"
              },
              {
                "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
              },
              {
                "name": "openSUSE-SU-2019:1178",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00049.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://security.netapp.com/advisory/ntap-20190411-0001/"
              },
              {
                "name": "USN-4058-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "https://usn.ubuntu.com/4058-1/"
              },
              {
                "name": "USN-4058-2",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "https://usn.ubuntu.com/4058-2/"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "descriptions": [
            {
              "lang": "en",
              "value": "rbash in Bash before 4.4-beta2 did not prevent the shell user from modifying BASH_CMDS, thus allowing the user to execute any command with the permissions of the shell."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2019-08-05T17:06:08.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://bugs.launchpad.net/ubuntu/+source/bash/+bug/1803441"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://git.savannah.gnu.org/cgit/bash.git/tree/CHANGES?h=bash-4.4-testing#n65"
            },
            {
              "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
            },
            {
              "name": "openSUSE-SU-2019:1178",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00049.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://security.netapp.com/advisory/ntap-20190411-0001/"
            },
            {
              "name": "USN-4058-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "https://usn.ubuntu.com/4058-1/"
            },
            {
              "name": "USN-4058-2",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "https://usn.ubuntu.com/4058-2/"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2019-9924",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "rbash in Bash before 4.4-beta2 did not prevent the shell user from modifying BASH_CMDS, thus allowing the user to execute any command with the permissions of the shell."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "https://bugs.launchpad.net/ubuntu/+source/bash/+bug/1803441",
                  "refsource": "MISC",
                  "url": "https://bugs.launchpad.net/ubuntu/+source/bash/+bug/1803441"
                },
                {
                  "name": "http://git.savannah.gnu.org/cgit/bash.git/tree/CHANGES?h=bash-4.4-testing#n65",
                  "refsource": "MISC",
                  "url": "http://git.savannah.gnu.org/cgit/bash.git/tree/CHANGES?h=bash-4.4-testing#n65"
                },
                {
                  "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
                  "refsource": "MLIST",
                  "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
                },
                {
                  "name": "openSUSE-SU-2019:1178",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00049.html"
                },
                {
                  "name": "https://security.netapp.com/advisory/ntap-20190411-0001/",
                  "refsource": "CONFIRM",
                  "url": "https://security.netapp.com/advisory/ntap-20190411-0001/"
                },
                {
                  "name": "USN-4058-1",
                  "refsource": "UBUNTU",
                  "url": "https://usn.ubuntu.com/4058-1/"
                },
                {
                  "name": "USN-4058-2",
                  "refsource": "UBUNTU",
                  "url": "https://usn.ubuntu.com/4058-2/"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2019-9924",
        "datePublished": "2019-03-22T07:05:28.000Z",
        "dateReserved": "2019-03-22T00:00:00.000Z",
        "dateUpdated": "2024-08-04T22:01:55.187Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2016-0634 (GCVE-0-2016-0634)

    Vulnerability from cvelistv5 – Published: 2017-08-28 15:00 – Updated: 2024-10-04 17:00
    VLAI
    Summary
    The expansion of '\h' in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in 'hostname' of a machine.
    Severity
    No CVSS data available.
    SSVC
    Exploitation: none Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2024-10-04 15:39 UTC
    CWE
    • n/a
    Date Public
    2016-09-16 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-05T22:22:55.842Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "[oss-security] 20160927 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/27/9"
              },
              {
                "name": "[oss-security] 20160916 CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/16/8"
              },
              {
                "name": "RHSA-2017:0725",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
              },
              {
                "name": "[oss-security] 20160929 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/29/27"
              },
              {
                "name": "[oss-security] 20160920 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/20/1"
              },
              {
                "name": "92999",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/92999"
              },
              {
                "name": "RHSA-2017:1931",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/errata/RHSA-2017:1931"
              },
              {
                "name": "[oss-security] 20161007 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/10/07/6"
              },
              {
                "name": "[oss-security] 20160918 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/18/11"
              },
              {
                "name": "[oss-security] 20160919 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/19/7"
              },
              {
                "name": "[oss-security] 20161010 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/10/10/4"
              },
              {
                "name": "[oss-security] 20160916 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/16/12"
              },
              {
                "name": "GLSA-201612-39",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_GENTOO",
                  "x_transferred"
                ],
                "url": "https://security.gentoo.org/glsa/201612-39"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1377613"
              },
              {
                "name": "[oss-security] 20161010 RE: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/10/10/3"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "other": {
                  "content": {
                    "id": "CVE-2016-0634",
                    "options": [
                      {
                        "Exploitation": "none"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2024-10-04T15:39:15.651571Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2024-10-04T17:00:57.944Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2016-09-16T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "The expansion of \u0027\\h\u0027 in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in \u0027hostname\u0027 of a machine."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2018-01-04T19:57:01.000Z",
            "orgId": "43595867-4340-4103-b7a2-9a5208d29a85",
            "shortName": "oracle"
          },
          "references": [
            {
              "name": "[oss-security] 20160927 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/27/9"
            },
            {
              "name": "[oss-security] 20160916 CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/16/8"
            },
            {
              "name": "RHSA-2017:0725",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
            },
            {
              "name": "[oss-security] 20160929 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/29/27"
            },
            {
              "name": "[oss-security] 20160920 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/20/1"
            },
            {
              "name": "92999",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/92999"
            },
            {
              "name": "RHSA-2017:1931",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "https://access.redhat.com/errata/RHSA-2017:1931"
            },
            {
              "name": "[oss-security] 20161007 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/10/07/6"
            },
            {
              "name": "[oss-security] 20160918 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/18/11"
            },
            {
              "name": "[oss-security] 20160919 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/19/7"
            },
            {
              "name": "[oss-security] 20161010 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/10/10/4"
            },
            {
              "name": "[oss-security] 20160916 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/16/12"
            },
            {
              "name": "GLSA-201612-39",
              "tags": [
                "vendor-advisory",
                "x_refsource_GENTOO"
              ],
              "url": "https://security.gentoo.org/glsa/201612-39"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1377613"
            },
            {
              "name": "[oss-security] 20161010 RE: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/10/10/3"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "secalert_us@oracle.com",
              "ID": "CVE-2016-0634",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "The expansion of \u0027\\h\u0027 in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in \u0027hostname\u0027 of a machine."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "[oss-security] 20160927 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/27/9"
                },
                {
                  "name": "[oss-security] 20160916 CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/16/8"
                },
                {
                  "name": "RHSA-2017:0725",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
                },
                {
                  "name": "[oss-security] 20160929 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/29/27"
                },
                {
                  "name": "[oss-security] 20160920 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/20/1"
                },
                {
                  "name": "92999",
                  "refsource": "BID",
                  "url": "http://www.securityfocus.com/bid/92999"
                },
                {
                  "name": "RHSA-2017:1931",
                  "refsource": "REDHAT",
                  "url": "https://access.redhat.com/errata/RHSA-2017:1931"
                },
                {
                  "name": "[oss-security] 20161007 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/10/07/6"
                },
                {
                  "name": "[oss-security] 20160918 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/18/11"
                },
                {
                  "name": "[oss-security] 20160919 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/19/7"
                },
                {
                  "name": "[oss-security] 20161010 Re: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/10/10/4"
                },
                {
                  "name": "[oss-security] 20160916 Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/16/12"
                },
                {
                  "name": "GLSA-201612-39",
                  "refsource": "GENTOO",
                  "url": "https://security.gentoo.org/glsa/201612-39"
                },
                {
                  "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1377613",
                  "refsource": "CONFIRM",
                  "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1377613"
                },
                {
                  "name": "[oss-security] 20161010 RE: Re: CVE-2016-0634 -- bash prompt expanding $HOSTNAME",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/10/10/3"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "43595867-4340-4103-b7a2-9a5208d29a85",
        "assignerShortName": "oracle",
        "cveId": "CVE-2016-0634",
        "datePublished": "2017-08-28T15:00:00.000Z",
        "dateReserved": "2015-12-09T00:00:00.000Z",
        "dateUpdated": "2024-10-04T17:00:57.944Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2017-5932 (GCVE-0-2017-5932)

    Vulnerability from cvelistv5 – Published: 2017-03-27 15:00 – Updated: 2024-08-05 15:18
    VLAI
    Summary
    The path autocompletion feature in Bash 4.4 allows local users to gain privileges via a crafted filename starting with a " (double quote) character and a command substitution metacharacter.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    Date Public
    2017-01-20 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-05T15:18:48.374Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://git.savannah.gnu.org/cgit/bash.git/commit/?id=4f747edc625815f449048579f6e65869914dd715"
              },
              {
                "name": "[bug-bash] 20170120  Bash-4.4 Official Patch 7",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "https://lists.gnu.org/archive/html/bug-bash/2017-01/msg00034.html"
              },
              {
                "name": "[oss-security] 20170207 Re: CVE Request - Code execution vulnerability in GNU/bash v4.4 autocompletion",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2017/02/08/3"
              },
              {
                "name": "96136",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/96136"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2017-01-20T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "The path autocompletion feature in Bash 4.4 allows local users to gain privileges via a crafted filename starting with a \" (double quote) character and a command substitution metacharacter."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2017-03-27T14:57:01.000Z",
            "orgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
            "shortName": "redhat"
          },
          "references": [
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://git.savannah.gnu.org/cgit/bash.git/commit/?id=4f747edc625815f449048579f6e65869914dd715"
            },
            {
              "name": "[bug-bash] 20170120  Bash-4.4 Official Patch 7",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "https://lists.gnu.org/archive/html/bug-bash/2017-01/msg00034.html"
            },
            {
              "name": "[oss-security] 20170207 Re: CVE Request - Code execution vulnerability in GNU/bash v4.4 autocompletion",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2017/02/08/3"
            },
            {
              "name": "96136",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/96136"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
        "assignerShortName": "redhat",
        "cveId": "CVE-2017-5932",
        "datePublished": "2017-03-27T15:00:00.000Z",
        "dateReserved": "2017-02-07T00:00:00.000Z",
        "dateUpdated": "2024-08-05T15:18:48.374Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2016-9401 (GCVE-0-2016-9401)

    Vulnerability from cvelistv5 – Published: 2017-01-23 21:00 – Updated: 2025-08-06 21:12
    VLAI
    Summary
    popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address.
    SSVC
    Exploitation: poc Automatable: no Technical Impact: partial
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-08-06 21:11 UTC
    CWE
    References
    URL Tags
    http://rhn.redhat.com/errata/RHSA-2017-0725.html vendor-advisoryx_refsource_REDHAT
    https://access.redhat.com/errata/RHSA-2017:1931 vendor-advisoryx_refsource_REDHAT
    http://www.openwall.com/lists/oss-security/2016/11/17/5 mailing-listx_refsource_MLIST
    http://www.openwall.com/lists/oss-security/2016/11/17/9 mailing-listx_refsource_MLIST
    http://www.securityfocus.com/bid/94398 vdb-entryx_refsource_BID
    https://security.gentoo.org/glsa/201701-02 vendor-advisoryx_refsource_GENTOO
    https://lists.debian.org/debian-lts-announce/2019… mailing-listx_refsource_MLIST
    Date Public
    2016-11-17 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T02:50:37.655Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "RHSA-2017:0725",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
              },
              {
                "name": "RHSA-2017:1931",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/errata/RHSA-2017:1931"
              },
              {
                "name": "[oss-security] 20161117 bash - popd controlled free",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/11/17/5"
              },
              {
                "name": "[oss-security] 20161117 Re: bash - popd controlled free",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/11/17/9"
              },
              {
                "name": "94398",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/94398"
              },
              {
                "name": "GLSA-201701-02",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_GENTOO",
                  "x_transferred"
                ],
                "url": "https://security.gentoo.org/glsa/201701-02"
              },
              {
                "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "LOCAL",
                  "availabilityImpact": "HIGH",
                  "baseScore": 6.2,
                  "baseSeverity": "MEDIUM",
                  "confidentialityImpact": "NONE",
                  "integrityImpact": "NONE",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2016-9401",
                    "options": [
                      {
                        "Exploitation": "poc"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "partial"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-08-06T21:11:48.635928Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-416",
                    "description": "CWE-416 Use After Free",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-08-06T21:12:45.629Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2016-11-17T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2019-03-25T13:06:16.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "name": "RHSA-2017:0725",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
            },
            {
              "name": "RHSA-2017:1931",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "https://access.redhat.com/errata/RHSA-2017:1931"
            },
            {
              "name": "[oss-security] 20161117 bash - popd controlled free",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/11/17/5"
            },
            {
              "name": "[oss-security] 20161117 Re: bash - popd controlled free",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/11/17/9"
            },
            {
              "name": "94398",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/94398"
            },
            {
              "name": "GLSA-201701-02",
              "tags": [
                "vendor-advisory",
                "x_refsource_GENTOO"
              ],
              "url": "https://security.gentoo.org/glsa/201701-02"
            },
            {
              "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2016-9401",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "RHSA-2017:0725",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
                },
                {
                  "name": "RHSA-2017:1931",
                  "refsource": "REDHAT",
                  "url": "https://access.redhat.com/errata/RHSA-2017:1931"
                },
                {
                  "name": "[oss-security] 20161117 bash - popd controlled free",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/11/17/5"
                },
                {
                  "name": "[oss-security] 20161117 Re: bash - popd controlled free",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/11/17/9"
                },
                {
                  "name": "94398",
                  "refsource": "BID",
                  "url": "http://www.securityfocus.com/bid/94398"
                },
                {
                  "name": "GLSA-201701-02",
                  "refsource": "GENTOO",
                  "url": "https://security.gentoo.org/glsa/201701-02"
                },
                {
                  "name": "[debian-lts-announce] 20190325 [SECURITY] [DLA 1726-1] bash security update",
                  "refsource": "MLIST",
                  "url": "https://lists.debian.org/debian-lts-announce/2019/03/msg00028.html"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2016-9401",
        "datePublished": "2017-01-23T21:00:00.000Z",
        "dateReserved": "2016-11-17T00:00:00.000Z",
        "dateUpdated": "2025-08-06T21:12:45.629Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2016-7543 (GCVE-0-2016-7543)

    Vulnerability from cvelistv5 – Published: 2017-01-19 20:00 – Updated: 2024-08-06 02:04
    VLAI
    Summary
    Bash before 4.4 allows local users to execute arbitrary commands with root privileges via crafted SHELLOPTS and PS4 environment variables.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    URL Tags
    http://rhn.redhat.com/errata/RHSA-2017-0725.html vendor-advisoryx_refsource_REDHAT
    https://lists.fedoraproject.org/archives/list/pac… vendor-advisoryx_refsource_FEDORA
    https://access.redhat.com/errata/RHSA-2017:1931 vendor-advisoryx_refsource_REDHAT
    https://lists.fedoraproject.org/archives/list/pac… vendor-advisoryx_refsource_FEDORA
    http://www.openwall.com/lists/oss-security/2016/09/26/9 mailing-listx_refsource_MLIST
    https://lists.gnu.org/archive/html/bug-bash/2016-… mailing-listx_refsource_MLIST
    http://www.securityfocus.com/bid/93183 vdb-entryx_refsource_BID
    https://h20566.www2.hpe.com/portal/site/hpsc/publ… x_refsource_CONFIRM
    https://lists.fedoraproject.org/archives/list/pac… vendor-advisoryx_refsource_FEDORA
    http://www.securitytracker.com/id/1037812 vdb-entryx_refsource_SECTRACK
    https://security.gentoo.org/glsa/201701-02 vendor-advisoryx_refsource_GENTOO
    Date Public
    2016-09-16 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T02:04:54.955Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "RHSA-2017:0725",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
              },
              {
                "name": "FEDORA-2016-5a54fb4784",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_FEDORA",
                  "x_transferred"
                ],
                "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OU3C756YPHDAAPFX76UGZBAQQQ5UMHS5/"
              },
              {
                "name": "RHSA-2017:1931",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/errata/RHSA-2017:1931"
              },
              {
                "name": "FEDORA-2016-2c4b5ad64e",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_FEDORA",
                  "x_transferred"
                ],
                "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F7XOQSHU63Y357NHU5FPTFBM6I3YOCQB/"
              },
              {
                "name": "[oss-security] 20160926 CVE-2016-7543 -- bash SHELLOPTS+PS4",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2016/09/26/9"
              },
              {
                "name": "[bug-bash] 20160916 Bash-4.4 Release available",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "https://lists.gnu.org/archive/html/bug-bash/2016-09/msg00018.html"
              },
              {
                "name": "93183",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/93183"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05388115"
              },
              {
                "name": "FEDORA-2016-f84391516d",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_FEDORA",
                  "x_transferred"
                ],
                "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2VRBSIPZDZ75ZQ2DLITHUIDW4W26KVR/"
              },
              {
                "name": "1037812",
                "tags": [
                  "vdb-entry",
                  "x_refsource_SECTRACK",
                  "x_transferred"
                ],
                "url": "http://www.securitytracker.com/id/1037812"
              },
              {
                "name": "GLSA-201701-02",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_GENTOO",
                  "x_transferred"
                ],
                "url": "https://security.gentoo.org/glsa/201701-02"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2016-09-16T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "Bash before 4.4 allows local users to execute arbitrary commands with root privileges via crafted SHELLOPTS and PS4 environment variables."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2018-01-04T19:57:01.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "name": "RHSA-2017:0725",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
            },
            {
              "name": "FEDORA-2016-5a54fb4784",
              "tags": [
                "vendor-advisory",
                "x_refsource_FEDORA"
              ],
              "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OU3C756YPHDAAPFX76UGZBAQQQ5UMHS5/"
            },
            {
              "name": "RHSA-2017:1931",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "https://access.redhat.com/errata/RHSA-2017:1931"
            },
            {
              "name": "FEDORA-2016-2c4b5ad64e",
              "tags": [
                "vendor-advisory",
                "x_refsource_FEDORA"
              ],
              "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F7XOQSHU63Y357NHU5FPTFBM6I3YOCQB/"
            },
            {
              "name": "[oss-security] 20160926 CVE-2016-7543 -- bash SHELLOPTS+PS4",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2016/09/26/9"
            },
            {
              "name": "[bug-bash] 20160916 Bash-4.4 Release available",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "https://lists.gnu.org/archive/html/bug-bash/2016-09/msg00018.html"
            },
            {
              "name": "93183",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/93183"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05388115"
            },
            {
              "name": "FEDORA-2016-f84391516d",
              "tags": [
                "vendor-advisory",
                "x_refsource_FEDORA"
              ],
              "url": "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2VRBSIPZDZ75ZQ2DLITHUIDW4W26KVR/"
            },
            {
              "name": "1037812",
              "tags": [
                "vdb-entry",
                "x_refsource_SECTRACK"
              ],
              "url": "http://www.securitytracker.com/id/1037812"
            },
            {
              "name": "GLSA-201701-02",
              "tags": [
                "vendor-advisory",
                "x_refsource_GENTOO"
              ],
              "url": "https://security.gentoo.org/glsa/201701-02"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2016-7543",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "Bash before 4.4 allows local users to execute arbitrary commands with root privileges via crafted SHELLOPTS and PS4 environment variables."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "RHSA-2017:0725",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2017-0725.html"
                },
                {
                  "name": "FEDORA-2016-5a54fb4784",
                  "refsource": "FEDORA",
                  "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OU3C756YPHDAAPFX76UGZBAQQQ5UMHS5/"
                },
                {
                  "name": "RHSA-2017:1931",
                  "refsource": "REDHAT",
                  "url": "https://access.redhat.com/errata/RHSA-2017:1931"
                },
                {
                  "name": "FEDORA-2016-2c4b5ad64e",
                  "refsource": "FEDORA",
                  "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/F7XOQSHU63Y357NHU5FPTFBM6I3YOCQB/"
                },
                {
                  "name": "[oss-security] 20160926 CVE-2016-7543 -- bash SHELLOPTS+PS4",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2016/09/26/9"
                },
                {
                  "name": "[bug-bash] 20160916 Bash-4.4 Release available",
                  "refsource": "MLIST",
                  "url": "https://lists.gnu.org/archive/html/bug-bash/2016-09/msg00018.html"
                },
                {
                  "name": "93183",
                  "refsource": "BID",
                  "url": "http://www.securityfocus.com/bid/93183"
                },
                {
                  "name": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05388115",
                  "refsource": "CONFIRM",
                  "url": "https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05388115"
                },
                {
                  "name": "FEDORA-2016-f84391516d",
                  "refsource": "FEDORA",
                  "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Z2VRBSIPZDZ75ZQ2DLITHUIDW4W26KVR/"
                },
                {
                  "name": "1037812",
                  "refsource": "SECTRACK",
                  "url": "http://www.securitytracker.com/id/1037812"
                },
                {
                  "name": "GLSA-201701-02",
                  "refsource": "GENTOO",
                  "url": "https://security.gentoo.org/glsa/201701-02"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2016-7543",
        "datePublished": "2017-01-19T20:00:00.000Z",
        "dateReserved": "2016-09-09T00:00:00.000Z",
        "dateUpdated": "2024-08-06T02:04:54.955Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2014-6278 (GCVE-0-2014-6278)

    Vulnerability from cvelistv5 – Published: 2014-09-30 10:00 – Updated: 2025-12-30 20:24
    VLAI CISA Previdian
    Summary
    GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary commands via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271, CVE-2014-7169, and CVE-2014-6277.
    SSVC
    Exploitation: active Automatable: no Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-10-02 03:55 UTC
    CWE
    • n/a
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    References
    URL Tags
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://linux.oracle.com/errata/ELSA-2014-3093 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://packetstormsecurity.com/files/137344/Sun-S… x_refsource_MISC
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://www.ubuntu.com/usn/USN-2380-1 vendor-advisoryx_refsource_UBUNTU
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    https://security-tracker.debian.org/tracker/CVE-2… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    https://www.exploit-db.com/exploits/39887/ exploitx_refsource_EXPLOIT-DB
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://secunia.com/advisories/60325 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    http://lcamtuf.blogspot.com/2014/10/bash-bug-how-… x_refsource_MISC
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    https://bugzilla.redhat.com/show_bug.cgi?id=1147414 x_refsource_CONFIRM
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://linux.oracle.com/errata/ELSA-2014-3094 x_refsource_CONFIRM
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://support.novell.com/security/cve/CVE-2014-6… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383465822787&w=2 vendor-advisoryx_refsource_HP
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61780 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    https://www.exploit-db.com/exploits/39568/ exploitx_refsource_EXPLOIT-DB
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383353622268&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/61471 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59961 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://lcamtuf.blogspot.com/2014/09/bash-bug-appl… x_refsource_MISC
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61857 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    https://www.arista.com/en/support/advisories-noti… x_refsource_MISC
    https://www.cisa.gov/known-exploited-vulnerabilit… government-resource
    Date Public
    2014-09-29 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:10:13.322Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/137344/Sun-Secure-Global-Desktop-Oracle-Global-Desktop-Shellshock.html"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "openSUSE-SU-2014:1310",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "name": "USN-2380-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2380-1"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://security-tracker.debian.org/tracker/CVE-2014-6278"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "name": "39887",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/39887/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "name": "SUSE-SU-2014:1287",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60325",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60325"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
              },
              {
                "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1147414"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-6278.html"
              },
              {
                "name": "HPSBHF03145",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "name": "61780",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61780"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "name": "39568",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/39568/"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBHF03146",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "61471",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61471"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "59961",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59961"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "name": "61857",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61857"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "NETWORK",
                  "availabilityImpact": "HIGH",
                  "baseScore": 8.8,
                  "baseSeverity": "HIGH",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "REQUIRED",
                  "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2014-6278",
                    "options": [
                      {
                        "Exploitation": "active"
                      },
                      {
                        "Automatable": "no"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-10-02T03:55:45.174012Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              },
              {
                "other": {
                  "content": {
                    "dateAdded": "2025-10-02",
                    "reference": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-6278"
                  },
                  "type": "kev"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-78",
                    "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-12-30T20:24:56.789Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "references": [
              {
                "tags": [
                  "government-resource"
                ],
                "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-6278"
              }
            ],
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-29T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary commands via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271, CVE-2014-7169, and CVE-2014-6277."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2021-11-05T16:38:18.000Z",
            "orgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
            "shortName": "debian"
          },
          "references": [
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/137344/Sun-Secure-Global-Desktop-Oracle-Global-Desktop-Shellshock.html"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "openSUSE-SU-2014:1310",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "name": "USN-2380-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2380-1"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://security-tracker.debian.org/tracker/CVE-2014-6278"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "name": "39887",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/39887/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "name": "SUSE-SU-2014:1287",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60325",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60325"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
            },
            {
              "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1147414"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-6278.html"
            },
            {
              "name": "HPSBHF03145",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "name": "61780",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61780"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "name": "39568",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/39568/"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBHF03146",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "61471",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61471"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "59961",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59961"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "name": "61857",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61857"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "security@debian.org",
              "ID": "CVE-2014-6278",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary commands via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271, CVE-2014-7169, and CVE-2014-6277."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3093",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "http://packetstormsecurity.com/files/137344/Sun-Secure-Global-Desktop-Oracle-Global-Desktop-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/137344/Sun-Secure-Global-Desktop-Oracle-Global-Desktop-Shellshock.html"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "openSUSE-SU-2014:1310",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "USN-2380-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2380-1"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "https://security-tracker.debian.org/tracker/CVE-2014-6278",
                  "refsource": "CONFIRM",
                  "url": "https://security-tracker.debian.org/tracker/CVE-2014-6278"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "39887",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/39887/"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "SUSE-SU-2014:1287",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60325",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60325"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
                },
                {
                  "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1147414",
                  "refsource": "CONFIRM",
                  "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1147414"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3094",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-6278.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-6278.html"
                },
                {
                  "name": "HPSBHF03145",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "61780",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61780"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "39568",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/39568/"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBHF03146",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "61471",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61471"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "59961",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59961"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "61857",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61857"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                },
                {
                  "name": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006",
                  "refsource": "MISC",
                  "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
        "assignerShortName": "debian",
        "cveId": "CVE-2014-6278",
        "datePublished": "2014-09-30T10:00:00.000Z",
        "dateReserved": "2014-09-09T00:00:00.000Z",
        "dateUpdated": "2025-12-30T20:24:56.789Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }

    CVE-2014-7187 (GCVE-0-2014-7187)

    Vulnerability from cvelistv5 – Published: 2014-09-28 19:00 – Updated: 2024-08-06 12:40
    VLAI
    Summary
    Off-by-one error in the read_token_word function in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via deeply nested for loops, aka the "word_lineno" issue.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    URL Tags
    http://packetstormsecurity.com/files/128517/VMwar… x_refsource_MISC
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383138121313&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://www.securityfocus.com/archive/1/533593/100… mailing-listx_refsource_BUGTRAQ
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61188 third-party-advisoryx_refsource_SECUNIA
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    http://openwall.com/lists/oss-security/2014/09/25/32 mailing-listx_refsource_MLIST
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://support.novell.com/security/cve/CVE-2014-7… x_refsource_CONFIRM
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61636 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1312.html vendor-advisoryx_refsource_REDHAT
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://www.ubuntu.com/usn/USN-2364-1 vendor-advisoryx_refsource_UBUNTU
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://seclists.org/fulldisclosure/2014/Oct/0 mailing-listx_refsource_FULLDISC
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    https://support.apple.com/HT205267 x_refsource_CONFIRM
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    http://secunia.com/advisories/61622 third-party-advisoryx_refsource_SECUNIA
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    http://openwall.com/lists/oss-security/2014/09/28/10 mailing-listx_refsource_MLIST
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://support.apple.com/HT204244 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142289270617409&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61873 third-party-advisoryx_refsource_SECUNIA
    http://openwall.com/lists/oss-security/2014/09/26/2 mailing-listx_refsource_MLIST
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61618 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://secunia.com/advisories/61479 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://rhn.redhat.com/errata/RHSA-2014-1354.html vendor-advisoryx_refsource_REDHAT
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141694386919794&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61855 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1311.html vendor-advisoryx_refsource_REDHAT
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61857 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    Date Public
    2014-09-25 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:40:19.211Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "name": "HPSBST03131",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_BUGTRAQ",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "openSUSE-SU-2014:1229",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "61188",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61188"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "openSUSE-SU-2014:1254",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-7187.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61636",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61636"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "openSUSE-SU-2014:1310",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "name": "APPLE-SA-2015-09-30-3",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "openSUSE-SU-2014:1308",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "RHSA-2014:1312",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "name": "USN-2364-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2364-1"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "name": "SUSE-SU-2014:1247",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_FULLDISC",
                  "x_transferred"
                ],
                "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.apple.com/HT205267"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "name": "61622",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61622"
              },
              {
                "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.apple.com/HT204244"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101830",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61873",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61873"
              },
              {
                "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "name": "openSUSE-SU-2014:1242",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
              },
              {
                "name": "61618",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61618"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "name": "61479",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61479"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "name": "RHSA-2014:1354",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
              },
              {
                "name": "HPSBMU03236",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "HPSBST03148",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "61855",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61855"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "APPLE-SA-2015-01-27-4",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "name": "RHSA-2014:1311",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "SUSE-SU-2014:1259",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "name": "61857",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61857"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-25T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "Off-by-one error in the read_token_word function in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via deeply nested for loops, aka the \"word_lineno\" issue."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2018-10-09T18:57:01.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "name": "HPSBST03131",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_BUGTRAQ"
              ],
              "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "openSUSE-SU-2014:1229",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "61188",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61188"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "openSUSE-SU-2014:1254",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-7187.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61636",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61636"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "openSUSE-SU-2014:1310",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "name": "APPLE-SA-2015-09-30-3",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "openSUSE-SU-2014:1308",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "RHSA-2014:1312",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "name": "USN-2364-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2364-1"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "name": "SUSE-SU-2014:1247",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_FULLDISC"
              ],
              "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.apple.com/HT205267"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "name": "61622",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61622"
            },
            {
              "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.apple.com/HT204244"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101830",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61873",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61873"
            },
            {
              "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "name": "openSUSE-SU-2014:1242",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
            },
            {
              "name": "61618",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61618"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "name": "61479",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61479"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "name": "RHSA-2014:1354",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
            },
            {
              "name": "HPSBMU03236",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "HPSBST03148",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "61855",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61855"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "APPLE-SA-2015-01-27-4",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "name": "RHSA-2014:1311",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "SUSE-SU-2014:1259",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "name": "61857",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61857"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2014-7187",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "Off-by-one error in the read_token_word function in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via deeply nested for loops, aka the \"word_lineno\" issue."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "HPSBST03131",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "BUGTRAQ",
                  "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "openSUSE-SU-2014:1229",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "61188",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61188"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "openSUSE-SU-2014:1254",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-7187.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-7187.html"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61636",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61636"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "openSUSE-SU-2014:1310",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "APPLE-SA-2015-09-30-3",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "openSUSE-SU-2014:1308",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1312",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "USN-2364-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2364-1"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "SUSE-SU-2014:1247",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "FULLDISC",
                  "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "https://support.apple.com/HT205267",
                  "refsource": "CONFIRM",
                  "url": "https://support.apple.com/HT205267"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "61622",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61622"
                },
                {
                  "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "http://support.apple.com/HT204244",
                  "refsource": "CONFIRM",
                  "url": "http://support.apple.com/HT204244"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101830",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61873",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61873"
                },
                {
                  "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "openSUSE-SU-2014:1242",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
                },
                {
                  "name": "61618",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61618"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "61479",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61479"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "RHSA-2014:1354",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
                },
                {
                  "name": "HPSBMU03236",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "HPSBST03148",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "61855",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61855"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "APPLE-SA-2015-01-27-4",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1311",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "SUSE-SU-2014:1259",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "61857",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61857"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2014-7187",
        "datePublished": "2014-09-28T19:00:00.000Z",
        "dateReserved": "2014-09-25T00:00:00.000Z",
        "dateUpdated": "2024-08-06T12:40:19.211Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2014-7186 (GCVE-0-2014-7186)

    Vulnerability from cvelistv5 – Published: 2014-09-28 19:00 – Updated: 2024-08-06 12:40
    VLAI
    Summary
    The redirection implementation in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted use of here documents, aka the "redir_stack" issue.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    URL Tags
    http://packetstormsecurity.com/files/128517/VMwar… x_refsource_MISC
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383138121313&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://www.securityfocus.com/archive/1/533593/100… mailing-listx_refsource_BUGTRAQ
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61188 third-party-advisoryx_refsource_SECUNIA
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    http://openwall.com/lists/oss-security/2014/09/25/32 mailing-listx_refsource_MLIST
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61636 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142113462216480&w=2 vendor-advisoryx_refsource_HP
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1312.html vendor-advisoryx_refsource_REDHAT
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://www.ubuntu.com/usn/USN-2364-1 vendor-advisoryx_refsource_UBUNTU
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://seclists.org/fulldisclosure/2014/Oct/0 mailing-listx_refsource_FULLDISC
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    https://support.apple.com/HT205267 x_refsource_CONFIRM
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    http://secunia.com/advisories/61622 third-party-advisoryx_refsource_SECUNIA
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    http://support.novell.com/security/cve/CVE-2014-7… x_refsource_CONFIRM
    http://openwall.com/lists/oss-security/2014/09/28/10 mailing-listx_refsource_MLIST
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://support.apple.com/HT204244 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142289270617409&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61873 third-party-advisoryx_refsource_SECUNIA
    http://openwall.com/lists/oss-security/2014/09/26/2 mailing-listx_refsource_MLIST
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61618 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://secunia.com/advisories/61479 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://rhn.redhat.com/errata/RHSA-2014-1354.html vendor-advisoryx_refsource_REDHAT
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141694386919794&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61780 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/62228 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61711 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1311.html vendor-advisoryx_refsource_REDHAT
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/61471 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    Date Public
    2014-09-25 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:40:19.198Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "name": "HPSBST03131",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_BUGTRAQ",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "openSUSE-SU-2014:1229",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "61188",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61188"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "openSUSE-SU-2014:1254",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61636",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61636"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "name": "SSRT101711",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "name": "APPLE-SA-2015-09-30-3",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "RHSA-2014:1312",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "name": "USN-2364-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2364-1"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "name": "SUSE-SU-2014:1247",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_FULLDISC",
                  "x_transferred"
                ],
                "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.apple.com/HT205267"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "name": "61622",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61622"
              },
              {
                "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-7186.html"
              },
              {
                "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.apple.com/HT204244"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101830",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61873",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61873"
              },
              {
                "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "name": "openSUSE-SU-2014:1242",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
              },
              {
                "name": "61618",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61618"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "name": "61479",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61479"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "name": "RHSA-2014:1354",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
              },
              {
                "name": "HPSBMU03236",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "HPSBST03148",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "name": "61780",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61780"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
              },
              {
                "name": "62228",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62228"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61711",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61711"
              },
              {
                "name": "HPSBOV03228",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "APPLE-SA-2015-01-27-4",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "name": "RHSA-2014:1311",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "61471",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61471"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "SUSE-SU-2014:1259",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-25T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "The redirection implementation in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted use of here documents, aka the \"redir_stack\" issue."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2018-10-09T18:57:01.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "name": "HPSBST03131",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_BUGTRAQ"
              ],
              "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "openSUSE-SU-2014:1229",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "61188",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61188"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "openSUSE-SU-2014:1254",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61636",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61636"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "name": "SSRT101711",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "name": "APPLE-SA-2015-09-30-3",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "RHSA-2014:1312",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "name": "USN-2364-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2364-1"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "name": "SUSE-SU-2014:1247",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_FULLDISC"
              ],
              "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.apple.com/HT205267"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "name": "61622",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61622"
            },
            {
              "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-7186.html"
            },
            {
              "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.apple.com/HT204244"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101830",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61873",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61873"
            },
            {
              "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "name": "openSUSE-SU-2014:1242",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
            },
            {
              "name": "61618",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61618"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "name": "61479",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61479"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "name": "RHSA-2014:1354",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
            },
            {
              "name": "HPSBMU03236",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "HPSBST03148",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "name": "61780",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61780"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
            },
            {
              "name": "62228",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62228"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61711",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61711"
            },
            {
              "name": "HPSBOV03228",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "APPLE-SA-2015-01-27-4",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "name": "RHSA-2014:1311",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "61471",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61471"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "SUSE-SU-2014:1259",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2014-7186",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "The redirection implementation in parse.y in GNU Bash through 4.3 bash43-026 allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted use of here documents, aka the \"redir_stack\" issue."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "HPSBST03131",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "BUGTRAQ",
                  "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "openSUSE-SU-2014:1229",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "61188",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61188"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "openSUSE-SU-2014:1254",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "[oss-security] 20140925 Fwd: Non-upstream patches for bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/25/32"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61636",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61636"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "SSRT101711",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "APPLE-SA-2015-09-30-3",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1312",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "USN-2364-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2364-1"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "SUSE-SU-2014:1247",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "FULLDISC",
                  "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "https://support.apple.com/HT205267",
                  "refsource": "CONFIRM",
                  "url": "https://support.apple.com/HT205267"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "61622",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61622"
                },
                {
                  "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-7186.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-7186.html"
                },
                {
                  "name": "[oss-security] 20140928 Re: CVE-2014-6271: remote code execution through bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/28/10"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "http://support.apple.com/HT204244",
                  "refsource": "CONFIRM",
                  "url": "http://support.apple.com/HT204244"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101830",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61873",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61873"
                },
                {
                  "name": "[oss-security] 20140926 Re: Fwd: Non-upstream patches for bash",
                  "refsource": "MLIST",
                  "url": "http://openwall.com/lists/oss-security/2014/09/26/2"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "openSUSE-SU-2014:1242",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
                },
                {
                  "name": "61618",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61618"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "61479",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61479"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "RHSA-2014:1354",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
                },
                {
                  "name": "HPSBMU03236",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "HPSBST03148",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "61780",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61780"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
                },
                {
                  "name": "62228",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62228"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61711",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61711"
                },
                {
                  "name": "HPSBOV03228",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "APPLE-SA-2015-01-27-4",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1311",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "61471",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61471"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "SUSE-SU-2014:1259",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2014-7186",
        "datePublished": "2014-09-28T19:00:00.000Z",
        "dateReserved": "2014-09-25T00:00:00.000Z",
        "dateUpdated": "2024-08-06T12:40:19.198Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2014-6277 (GCVE-0-2014-6277)

    Vulnerability from cvelistv5 – Published: 2014-09-27 22:00 – Updated: 2024-08-06 12:10
    VLAI
    Summary
    GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized memory access, and untrusted-pointer read and write operations) via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271 and CVE-2014-7169.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    URL Tags
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://linux.oracle.com/errata/ELSA-2014-3093 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://www.ubuntu.com/usn/USN-2380-1 vendor-advisoryx_refsource_UBUNTU
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    https://support.apple.com/HT205267 x_refsource_CONFIRM
    http://secunia.com/advisories/60325 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    http://lcamtuf.blogspot.com/2014/10/bash-bug-how-… x_refsource_MISC
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://support.apple.com/HT204244 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142289270617409&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://linux.oracle.com/errata/ELSA-2014-3094 x_refsource_CONFIRM
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383465822787&w=2 vendor-advisoryx_refsource_HP
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61780 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383353622268&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://lists.apple.com/archives/security-announce… vendor-advisoryx_refsource_APPLE
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/61471 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59961 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://lcamtuf.blogspot.com/2014/09/bash-bug-appl… x_refsource_MISC
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://support.novell.com/security/cve/CVE-2014-6… x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61857 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    Date Public
    2014-09-27 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:10:13.286Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "openSUSE-SU-2014:1310",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "name": "APPLE-SA-2015-09-30-3",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "name": "USN-2380-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2380-1"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "name": "SUSE-SU-2014:1287",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.apple.com/HT205267"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60325",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60325"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
              },
              {
                "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.apple.com/HT204244"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101830",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "name": "HPSBMU03236",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "name": "HPSBHF03145",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "name": "61780",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61780"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBHF03146",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "APPLE-SA-2015-01-27-4",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "61471",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61471"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "59961",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59961"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-6277.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "name": "61857",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61857"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-27T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized memory access, and untrusted-pointer read and write operations) via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271 and CVE-2014-7169."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2018-08-08T09:57:01.000Z",
            "orgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
            "shortName": "debian"
          },
          "references": [
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "openSUSE-SU-2014:1310",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "name": "APPLE-SA-2015-09-30-3",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "name": "USN-2380-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2380-1"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "name": "SUSE-SU-2014:1287",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.apple.com/HT205267"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60325",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60325"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
            },
            {
              "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.apple.com/HT204244"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101830",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "name": "HPSBMU03236",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "name": "HPSBHF03145",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "name": "61780",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61780"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBHF03146",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "APPLE-SA-2015-01-27-4",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "61471",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61471"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "59961",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59961"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-6277.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "name": "61857",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61857"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "security@debian.org",
              "ID": "CVE-2014-6277",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "GNU Bash through 4.3 bash43-026 does not properly parse function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized memory access, and untrusted-pointer read and write operations) via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271 and CVE-2014-7169."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3093",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3093"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "openSUSE-SU-2014:1310",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "APPLE-SA-2015-09-30-3",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Sep/msg00008.html"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "USN-2380-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2380-1"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "SUSE-SU-2014:1287",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "https://support.apple.com/HT205267",
                  "refsource": "CONFIRM",
                  "url": "https://support.apple.com/HT205267"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60325",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60325"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/10/bash-bug-how-we-finally-cracked.html"
                },
                {
                  "name": "20140926 GNU Bash Environment Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "http://support.apple.com/HT204244",
                  "refsource": "CONFIRM",
                  "url": "http://support.apple.com/HT204244"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101830",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3094",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3094"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "HPSBMU03236",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142289270617409\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "HPSBHF03145",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "61780",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61780"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBHF03146",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "APPLE-SA-2015-01-27-4",
                  "refsource": "APPLE",
                  "url": "http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "61471",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61471"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "59961",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59961"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/09/bash-bug-apply-unofficial-patch-now.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-6277.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-6277.html"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "61857",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61857"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
        "assignerShortName": "debian",
        "cveId": "CVE-2014-6277",
        "datePublished": "2014-09-27T22:00:00.000Z",
        "dateReserved": "2014-09-09T00:00:00.000Z",
        "dateUpdated": "2024-08-06T12:10:13.286Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2014-7169 (GCVE-0-2014-7169)

    Vulnerability from cvelistv5 – Published: 2014-09-25 01:00 – Updated: 2025-10-22 00:05
    VLAI CISA Previdian
    Summary
    GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown other impact via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271.
    SSVC
    Exploitation: active Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-02-10 19:31 UTC
    CWE
    • n/a
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    References
    URL Tags
    http://packetstormsecurity.com/files/128517/VMwar… x_refsource_MISC
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.openwall.com/lists/oss-security/2014/0… mailing-listx_refsource_MLIST
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141216668515282&w=2 vendor-advisoryx_refsource_HP
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383138121313&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://www.securityfocus.com/archive/1/533593/100… mailing-listx_refsource_BUGTRAQ
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61188 third-party-advisoryx_refsource_SECUNIA
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://secunia.com/advisories/61676 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1306.html vendor-advisoryx_refsource_REDHAT
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61715 third-party-advisoryx_refsource_SECUNIA
    http://www.ubuntu.com/usn/USN-2363-2 vendor-advisoryx_refsource_UBUNTU
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142805027510172&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142113462216480&w=2 vendor-advisoryx_refsource_HP
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015701 x_refsource_CONFIRM
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59272 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141319209015420&w=2 vendor-advisoryx_refsource_HP
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1312.html vendor-advisoryx_refsource_REDHAT
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.ubuntu.com/usn/USN-2363-1 vendor-advisoryx_refsource_UBUNTU
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://support.apple.com/kb/HT6495 x_refsource_CONFIRM
    http://www.kb.cert.org/vuls/id/252743 third-party-advisoryx_refsource_CERT-VN
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://linux.oracle.com/errata/ELSA-2014-3075.html x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://support.novell.com/security/cve/CVE-2014-7… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://www.us-cert.gov/ncas/alerts/TA14-268A third-party-advisoryx_refsource_CERT
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    https://access.redhat.com/node/1200223 x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://archives.neohapsis.com/archives/bugtraq/20… vendor-advisoryx_refsource_APPLE
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://seclists.org/fulldisclosure/2014/Oct/0 mailing-listx_refsource_FULLDISC
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    http://secunia.com/advisories/61619 third-party-advisoryx_refsource_SECUNIA
    http://linux.oracle.com/errata/ELSA-2014-3078.html x_refsource_CONFIRM
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://secunia.com/advisories/60325 third-party-advisoryx_refsource_SECUNIA
    https://help.ecostruxureit.com/display/public/UAD… x_refsource_CONFIRM
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    https://www.exploit-db.com/exploits/34879/ exploitx_refsource_EXPLOIT-DB
    http://secunia.com/advisories/61622 third-party-advisoryx_refsource_SECUNIA
    https://access.redhat.com/articles/1200223 x_refsource_CONFIRM
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://advisories.mageia.org/MGASA-2014-0393.html x_refsource_CONFIRM
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61873 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61618 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60947 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    https://support.apple.com/kb/HT6535 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://secunia.com/advisories/61479 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141330425327438&w=2 vendor-advisoryx_refsource_HP
    http://lcamtuf.blogspot.com/2014/09/quick-notes-a… x_refsource_MISC
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://twitter.com/taviso/statuses/514887394294652929 x_refsource_MISC
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://rhn.redhat.com/errata/RHSA-2014-1354.html vendor-advisoryx_refsource_REDHAT
    http://marc.info/?l=bugtraq&m=141216207813411&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383465822787&w=2 vendor-advisoryx_refsource_HP
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141694386919794&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61780 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    http://linux.oracle.com/errata/ELSA-2014-3077.html x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/62228 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61855 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141235957116749&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/59737 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383353622268&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61711 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1311.html vendor-advisoryx_refsource_REDHAT
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    http://www.debian.org/security/2014/dsa-3035 vendor-advisoryx_refsource_DEBIAN
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/61471 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://linux.oracle.com/errata/ELSA-2014-1306.html x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61700 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61626 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61857 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    https://www.arista.com/en/support/advisories-noti… x_refsource_MISC
    https://www.cisa.gov/known-exploited-vulnerabilit… government-resource
    Date Public
    2014-09-24 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:40:19.217Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "[oss-security] 20140924 Re: CVE-2014-6271: remote code execution through bash",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2014/09/24/32"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "name": "HPSBHF03119",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "name": "HPSBST03131",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_BUGTRAQ",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "openSUSE-SU-2014:1229",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "61188",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61188"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "61676",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61676"
              },
              {
                "name": "openSUSE-SU-2014:1254",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "name": "RHSA-2014:1306",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1306.html"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
              },
              {
                "name": "61715",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61715"
              },
              {
                "name": "USN-2363-2",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2363-2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "openSUSE-SU-2014:1310",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "HPSBST03195",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "name": "SSRT101711",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "openSUSE-SU-2014:1308",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "name": "59272",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59272"
              },
              {
                "name": "HPSBST03122",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "RHSA-2014:1312",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "USN-2363-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2363-1"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.apple.com/kb/HT6495"
              },
              {
                "name": "VU#252743",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_CERT-VN",
                  "x_transferred"
                ],
                "url": "http://www.kb.cert.org/vuls/id/252743"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3075.html"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-7169.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "TA14-268A",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_CERT",
                  "x_transferred"
                ],
                "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "name": "SUSE-SU-2014:1247",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/node/1200223"
              },
              {
                "name": "SUSE-SU-2014:1287",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "name": "APPLE-SA-2014-10-16-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_FULLDISC",
                  "x_transferred"
                ],
                "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "name": "61619",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61619"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3078.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60325",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60325"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "name": "34879",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/34879/"
              },
              {
                "name": "61622",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61622"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/articles/1200223"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://advisories.mageia.org/MGASA-2014-0393.html"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61873",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61873"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "name": "openSUSE-SU-2014:1242",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
              },
              {
                "name": "61618",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61618"
              },
              {
                "name": "60947",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60947"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.apple.com/kb/HT6535"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "name": "61479",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61479"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "HPSBMU03133",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://twitter.com/taviso/statuses/514887394294652929"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "name": "RHSA-2014:1354",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
              },
              {
                "name": "HPSBGN03117",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "name": "HPSBHF03145",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "HPSBST03148",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "name": "61780",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61780"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-3077.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
              },
              {
                "name": "62228",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62228"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "61855",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61855"
              },
              {
                "name": "HPSBHF03124",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "59737",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59737"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBHF03146",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61711",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61711"
              },
              {
                "name": "HPSBOV03228",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "name": "RHSA-2014:1311",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "name": "DSA-3035",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_DEBIAN",
                  "x_transferred"
                ],
                "url": "http://www.debian.org/security/2014/dsa-3035"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "61471",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61471"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-1306.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "SUSE-SU-2014:1259",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61700",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61700"
              },
              {
                "name": "61626",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61626"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "name": "61857",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61857"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "NETWORK",
                  "availabilityImpact": "HIGH",
                  "baseScore": 9.8,
                  "baseSeverity": "CRITICAL",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2014-7169",
                    "options": [
                      {
                        "Exploitation": "active"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-02-10T19:31:47.209255Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              },
              {
                "other": {
                  "content": {
                    "dateAdded": "2022-01-28",
                    "reference": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-7169"
                  },
                  "type": "kev"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-78",
                    "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-10-22T00:05:36.027Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "references": [
              {
                "tags": [
                  "government-resource"
                ],
                "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-7169"
              }
            ],
            "timeline": [
              {
                "lang": "en",
                "time": "2022-01-28T00:00:00.000Z",
                "value": "CVE-2014-7169 added to CISA KEV"
              }
            ],
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-24T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown other impact via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2021-11-05T16:41:42.000Z",
            "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
            "shortName": "mitre"
          },
          "references": [
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "[oss-security] 20140924 Re: CVE-2014-6271: remote code execution through bash",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2014/09/24/32"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "name": "HPSBHF03119",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "name": "HPSBST03131",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_BUGTRAQ"
              ],
              "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "openSUSE-SU-2014:1229",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "61188",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61188"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "61676",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61676"
            },
            {
              "name": "openSUSE-SU-2014:1254",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "name": "RHSA-2014:1306",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1306.html"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
            },
            {
              "name": "61715",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61715"
            },
            {
              "name": "USN-2363-2",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2363-2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "openSUSE-SU-2014:1310",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "HPSBST03195",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "name": "SSRT101711",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "openSUSE-SU-2014:1308",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "name": "59272",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59272"
            },
            {
              "name": "HPSBST03122",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "RHSA-2014:1312",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "USN-2363-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2363-1"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.apple.com/kb/HT6495"
            },
            {
              "name": "VU#252743",
              "tags": [
                "third-party-advisory",
                "x_refsource_CERT-VN"
              ],
              "url": "http://www.kb.cert.org/vuls/id/252743"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3075.html"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-7169.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "TA14-268A",
              "tags": [
                "third-party-advisory",
                "x_refsource_CERT"
              ],
              "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "name": "SUSE-SU-2014:1247",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://access.redhat.com/node/1200223"
            },
            {
              "name": "SUSE-SU-2014:1287",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "name": "APPLE-SA-2014-10-16-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_FULLDISC"
              ],
              "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "name": "61619",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61619"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3078.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60325",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60325"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "name": "34879",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/34879/"
            },
            {
              "name": "61622",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61622"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://access.redhat.com/articles/1200223"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://advisories.mageia.org/MGASA-2014-0393.html"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61873",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61873"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "name": "openSUSE-SU-2014:1242",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
            },
            {
              "name": "61618",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61618"
            },
            {
              "name": "60947",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60947"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.apple.com/kb/HT6535"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "name": "61479",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61479"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "HPSBMU03133",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://twitter.com/taviso/statuses/514887394294652929"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "name": "RHSA-2014:1354",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
            },
            {
              "name": "HPSBGN03117",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "name": "HPSBHF03145",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "HPSBST03148",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "name": "61780",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61780"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-3077.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
            },
            {
              "name": "62228",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62228"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "61855",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61855"
            },
            {
              "name": "HPSBHF03124",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "59737",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59737"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBHF03146",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61711",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61711"
            },
            {
              "name": "HPSBOV03228",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "name": "RHSA-2014:1311",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "name": "DSA-3035",
              "tags": [
                "vendor-advisory",
                "x_refsource_DEBIAN"
              ],
              "url": "http://www.debian.org/security/2014/dsa-3035"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "61471",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61471"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-1306.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "SUSE-SU-2014:1259",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61700",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61700"
            },
            {
              "name": "61626",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61626"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "name": "61857",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61857"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "cve@mitre.org",
              "ID": "CVE-2014-7169",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown other impact via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-6271."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "[oss-security] 20140924 Re: CVE-2014-6271: remote code execution through bash",
                  "refsource": "MLIST",
                  "url": "http://www.openwall.com/lists/oss-security/2014/09/24/32"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "HPSBHF03119",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "HPSBST03131",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "BUGTRAQ",
                  "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "openSUSE-SU-2014:1229",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00038.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "61188",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61188"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "61676",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61676"
                },
                {
                  "name": "openSUSE-SU-2014:1254",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1306",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1306.html"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
                },
                {
                  "name": "61715",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61715"
                },
                {
                  "name": "USN-2363-2",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2363-2"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "openSUSE-SU-2014:1310",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "HPSBST03195",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "SSRT101711",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "openSUSE-SU-2014:1308",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015701",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "59272",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59272"
                },
                {
                  "name": "HPSBST03122",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1312",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1312.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "USN-2363-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2363-1"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "http://support.apple.com/kb/HT6495",
                  "refsource": "CONFIRM",
                  "url": "http://support.apple.com/kb/HT6495"
                },
                {
                  "name": "VU#252743",
                  "refsource": "CERT-VN",
                  "url": "http://www.kb.cert.org/vuls/id/252743"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3075.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3075.html"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-7169.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-7169.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "TA14-268A",
                  "refsource": "CERT",
                  "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "SUSE-SU-2014:1247",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00042.html"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "https://access.redhat.com/node/1200223",
                  "refsource": "CONFIRM",
                  "url": "https://access.redhat.com/node/1200223"
                },
                {
                  "name": "SUSE-SU-2014:1287",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "APPLE-SA-2014-10-16-1",
                  "refsource": "APPLE",
                  "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "FULLDISC",
                  "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "61619",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61619"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3078.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3078.html"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60325",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60325"
                },
                {
                  "name": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes",
                  "refsource": "CONFIRM",
                  "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "34879",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/34879/"
                },
                {
                  "name": "61622",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61622"
                },
                {
                  "name": "https://access.redhat.com/articles/1200223",
                  "refsource": "CONFIRM",
                  "url": "https://access.redhat.com/articles/1200223"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "http://advisories.mageia.org/MGASA-2014-0393.html",
                  "refsource": "CONFIRM",
                  "url": "http://advisories.mageia.org/MGASA-2014-0393.html"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61873",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61873"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "openSUSE-SU-2014:1242",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00041.html"
                },
                {
                  "name": "61618",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61618"
                },
                {
                  "name": "60947",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60947"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "https://support.apple.com/kb/HT6535",
                  "refsource": "CONFIRM",
                  "url": "https://support.apple.com/kb/HT6535"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "61479",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61479"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "HPSBMU03133",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://twitter.com/taviso/statuses/514887394294652929",
                  "refsource": "MISC",
                  "url": "http://twitter.com/taviso/statuses/514887394294652929"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "RHSA-2014:1354",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
                },
                {
                  "name": "HPSBGN03117",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "HPSBHF03145",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "HPSBST03148",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "61780",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61780"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-3077.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-3077.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
                },
                {
                  "name": "62228",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62228"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "61855",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61855"
                },
                {
                  "name": "HPSBHF03124",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "59737",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59737"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBHF03146",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61711",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61711"
                },
                {
                  "name": "HPSBOV03228",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1311",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1311.html"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "DSA-3035",
                  "refsource": "DEBIAN",
                  "url": "http://www.debian.org/security/2014/dsa-3035"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "61471",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61471"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-1306.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-1306.html"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "SUSE-SU-2014:1259",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00048.html"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61700",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61700"
                },
                {
                  "name": "61626",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61626"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "61857",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61857"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                },
                {
                  "name": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006",
                  "refsource": "MISC",
                  "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2014-7169",
        "datePublished": "2014-09-25T01:00:00.000Z",
        "dateReserved": "2014-09-24T00:00:00.000Z",
        "dateUpdated": "2025-10-22T00:05:36.027Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2014-6271 (GCVE-0-2014-6271)

    Vulnerability from cvelistv5 – Published: 2014-09-24 18:00 – Updated: 2025-10-22 00:05
    VLAI CISA Previdian
    Summary
    GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution, aka "ShellShock." NOTE: the original fix for this issue was incorrect; CVE-2014-7169 has been assigned to cover the vulnerability that is still present after the incorrect fix.
    SSVC
    Exploitation: active Automatable: yes Technical Impact: total
    CISA Coordinator · CISA-ADP (v2.0.3)
    Decision recorded 2025-02-07 13:45 UTC
    CWE
    • n/a
    • CWE-78 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
    References
    URL Tags
    https://www.exploit-db.com/exploits/37816/ exploitx_refsource_EXPLOIT-DB
    http://packetstormsecurity.com/files/128517/VMwar… x_refsource_MISC
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577137423233&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142719845423222&w=2 vendor-advisoryx_refsource_HP
    https://www.exploit-db.com/exploits/39918/ exploitx_refsource_EXPLOIT-DB
    http://marc.info/?l=bugtraq&m=141216668515282&w=2 vendor-advisoryx_refsource_HP
    http://rhn.redhat.com/errata/RHSA-2014-1295.html vendor-advisoryx_refsource_REDHAT
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    https://securityblog.redhat.com/2014/09/24/bash-s… x_refsource_CONFIRM
    https://supportcenter.checkpoint.com/supportcente… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383138121313&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142721162228379&w=2 vendor-advisoryx_refsource_HP
    http://www.securityfocus.com/archive/1/533593/100… mailing-listx_refsource_BUGTRAQ
    http://marc.info/?l=bugtraq&m=142358026505815&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61188 third-party-advisoryx_refsource_SECUNIA
    http://www.websense.com/support/article/kbarticle… x_refsource_CONFIRM
    http://jvn.jp/en/jp/JVN55667175/index.html third-party-advisoryx_refsource_JVN
    http://secunia.com/advisories/61676 third-party-advisoryx_refsource_SECUNIA
    https://www.exploit-db.com/exploits/40619/ exploitx_refsource_EXPLOIT-DB
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/60433 third-party-advisoryx_refsource_SECUNIA
    https://www.exploit-db.com/exploits/38849/ exploitx_refsource_EXPLOIT-DB
    http://marc.info/?l=bugtraq&m=141383026420882&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141585637922673&w=2 vendor-advisoryx_refsource_HP
    http://kb.juniper.net/InfoCenter/index?page=conte… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://marc.info/?l=bugtraq&m=141576728022234&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61715 third-party-advisoryx_refsource_SECUNIA
    http://www.oracle.com/technetwork/topics/security… x_refsource_CONFIRM
    http://secunia.com/advisories/61816 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61442 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142358078406056&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142805027510172&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61283 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=142113462216480&w=2 vendor-advisoryx_refsource_HP
    http://www.ubuntu.com/usn/USN-2362-1 vendor-advisoryx_refsource_UBUNTU
    https://kc.mcafee.com/corporate/index?page=conten… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-updates/2014-1… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61654 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61542 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015701 x_refsource_CONFIRM
    http://www-947.ibm.com/support/entry/portal/docdi… x_refsource_CONFIRM
    http://secunia.com/advisories/62312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/59272 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141319209015420&w=2 vendor-advisoryx_refsource_HP
    https://support.f5.com/kb/en-us/solutions/public/… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141879528318582&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=142118135300698&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61703 third-party-advisoryx_refsource_SECUNIA
    http://support.apple.com/kb/HT6495 x_refsource_CONFIRM
    http://www.kb.cert.org/vuls/id/252743 third-party-advisoryx_refsource_CERT-VN
    http://secunia.com/advisories/61065 third-party-advisoryx_refsource_SECUNIA
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://marc.info/?l=bugtraq&m=141383196021590&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=141383081521087&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://www.securityfocus.com/bid/70103 vdb-entryx_refsource_BID
    http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126 third-party-advisoryx_refsource_JVNDB
    http://www.us-cert.gov/ncas/alerts/TA14-268A third-party-advisoryx_refsource_CERT
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/61641 third-party-advisoryx_refsource_SECUNIA
    https://kb.juniper.net/InfoCenter/index?page=cont… x_refsource_CONFIRM
    https://access.redhat.com/node/1200223 x_refsource_CONFIRM
    http://packetstormsecurity.com/files/137376/IPFir… x_refsource_MISC
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://archives.neohapsis.com/archives/bugtraq/20… vendor-advisoryx_refsource_APPLE
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://seclists.org/fulldisclosure/2014/Oct/0 mailing-listx_refsource_FULLDISC
    http://www.mandriva.com/security/advisories?name=… vendor-advisoryx_refsource_MANDRIVA
    http://rhn.redhat.com/errata/RHSA-2014-1293.html vendor-advisoryx_refsource_REDHAT
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    http://lists.opensuse.org/opensuse-security-annou… vendor-advisoryx_refsource_SUSE
    http://secunia.com/advisories/60325 third-party-advisoryx_refsource_SECUNIA
    https://help.ecostruxureit.com/display/public/UAD… x_refsource_CONFIRM
    http://secunia.com/advisories/60024 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128567/CA-Te… x_refsource_MISC
    https://www.exploit-db.com/exploits/34879/ exploitx_refsource_EXPLOIT-DB
    https://access.redhat.com/articles/1200223 x_refsource_CONFIRM
    http://secunia.com/advisories/62343 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61565 third-party-advisoryx_refsource_SECUNIA
    https://www.suse.com/support/shellshock/ x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141450491804793&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61313 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61873 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61485 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60947 third-party-advisoryx_refsource_SECUNIA
    https://support.hpe.com/hpsc/doc/public/display?d… x_refsource_CONFIRM
    https://support.apple.com/kb/HT6535 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141577297623641&w=2 vendor-advisoryx_refsource_HP
    http://marc.info/?l=bugtraq&m=142546741516006&w=2 vendor-advisoryx_refsource_HP
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383244821813&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61312 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60193 third-party-advisoryx_refsource_SECUNIA
    http://www.vmware.com/security/advisories/VMSA-20… x_refsource_CONFIRM
    http://linux.oracle.com/errata/ELSA-2014-1294.html x_refsource_CONFIRM
    http://secunia.com/advisories/60063 third-party-advisoryx_refsource_SECUNIA
    http://packetstormsecurity.com/files/128573/Apach… x_refsource_MISC
    http://secunia.com/advisories/60034 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141330425327438&w=2 vendor-advisoryx_refsource_HP
    http://lcamtuf.blogspot.com/2014/09/quick-notes-a… x_refsource_MISC
    http://secunia.com/advisories/59907 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/58200 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141577241923505&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61643 third-party-advisoryx_refsource_SECUNIA
    http://www.novell.com/support/kb/doc.php?id=7015721 x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/61503 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://rhn.redhat.com/errata/RHSA-2014-1354.html vendor-advisoryx_refsource_REDHAT
    https://www.exploit-db.com/exploits/40938/ exploitx_refsource_EXPLOIT-DB
    http://marc.info/?l=bugtraq&m=141216207813411&w=2 vendor-advisoryx_refsource_HP
    http://support.novell.com/security/cve/CVE-2014-6… x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://secunia.com/advisories/61547 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383465822787&w=2 vendor-advisoryx_refsource_HP
    http://www.qnap.com/i/en/support/con_show.php?cid=61 x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141694386919794&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61552 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61780 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    https://support.citrix.com/article/CTX200223 x_refsource_CONFIRM
    http://www.debian.org/security/2014/dsa-3032 vendor-advisoryx_refsource_DEBIAN
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    http://secunia.com/advisories/62228 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141330468527613&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/61855 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141235957116749&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/60044 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61291 third-party-advisoryx_refsource_SECUNIA
    http://rhn.redhat.com/errata/RHSA-2014-1294.html vendor-advisoryx_refsource_REDHAT
    http://marc.info/?l=bugtraq&m=141345648114150&w=2 vendor-advisoryx_refsource_HP
    http://secunia.com/advisories/59737 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61287 third-party-advisoryx_refsource_SECUNIA
    http://marc.info/?l=bugtraq&m=141383353622268&w=2 vendor-advisoryx_refsource_HP
    https://bugzilla.redhat.com/show_bug.cgi?id=1141597 x_refsource_CONFIRM
    http://secunia.com/advisories/61711 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=isg… x_refsource_CONFIRM
    http://marc.info/?l=bugtraq&m=141383304022067&w=2 vendor-advisoryx_refsource_HP
    http://advisories.mageia.org/MGASA-2014-0388.html x_refsource_CONFIRM
    http://secunia.com/advisories/61128 third-party-advisoryx_refsource_SECUNIA
    https://support.citrix.com/article/CTX200217 x_refsource_CONFIRM
    http://secunia.com/advisories/61471 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/60055 third-party-advisoryx_refsource_SECUNIA
    http://tools.cisco.com/security/center/content/Ci… vendor-advisoryx_refsource_CISCO
    http://secunia.com/advisories/61550 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61633 third-party-advisoryx_refsource_SECUNIA
    http://linux.oracle.com/errata/ELSA-2014-1293.html x_refsource_CONFIRM
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    https://kb.bluecoat.com/index?page=content&id=SA82 x_refsource_CONFIRM
    http://secunia.com/advisories/61328 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=swg… x_refsource_CONFIRM
    https://www.exploit-db.com/exploits/42938/ exploitx_refsource_EXPLOIT-DB
    http://secunia.com/advisories/61129 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61700 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61603 third-party-advisoryx_refsource_SECUNIA
    http://secunia.com/advisories/61857 third-party-advisoryx_refsource_SECUNIA
    http://www-01.ibm.com/support/docview.wss?uid=ssg… x_refsource_CONFIRM
    http://packetstormsecurity.com/files/161107/Sonic… x_refsource_MISC
    https://www.arista.com/en/support/advisories-noti… x_refsource_MISC
    https://www.cisa.gov/known-exploited-vulnerabilit… government-resource
    Date Public
    2014-09-24 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T12:10:13.276Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "37816",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/37816/"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
              },
              {
                "name": "SUSE-SU-2014:1223",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00034.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
              },
              {
                "name": "HPSBMU03165",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
              },
              {
                "name": "SSRT101816",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
              },
              {
                "name": "39918",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/39918/"
              },
              {
                "name": "HPSBHF03119",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
              },
              {
                "name": "RHSA-2014:1295",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1295.html"
              },
              {
                "name": "openSUSE-SU-2014:1226",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00037.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
              },
              {
                "name": "HPSBST03131",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
              },
              {
                "name": "SSRT101819",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_BUGTRAQ",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
              },
              {
                "name": "HPSBMU03245",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
              },
              {
                "name": "HPSBST03196",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
              },
              {
                "name": "61188",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61188"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.websense.com/support/article/kbarticle/Vulnerabilities-resolved-in-TRITON-APX-Version-8-0"
              },
              {
                "name": "JVN#55667175",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVN",
                  "x_transferred"
                ],
                "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
              },
              {
                "name": "61676",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61676"
              },
              {
                "name": "40619",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/40619/"
              },
              {
                "name": "openSUSE-SU-2014:1254",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
              },
              {
                "name": "60433",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60433"
              },
              {
                "name": "38849",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/38849/"
              },
              {
                "name": "HPSBMU03143",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
              },
              {
                "name": "HPSBMU03182",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10673"
              },
              {
                "name": "SUSE-SU-2014:1260",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00049.html"
              },
              {
                "name": "HPSBST03155",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
              },
              {
                "name": "61715",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61715"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
              },
              {
                "name": "61816",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61816"
              },
              {
                "name": "openSUSE-SU-2014:1310",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
              },
              {
                "name": "61442",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61442"
              },
              {
                "name": "HPSBMU03246",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
              },
              {
                "name": "HPSBST03195",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
              },
              {
                "name": "61283",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61283"
              },
              {
                "name": "SSRT101711",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "name": "USN-2362-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_UBUNTU",
                  "x_transferred"
                ],
                "url": "http://www.ubuntu.com/usn/USN-2362-1"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
              },
              {
                "name": "openSUSE-SU-2014:1308",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
              },
              {
                "name": "61654",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61654"
              },
              {
                "name": "61542",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61542"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
              },
              {
                "name": "62312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62312"
              },
              {
                "name": "59272",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59272"
              },
              {
                "name": "HPSBST03122",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
              },
              {
                "name": "HPSBMU03217",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
              },
              {
                "name": "SSRT101868",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61703",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61703"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.apple.com/kb/HT6495"
              },
              {
                "name": "VU#252743",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_CERT-VN",
                  "x_transferred"
                ],
                "url": "http://www.kb.cert.org/vuls/id/252743"
              },
              {
                "name": "61065",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61065"
              },
              {
                "name": "SUSE-SU-2014:1213",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00029.html"
              },
              {
                "name": "HPSBST03129",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
              },
              {
                "name": "HPSBMU03144",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
              },
              {
                "name": "70103",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/70103"
              },
              {
                "name": "JVNDB-2014-000126",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_JVNDB",
                  "x_transferred"
                ],
                "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
              },
              {
                "name": "SSRT101827",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
              },
              {
                "name": "TA14-268A",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_CERT",
                  "x_transferred"
                ],
                "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
              },
              {
                "name": "SUSE-SU-2014:1212",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00028.html"
              },
              {
                "name": "61641",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61641"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/node/1200223"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/137376/IPFire-Bash-Environment-Variable-Injection-Shellshock.html"
              },
              {
                "name": "SUSE-SU-2014:1287",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
              },
              {
                "name": "APPLE-SA-2014-10-16-1",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_APPLE",
                  "x_transferred"
                ],
                "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
              },
              {
                "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                "tags": [
                  "mailing-list",
                  "x_refsource_FULLDISC",
                  "x_transferred"
                ],
                "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
              },
              {
                "name": "MDVSA-2015:164",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
              },
              {
                "name": "RHSA-2014:1293",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1293.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
              },
              {
                "name": "openSUSE-SU-2014:1238",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00040.html"
              },
              {
                "name": "HPSBMU03220",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
              },
              {
                "name": "60325",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60325"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
              },
              {
                "name": "60024",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60024"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
              },
              {
                "name": "34879",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/34879/"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://access.redhat.com/articles/1200223"
              },
              {
                "name": "62343",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62343"
              },
              {
                "name": "61565",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61565"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://www.suse.com/support/shellshock/"
              },
              {
                "name": "HPSBST03157",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
              },
              {
                "name": "61313",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61313"
              },
              {
                "name": "SSRT101742",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
              },
              {
                "name": "61873",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61873"
              },
              {
                "name": "61485",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61485"
              },
              {
                "name": "60947",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60947"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.apple.com/kb/HT6535"
              },
              {
                "name": "HPSBST03154",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
              },
              {
                "name": "HPSBST03265",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142546741516006\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
              },
              {
                "name": "HPSBGN03142",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
              },
              {
                "name": "61312",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61312"
              },
              {
                "name": "60193",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60193"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-1294.html"
              },
              {
                "name": "60063",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60063"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/128573/Apache-mod_cgi-Remote-Command-Execution.html"
              },
              {
                "name": "60034",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60034"
              },
              {
                "name": "HPSBMU03133",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
              },
              {
                "name": "59907",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59907"
              },
              {
                "name": "58200",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/58200"
              },
              {
                "name": "HPSBST03181",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
              },
              {
                "name": "61643",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61643"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
              },
              {
                "name": "61503",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61503"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
              },
              {
                "name": "RHSA-2014:1354",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
              },
              {
                "name": "40938",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/40938/"
              },
              {
                "name": "HPSBGN03117",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://support.novell.com/security/cve/CVE-2014-6271.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
              },
              {
                "name": "61547",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61547"
              },
              {
                "name": "HPSBHF03145",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
              },
              {
                "name": "HPSBST03148",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
              },
              {
                "name": "61552",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61552"
              },
              {
                "name": "61780",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61780"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200223"
              },
              {
                "name": "DSA-3032",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_DEBIAN",
                  "x_transferred"
                ],
                "url": "http://www.debian.org/security/2014/dsa-3032"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
              },
              {
                "name": "62228",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/62228"
              },
              {
                "name": "HPSBGN03138",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
              },
              {
                "name": "61855",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61855"
              },
              {
                "name": "HPSBHF03124",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
              },
              {
                "name": "60044",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60044"
              },
              {
                "name": "61291",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61291"
              },
              {
                "name": "RHSA-2014:1294",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_REDHAT",
                  "x_transferred"
                ],
                "url": "http://rhn.redhat.com/errata/RHSA-2014-1294.html"
              },
              {
                "name": "HPSBHF03125",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
              },
              {
                "name": "59737",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/59737"
              },
              {
                "name": "61287",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61287"
              },
              {
                "name": "HPSBHF03146",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
              },
              {
                "name": "HPSBGN03233",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1141597"
              },
              {
                "name": "SSRT101739",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
              },
              {
                "name": "61711",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61711"
              },
              {
                "name": "HPSBOV03228",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
              },
              {
                "name": "HPSBGN03141",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_HP",
                  "x_transferred"
                ],
                "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://advisories.mageia.org/MGASA-2014-0388.html"
              },
              {
                "name": "61128",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61128"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://support.citrix.com/article/CTX200217"
              },
              {
                "name": "61471",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61471"
              },
              {
                "name": "60055",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/60055"
              },
              {
                "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_CISCO",
                  "x_transferred"
                ],
                "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
              },
              {
                "name": "61550",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61550"
              },
              {
                "name": "61633",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61633"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://linux.oracle.com/errata/ELSA-2014-1293.html"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
              },
              {
                "name": "61328",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61328"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
              },
              {
                "name": "42938",
                "tags": [
                  "exploit",
                  "x_refsource_EXPLOIT-DB",
                  "x_transferred"
                ],
                "url": "https://www.exploit-db.com/exploits/42938/"
              },
              {
                "name": "61129",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61129"
              },
              {
                "name": "61700",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61700"
              },
              {
                "name": "61603",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61603"
              },
              {
                "name": "61857",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/61857"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://packetstormsecurity.com/files/161107/SonicWall-SSL-VPN-Shellshock-Remote-Code-Execution.html"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
              }
            ],
            "title": "CVE Program Container"
          },
          {
            "metrics": [
              {
                "cvssV3_1": {
                  "attackComplexity": "LOW",
                  "attackVector": "NETWORK",
                  "availabilityImpact": "HIGH",
                  "baseScore": 9.8,
                  "baseSeverity": "CRITICAL",
                  "confidentialityImpact": "HIGH",
                  "integrityImpact": "HIGH",
                  "privilegesRequired": "NONE",
                  "scope": "UNCHANGED",
                  "userInteraction": "NONE",
                  "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
                  "version": "3.1"
                }
              },
              {
                "other": {
                  "content": {
                    "id": "CVE-2014-6271",
                    "options": [
                      {
                        "Exploitation": "active"
                      },
                      {
                        "Automatable": "yes"
                      },
                      {
                        "Technical Impact": "total"
                      }
                    ],
                    "role": "CISA Coordinator",
                    "timestamp": "2025-02-07T13:45:49.549420Z",
                    "version": "2.0.3"
                  },
                  "type": "ssvc"
                }
              },
              {
                "other": {
                  "content": {
                    "dateAdded": "2022-01-28",
                    "reference": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-6271"
                  },
                  "type": "kev"
                }
              }
            ],
            "problemTypes": [
              {
                "descriptions": [
                  {
                    "cweId": "CWE-78",
                    "description": "CWE-78 Improper Neutralization of Special Elements used in an OS Command (\u0027OS Command Injection\u0027)",
                    "lang": "en",
                    "type": "CWE"
                  }
                ]
              }
            ],
            "providerMetadata": {
              "dateUpdated": "2025-10-22T00:05:36.342Z",
              "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
              "shortName": "CISA-ADP"
            },
            "references": [
              {
                "tags": [
                  "government-resource"
                ],
                "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2014-6271"
              }
            ],
            "timeline": [
              {
                "lang": "en",
                "time": "2022-01-28T00:00:00.000Z",
                "value": "CVE-2014-6271 added to CISA KEV"
              }
            ],
            "title": "CISA ADP Vulnrichment"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2014-09-24T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution, aka \"ShellShock.\"  NOTE: the original fix for this issue was incorrect; CVE-2014-7169 has been assigned to cover the vulnerability that is still present after the incorrect fix."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2021-11-05T16:37:05.000Z",
            "orgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
            "shortName": "debian"
          },
          "references": [
            {
              "name": "37816",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/37816/"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
            },
            {
              "name": "SUSE-SU-2014:1223",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00034.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
            },
            {
              "name": "HPSBMU03165",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
            },
            {
              "name": "SSRT101816",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
            },
            {
              "name": "39918",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/39918/"
            },
            {
              "name": "HPSBHF03119",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
            },
            {
              "name": "RHSA-2014:1295",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1295.html"
            },
            {
              "name": "openSUSE-SU-2014:1226",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00037.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
            },
            {
              "name": "HPSBST03131",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
            },
            {
              "name": "SSRT101819",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_BUGTRAQ"
              ],
              "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
            },
            {
              "name": "HPSBMU03245",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
            },
            {
              "name": "HPSBST03196",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
            },
            {
              "name": "61188",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61188"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.websense.com/support/article/kbarticle/Vulnerabilities-resolved-in-TRITON-APX-Version-8-0"
            },
            {
              "name": "JVN#55667175",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVN"
              ],
              "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
            },
            {
              "name": "61676",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61676"
            },
            {
              "name": "40619",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/40619/"
            },
            {
              "name": "openSUSE-SU-2014:1254",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
            },
            {
              "name": "60433",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60433"
            },
            {
              "name": "38849",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/38849/"
            },
            {
              "name": "HPSBMU03143",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
            },
            {
              "name": "HPSBMU03182",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10673"
            },
            {
              "name": "SUSE-SU-2014:1260",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00049.html"
            },
            {
              "name": "HPSBST03155",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
            },
            {
              "name": "61715",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61715"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
            },
            {
              "name": "61816",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61816"
            },
            {
              "name": "openSUSE-SU-2014:1310",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
            },
            {
              "name": "61442",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61442"
            },
            {
              "name": "HPSBMU03246",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
            },
            {
              "name": "HPSBST03195",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
            },
            {
              "name": "61283",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61283"
            },
            {
              "name": "SSRT101711",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "name": "USN-2362-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_UBUNTU"
              ],
              "url": "http://www.ubuntu.com/usn/USN-2362-1"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
            },
            {
              "name": "openSUSE-SU-2014:1308",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
            },
            {
              "name": "61654",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61654"
            },
            {
              "name": "61542",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61542"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
            },
            {
              "name": "62312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62312"
            },
            {
              "name": "59272",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59272"
            },
            {
              "name": "HPSBST03122",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
            },
            {
              "name": "HPSBMU03217",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
            },
            {
              "name": "SSRT101868",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61703",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61703"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.apple.com/kb/HT6495"
            },
            {
              "name": "VU#252743",
              "tags": [
                "third-party-advisory",
                "x_refsource_CERT-VN"
              ],
              "url": "http://www.kb.cert.org/vuls/id/252743"
            },
            {
              "name": "61065",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61065"
            },
            {
              "name": "SUSE-SU-2014:1213",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00029.html"
            },
            {
              "name": "HPSBST03129",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
            },
            {
              "name": "HPSBMU03144",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
            },
            {
              "name": "70103",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/70103"
            },
            {
              "name": "JVNDB-2014-000126",
              "tags": [
                "third-party-advisory",
                "x_refsource_JVNDB"
              ],
              "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
            },
            {
              "name": "SSRT101827",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
            },
            {
              "name": "TA14-268A",
              "tags": [
                "third-party-advisory",
                "x_refsource_CERT"
              ],
              "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
            },
            {
              "name": "SUSE-SU-2014:1212",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00028.html"
            },
            {
              "name": "61641",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61641"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://access.redhat.com/node/1200223"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/137376/IPFire-Bash-Environment-Variable-Injection-Shellshock.html"
            },
            {
              "name": "SUSE-SU-2014:1287",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
            },
            {
              "name": "APPLE-SA-2014-10-16-1",
              "tags": [
                "vendor-advisory",
                "x_refsource_APPLE"
              ],
              "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
            },
            {
              "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
              "tags": [
                "mailing-list",
                "x_refsource_FULLDISC"
              ],
              "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
            },
            {
              "name": "MDVSA-2015:164",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
            },
            {
              "name": "RHSA-2014:1293",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1293.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
            },
            {
              "name": "openSUSE-SU-2014:1238",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00040.html"
            },
            {
              "name": "HPSBMU03220",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
            },
            {
              "name": "60325",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60325"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
            },
            {
              "name": "60024",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60024"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
            },
            {
              "name": "34879",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/34879/"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://access.redhat.com/articles/1200223"
            },
            {
              "name": "62343",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62343"
            },
            {
              "name": "61565",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61565"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://www.suse.com/support/shellshock/"
            },
            {
              "name": "HPSBST03157",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
            },
            {
              "name": "61313",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61313"
            },
            {
              "name": "SSRT101742",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
            },
            {
              "name": "61873",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61873"
            },
            {
              "name": "61485",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61485"
            },
            {
              "name": "60947",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60947"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.apple.com/kb/HT6535"
            },
            {
              "name": "HPSBST03154",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
            },
            {
              "name": "HPSBST03265",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142546741516006\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
            },
            {
              "name": "HPSBGN03142",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
            },
            {
              "name": "61312",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61312"
            },
            {
              "name": "60193",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60193"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-1294.html"
            },
            {
              "name": "60063",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60063"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/128573/Apache-mod_cgi-Remote-Command-Execution.html"
            },
            {
              "name": "60034",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60034"
            },
            {
              "name": "HPSBMU03133",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
            },
            {
              "name": "59907",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59907"
            },
            {
              "name": "58200",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/58200"
            },
            {
              "name": "HPSBST03181",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
            },
            {
              "name": "61643",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61643"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
            },
            {
              "name": "61503",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61503"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
            },
            {
              "name": "RHSA-2014:1354",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
            },
            {
              "name": "40938",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/40938/"
            },
            {
              "name": "HPSBGN03117",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://support.novell.com/security/cve/CVE-2014-6271.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
            },
            {
              "name": "61547",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61547"
            },
            {
              "name": "HPSBHF03145",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
            },
            {
              "name": "HPSBST03148",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
            },
            {
              "name": "61552",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61552"
            },
            {
              "name": "61780",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61780"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200223"
            },
            {
              "name": "DSA-3032",
              "tags": [
                "vendor-advisory",
                "x_refsource_DEBIAN"
              ],
              "url": "http://www.debian.org/security/2014/dsa-3032"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
            },
            {
              "name": "62228",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/62228"
            },
            {
              "name": "HPSBGN03138",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
            },
            {
              "name": "61855",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61855"
            },
            {
              "name": "HPSBHF03124",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
            },
            {
              "name": "60044",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60044"
            },
            {
              "name": "61291",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61291"
            },
            {
              "name": "RHSA-2014:1294",
              "tags": [
                "vendor-advisory",
                "x_refsource_REDHAT"
              ],
              "url": "http://rhn.redhat.com/errata/RHSA-2014-1294.html"
            },
            {
              "name": "HPSBHF03125",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
            },
            {
              "name": "59737",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/59737"
            },
            {
              "name": "61287",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61287"
            },
            {
              "name": "HPSBHF03146",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
            },
            {
              "name": "HPSBGN03233",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1141597"
            },
            {
              "name": "SSRT101739",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
            },
            {
              "name": "61711",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61711"
            },
            {
              "name": "HPSBOV03228",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
            },
            {
              "name": "HPSBGN03141",
              "tags": [
                "vendor-advisory",
                "x_refsource_HP"
              ],
              "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://advisories.mageia.org/MGASA-2014-0388.html"
            },
            {
              "name": "61128",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61128"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://support.citrix.com/article/CTX200217"
            },
            {
              "name": "61471",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61471"
            },
            {
              "name": "60055",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/60055"
            },
            {
              "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
              "tags": [
                "vendor-advisory",
                "x_refsource_CISCO"
              ],
              "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
            },
            {
              "name": "61550",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61550"
            },
            {
              "name": "61633",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61633"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://linux.oracle.com/errata/ELSA-2014-1293.html"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
            },
            {
              "name": "61328",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61328"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
            },
            {
              "name": "42938",
              "tags": [
                "exploit",
                "x_refsource_EXPLOIT-DB"
              ],
              "url": "https://www.exploit-db.com/exploits/42938/"
            },
            {
              "name": "61129",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61129"
            },
            {
              "name": "61700",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61700"
            },
            {
              "name": "61603",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61603"
            },
            {
              "name": "61857",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/61857"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://packetstormsecurity.com/files/161107/SonicWall-SSL-VPN-Shellshock-Remote-Code-Execution.html"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
            }
          ],
          "x_legacyV4Record": {
            "CVE_data_meta": {
              "ASSIGNER": "security@debian.org",
              "ID": "CVE-2014-6271",
              "STATE": "PUBLIC"
            },
            "affects": {
              "vendor": {
                "vendor_data": [
                  {
                    "product": {
                      "product_data": [
                        {
                          "product_name": "n/a",
                          "version": {
                            "version_data": [
                              {
                                "version_value": "n/a"
                              }
                            ]
                          }
                        }
                      ]
                    },
                    "vendor_name": "n/a"
                  }
                ]
              }
            },
            "data_format": "MITRE",
            "data_type": "CVE",
            "data_version": "4.0",
            "description": {
              "description_data": [
                {
                  "lang": "eng",
                  "value": "GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution, aka \"ShellShock.\"  NOTE: the original fix for this issue was incorrect; CVE-2014-7169 has been assigned to cover the vulnerability that is still present after the incorrect fix."
                }
              ]
            },
            "problemtype": {
              "problemtype_data": [
                {
                  "description": [
                    {
                      "lang": "eng",
                      "value": "n/a"
                    }
                  ]
                }
              ]
            },
            "references": {
              "reference_data": [
                {
                  "name": "37816",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/37816/"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128517/VMware-Security-Advisory-2014-0010.html"
                },
                {
                  "name": "SUSE-SU-2014:1223",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00034.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004897"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685749"
                },
                {
                  "name": "HPSBMU03165",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577137423233\u0026w=2"
                },
                {
                  "name": "SSRT101816",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
                },
                {
                  "name": "39918",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/39918/"
                },
                {
                  "name": "HPSBHF03119",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141216668515282\u0026w=2"
                },
                {
                  "name": "RHSA-2014:1295",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1295.html"
                },
                {
                  "name": "openSUSE-SU-2014:1226",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00037.html"
                },
                {
                  "name": "https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/",
                  "refsource": "CONFIRM",
                  "url": "https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/"
                },
                {
                  "name": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts",
                  "refsource": "CONFIRM",
                  "url": "https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=\u0026solutionid=sk102673\u0026src=securityAlerts"
                },
                {
                  "name": "HPSBST03131",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383138121313\u0026w=2"
                },
                {
                  "name": "SSRT101819",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "20141001 NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "BUGTRAQ",
                  "url": "http://www.securityfocus.com/archive/1/533593/100/0/threaded"
                },
                {
                  "name": "HPSBMU03245",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686084"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686479"
                },
                {
                  "name": "HPSBST03196",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142719845423222\u0026w=2"
                },
                {
                  "name": "61188",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61188"
                },
                {
                  "name": "http://www.websense.com/support/article/kbarticle/Vulnerabilities-resolved-in-TRITON-APX-Version-8-0",
                  "refsource": "CONFIRM",
                  "url": "http://www.websense.com/support/article/kbarticle/Vulnerabilities-resolved-in-TRITON-APX-Version-8-0"
                },
                {
                  "name": "JVN#55667175",
                  "refsource": "JVN",
                  "url": "http://jvn.jp/en/jp/JVN55667175/index.html"
                },
                {
                  "name": "61676",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61676"
                },
                {
                  "name": "40619",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/40619/"
                },
                {
                  "name": "openSUSE-SU-2014:1254",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00044.html"
                },
                {
                  "name": "60433",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60433"
                },
                {
                  "name": "38849",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/38849/"
                },
                {
                  "name": "HPSBMU03143",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383026420882\u0026w=2"
                },
                {
                  "name": "HPSBMU03182",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141585637922673\u0026w=2"
                },
                {
                  "name": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10673",
                  "refsource": "CONFIRM",
                  "url": "http://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10673"
                },
                {
                  "name": "SUSE-SU-2014:1260",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00049.html"
                },
                {
                  "name": "HPSBST03155",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141576728022234\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685541"
                },
                {
                  "name": "61715",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61715"
                },
                {
                  "name": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.oracle.com/technetwork/topics/security/bashcve-2014-7169-2317675.html"
                },
                {
                  "name": "61816",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61816"
                },
                {
                  "name": "openSUSE-SU-2014:1310",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00025.html"
                },
                {
                  "name": "61442",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61442"
                },
                {
                  "name": "HPSBMU03246",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358078406056\u0026w=2"
                },
                {
                  "name": "HPSBST03195",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142805027510172\u0026w=2"
                },
                {
                  "name": "61283",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61283"
                },
                {
                  "name": "SSRT101711",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "USN-2362-1",
                  "refsource": "UBUNTU",
                  "url": "http://www.ubuntu.com/usn/USN-2362-1"
                },
                {
                  "name": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085",
                  "refsource": "CONFIRM",
                  "url": "https://kc.mcafee.com/corporate/index?page=content\u0026id=SB10085"
                },
                {
                  "name": "openSUSE-SU-2014:1308",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-updates/2014-10/msg00023.html"
                },
                {
                  "name": "61654",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61654"
                },
                {
                  "name": "61542",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61542"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015701",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015701"
                },
                {
                  "name": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315",
                  "refsource": "CONFIRM",
                  "url": "http://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5096315"
                },
                {
                  "name": "62312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62312"
                },
                {
                  "name": "59272",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59272"
                },
                {
                  "name": "HPSBST03122",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141319209015420\u0026w=2"
                },
                {
                  "name": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html",
                  "refsource": "CONFIRM",
                  "url": "https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15629.html"
                },
                {
                  "name": "HPSBMU03217",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685604"
                },
                {
                  "name": "SSRT101868",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61703",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61703"
                },
                {
                  "name": "http://support.apple.com/kb/HT6495",
                  "refsource": "CONFIRM",
                  "url": "http://support.apple.com/kb/HT6495"
                },
                {
                  "name": "VU#252743",
                  "refsource": "CERT-VN",
                  "url": "http://www.kb.cert.org/vuls/id/252743"
                },
                {
                  "name": "61065",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61065"
                },
                {
                  "name": "SUSE-SU-2014:1213",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00029.html"
                },
                {
                  "name": "HPSBST03129",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383196021590\u0026w=2"
                },
                {
                  "name": "HPSBMU03144",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383081521087\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686445"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686131"
                },
                {
                  "name": "70103",
                  "refsource": "BID",
                  "url": "http://www.securityfocus.com/bid/70103"
                },
                {
                  "name": "JVNDB-2014-000126",
                  "refsource": "JVNDB",
                  "url": "http://jvndb.jvn.jp/jvndb/JVNDB-2014-000126"
                },
                {
                  "name": "SSRT101827",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141879528318582\u0026w=2"
                },
                {
                  "name": "TA14-268A",
                  "refsource": "CERT",
                  "url": "http://www.us-cert.gov/ncas/alerts/TA14-268A"
                },
                {
                  "name": "SUSE-SU-2014:1212",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00028.html"
                },
                {
                  "name": "61641",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61641"
                },
                {
                  "name": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648",
                  "refsource": "CONFIRM",
                  "url": "https://kb.juniper.net/InfoCenter/index?page=content\u0026id=JSA10648"
                },
                {
                  "name": "https://access.redhat.com/node/1200223",
                  "refsource": "CONFIRM",
                  "url": "https://access.redhat.com/node/1200223"
                },
                {
                  "name": "http://packetstormsecurity.com/files/137376/IPFire-Bash-Environment-Variable-Injection-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/137376/IPFire-Bash-Environment-Variable-Injection-Shellshock.html"
                },
                {
                  "name": "SUSE-SU-2014:1287",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-10/msg00004.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004898"
                },
                {
                  "name": "APPLE-SA-2014-10-16-1",
                  "refsource": "APPLE",
                  "url": "http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685914"
                },
                {
                  "name": "20141001 FW: NEW VMSA-2014-0010 - VMware product updates address critical Bash security vulnerabilities",
                  "refsource": "FULLDISC",
                  "url": "http://seclists.org/fulldisclosure/2014/Oct/0"
                },
                {
                  "name": "MDVSA-2015:164",
                  "refsource": "MANDRIVA",
                  "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:164"
                },
                {
                  "name": "RHSA-2014:1293",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1293.html"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04497075"
                },
                {
                  "name": "openSUSE-SU-2014:1238",
                  "refsource": "SUSE",
                  "url": "http://lists.opensuse.org/opensuse-security-announce/2014-09/msg00040.html"
                },
                {
                  "name": "HPSBMU03220",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142721162228379\u0026w=2"
                },
                {
                  "name": "60325",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60325"
                },
                {
                  "name": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes",
                  "refsource": "CONFIRM",
                  "url": "https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes"
                },
                {
                  "name": "60024",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60024"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128567/CA-Technologies-GNU-Bash-Shellshock.html"
                },
                {
                  "name": "34879",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/34879/"
                },
                {
                  "name": "https://access.redhat.com/articles/1200223",
                  "refsource": "CONFIRM",
                  "url": "https://access.redhat.com/articles/1200223"
                },
                {
                  "name": "62343",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62343"
                },
                {
                  "name": "61565",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61565"
                },
                {
                  "name": "https://www.suse.com/support/shellshock/",
                  "refsource": "CONFIRM",
                  "url": "https://www.suse.com/support/shellshock/"
                },
                {
                  "name": "HPSBST03157",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141450491804793\u0026w=2"
                },
                {
                  "name": "61313",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61313"
                },
                {
                  "name": "SSRT101742",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142358026505815\u0026w=2"
                },
                {
                  "name": "61873",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61873"
                },
                {
                  "name": "61485",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61485"
                },
                {
                  "name": "60947",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60947"
                },
                {
                  "name": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183",
                  "refsource": "CONFIRM",
                  "url": "https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US\u0026docId=emr_na-c04518183"
                },
                {
                  "name": "https://support.apple.com/kb/HT6535",
                  "refsource": "CONFIRM",
                  "url": "https://support.apple.com/kb/HT6535"
                },
                {
                  "name": "HPSBST03154",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577297623641\u0026w=2"
                },
                {
                  "name": "HPSBST03265",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142546741516006\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021272"
                },
                {
                  "name": "HPSBGN03142",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383244821813\u0026w=2"
                },
                {
                  "name": "61312",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61312"
                },
                {
                  "name": "60193",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60193"
                },
                {
                  "name": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html",
                  "refsource": "CONFIRM",
                  "url": "http://www.vmware.com/security/advisories/VMSA-2014-0010.html"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-1294.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-1294.html"
                },
                {
                  "name": "60063",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60063"
                },
                {
                  "name": "http://packetstormsecurity.com/files/128573/Apache-mod_cgi-Remote-Command-Execution.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/128573/Apache-mod_cgi-Remote-Command-Execution.html"
                },
                {
                  "name": "60034",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60034"
                },
                {
                  "name": "HPSBMU03133",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330425327438\u0026w=2"
                },
                {
                  "name": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html",
                  "refsource": "MISC",
                  "url": "http://lcamtuf.blogspot.com/2014/09/quick-notes-about-bash-bug-its-impact.html"
                },
                {
                  "name": "59907",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59907"
                },
                {
                  "name": "58200",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/58200"
                },
                {
                  "name": "HPSBST03181",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141577241923505\u0026w=2"
                },
                {
                  "name": "61643",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61643"
                },
                {
                  "name": "http://www.novell.com/support/kb/doc.php?id=7015721",
                  "refsource": "CONFIRM",
                  "url": "http://www.novell.com/support/kb/doc.php?id=7015721"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21687079"
                },
                {
                  "name": "61503",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61503"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686246"
                },
                {
                  "name": "RHSA-2014:1354",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1354.html"
                },
                {
                  "name": "40938",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/40938/"
                },
                {
                  "name": "HPSBGN03117",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141216207813411\u0026w=2"
                },
                {
                  "name": "http://support.novell.com/security/cve/CVE-2014-6271.html",
                  "refsource": "CONFIRM",
                  "url": "http://support.novell.com/security/cve/CVE-2014-6271.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004915"
                },
                {
                  "name": "61547",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61547"
                },
                {
                  "name": "HPSBHF03145",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383465822787\u0026w=2"
                },
                {
                  "name": "http://www.qnap.com/i/en/support/con_show.php?cid=61",
                  "refsource": "CONFIRM",
                  "url": "http://www.qnap.com/i/en/support/con_show.php?cid=61"
                },
                {
                  "name": "HPSBST03148",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141694386919794\u0026w=2"
                },
                {
                  "name": "61552",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61552"
                },
                {
                  "name": "61780",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61780"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021279"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200223",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200223"
                },
                {
                  "name": "DSA-3032",
                  "refsource": "DEBIAN",
                  "url": "http://www.debian.org/security/2014/dsa-3032"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686447"
                },
                {
                  "name": "62228",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/62228"
                },
                {
                  "name": "HPSBGN03138",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141330468527613\u0026w=2"
                },
                {
                  "name": "61855",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61855"
                },
                {
                  "name": "HPSBHF03124",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141235957116749\u0026w=2"
                },
                {
                  "name": "60044",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60044"
                },
                {
                  "name": "61291",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61291"
                },
                {
                  "name": "RHSA-2014:1294",
                  "refsource": "REDHAT",
                  "url": "http://rhn.redhat.com/errata/RHSA-2014-1294.html"
                },
                {
                  "name": "HPSBHF03125",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141345648114150\u0026w=2"
                },
                {
                  "name": "59737",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/59737"
                },
                {
                  "name": "61287",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61287"
                },
                {
                  "name": "HPSBHF03146",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383353622268\u0026w=2"
                },
                {
                  "name": "HPSBGN03233",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1141597",
                  "refsource": "CONFIRM",
                  "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1141597"
                },
                {
                  "name": "SSRT101739",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142118135300698\u0026w=2"
                },
                {
                  "name": "61711",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61711"
                },
                {
                  "name": "HPSBOV03228",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=142113462216480\u0026w=2"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=isg3T1021361"
                },
                {
                  "name": "HPSBGN03141",
                  "refsource": "HP",
                  "url": "http://marc.info/?l=bugtraq\u0026m=141383304022067\u0026w=2"
                },
                {
                  "name": "http://advisories.mageia.org/MGASA-2014-0388.html",
                  "refsource": "CONFIRM",
                  "url": "http://advisories.mageia.org/MGASA-2014-0388.html"
                },
                {
                  "name": "61128",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61128"
                },
                {
                  "name": "https://support.citrix.com/article/CTX200217",
                  "refsource": "CONFIRM",
                  "url": "https://support.citrix.com/article/CTX200217"
                },
                {
                  "name": "61471",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61471"
                },
                {
                  "name": "60055",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/60055"
                },
                {
                  "name": "20140926 GNU Bash Environmental Variable Command Injection Vulnerability",
                  "refsource": "CISCO",
                  "url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash"
                },
                {
                  "name": "61550",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61550"
                },
                {
                  "name": "61633",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61633"
                },
                {
                  "name": "http://linux.oracle.com/errata/ELSA-2014-1293.html",
                  "refsource": "CONFIRM",
                  "url": "http://linux.oracle.com/errata/ELSA-2014-1293.html"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21686494"
                },
                {
                  "name": "https://kb.bluecoat.com/index?page=content\u0026id=SA82",
                  "refsource": "CONFIRM",
                  "url": "https://kb.bluecoat.com/index?page=content\u0026id=SA82"
                },
                {
                  "name": "61328",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61328"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=swg21685733"
                },
                {
                  "name": "42938",
                  "refsource": "EXPLOIT-DB",
                  "url": "https://www.exploit-db.com/exploits/42938/"
                },
                {
                  "name": "61129",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61129"
                },
                {
                  "name": "61700",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61700"
                },
                {
                  "name": "61603",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61603"
                },
                {
                  "name": "61857",
                  "refsource": "SECUNIA",
                  "url": "http://secunia.com/advisories/61857"
                },
                {
                  "name": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879",
                  "refsource": "CONFIRM",
                  "url": "http://www-01.ibm.com/support/docview.wss?uid=ssg1S1004879"
                },
                {
                  "name": "http://packetstormsecurity.com/files/161107/SonicWall-SSL-VPN-Shellshock-Remote-Code-Execution.html",
                  "refsource": "MISC",
                  "url": "http://packetstormsecurity.com/files/161107/SonicWall-SSL-VPN-Shellshock-Remote-Code-Execution.html"
                },
                {
                  "name": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006",
                  "refsource": "MISC",
                  "url": "https://www.arista.com/en/support/advisories-notices/security-advisories/1008-security-advisory-0006"
                }
              ]
            }
          }
        }
      },
      "cveMetadata": {
        "assignerOrgId": "79363d38-fa19-49d1-9214-5f28da3f3ac5",
        "assignerShortName": "debian",
        "cveId": "CVE-2014-6271",
        "datePublished": "2014-09-24T18:00:00.000Z",
        "dateReserved": "2014-09-09T00:00:00.000Z",
        "dateUpdated": "2025-10-22T00:05:36.342Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }

    CVE-2012-3410 (GCVE-0-2012-3410)

    Vulnerability from cvelistv5 – Published: 2012-08-27 23:00 – Updated: 2024-08-06 20:05
    VLAI
    Summary
    Stack-based buffer overflow in lib/sh/eaccess.c in GNU Bash before 4.2 patch 33 might allow local users to bypass intended restricted shell access via a long filename in /dev/fd, which is not properly handled when expanding the /dev/fd prefix.
    Severity
    No CVSS data available.
    CWE
    • n/a
    References
    Date Public
    2012-07-11 00:00
    Show details on NVD website

    {
      "containers": {
        "adp": [
          {
            "providerMetadata": {
              "dateUpdated": "2024-08-06T20:05:12.514Z",
              "orgId": "af854a3a-2127-422b-91ae-364da2661108",
              "shortName": "CVE"
            },
            "references": [
              {
                "name": "[oss-security] 20120712 Re: CVE Request: Overflow fix in bash 4.2 patch 33",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2012/07/11/22"
              },
              {
                "name": "MDVSA-2012:128",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_MANDRIVA",
                  "x_transferred"
                ],
                "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2012:128"
              },
              {
                "name": "bash-devfd-bo(77551)",
                "tags": [
                  "vdb-entry",
                  "x_refsource_XF",
                  "x_transferred"
                ],
                "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77551"
              },
              {
                "name": "openSUSE-SU-2012:0898",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_SUSE",
                  "x_transferred"
                ],
                "url": "https://hermes.opensuse.org/messages/15227834"
              },
              {
                "name": "51086",
                "tags": [
                  "third-party-advisory",
                  "x_refsource_SECUNIA",
                  "x_transferred"
                ],
                "url": "http://secunia.com/advisories/51086"
              },
              {
                "name": "[oss-security] 20120711 CVE Request: Overflow fix in bash 4.2 patch 33",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2012/07/11/11"
              },
              {
                "name": "54937",
                "tags": [
                  "vdb-entry",
                  "x_refsource_BID",
                  "x_transferred"
                ],
                "url": "http://www.securityfocus.com/bid/54937"
              },
              {
                "name": "GLSA-201210-05",
                "tags": [
                  "vendor-advisory",
                  "x_refsource_GENTOO",
                  "x_transferred"
                ],
                "url": "http://security.gentoo.org/glsa/glsa-201210-05.xml"
              },
              {
                "tags": [
                  "x_refsource_MISC",
                  "x_transferred"
                ],
                "url": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=681278"
              },
              {
                "tags": [
                  "x_refsource_CONFIRM",
                  "x_transferred"
                ],
                "url": "ftp://ftp.gnu.org/pub/gnu/bash/bash-4.2-patches/bash42-033"
              },
              {
                "name": "[oss-security] 20120712 Re: CVE Request: Overflow fix in bash 4.2 patch 33",
                "tags": [
                  "mailing-list",
                  "x_refsource_MLIST",
                  "x_transferred"
                ],
                "url": "http://www.openwall.com/lists/oss-security/2012/07/12/4"
              }
            ],
            "title": "CVE Program Container"
          }
        ],
        "cna": {
          "affected": [
            {
              "product": "n/a",
              "vendor": "n/a",
              "versions": [
                {
                  "status": "affected",
                  "version": "n/a"
                }
              ]
            }
          ],
          "datePublic": "2012-07-11T00:00:00.000Z",
          "descriptions": [
            {
              "lang": "en",
              "value": "Stack-based buffer overflow in lib/sh/eaccess.c in GNU Bash before 4.2 patch 33 might allow local users to bypass intended restricted shell access via a long filename in /dev/fd, which is not properly handled when expanding the /dev/fd prefix."
            }
          ],
          "problemTypes": [
            {
              "descriptions": [
                {
                  "description": "n/a",
                  "lang": "en",
                  "type": "text"
                }
              ]
            }
          ],
          "providerMetadata": {
            "dateUpdated": "2017-08-28T12:57:01.000Z",
            "orgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
            "shortName": "redhat"
          },
          "references": [
            {
              "name": "[oss-security] 20120712 Re: CVE Request: Overflow fix in bash 4.2 patch 33",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2012/07/11/22"
            },
            {
              "name": "MDVSA-2012:128",
              "tags": [
                "vendor-advisory",
                "x_refsource_MANDRIVA"
              ],
              "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2012:128"
            },
            {
              "name": "bash-devfd-bo(77551)",
              "tags": [
                "vdb-entry",
                "x_refsource_XF"
              ],
              "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/77551"
            },
            {
              "name": "openSUSE-SU-2012:0898",
              "tags": [
                "vendor-advisory",
                "x_refsource_SUSE"
              ],
              "url": "https://hermes.opensuse.org/messages/15227834"
            },
            {
              "name": "51086",
              "tags": [
                "third-party-advisory",
                "x_refsource_SECUNIA"
              ],
              "url": "http://secunia.com/advisories/51086"
            },
            {
              "name": "[oss-security] 20120711 CVE Request: Overflow fix in bash 4.2 patch 33",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2012/07/11/11"
            },
            {
              "name": "54937",
              "tags": [
                "vdb-entry",
                "x_refsource_BID"
              ],
              "url": "http://www.securityfocus.com/bid/54937"
            },
            {
              "name": "GLSA-201210-05",
              "tags": [
                "vendor-advisory",
                "x_refsource_GENTOO"
              ],
              "url": "http://security.gentoo.org/glsa/glsa-201210-05.xml"
            },
            {
              "tags": [
                "x_refsource_MISC"
              ],
              "url": "http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=681278"
            },
            {
              "tags": [
                "x_refsource_CONFIRM"
              ],
              "url": "ftp://ftp.gnu.org/pub/gnu/bash/bash-4.2-patches/bash42-033"
            },
            {
              "name": "[oss-security] 20120712 Re: CVE Request: Overflow fix in bash 4.2 patch 33",
              "tags": [
                "mailing-list",
                "x_refsource_MLIST"
              ],
              "url": "http://www.openwall.com/lists/oss-security/2012/07/12/4"
            }
          ]
        }
      },
      "cveMetadata": {
        "assignerOrgId": "53f830b8-0a3f-465b-8143-3b8a9948e749",
        "assignerShortName": "redhat",
        "cveId": "CVE-2012-3410",
        "datePublished": "2012-08-27T23:00:00.000Z",
        "dateReserved": "2012-06-14T00:00:00.000Z",
        "dateUpdated": "2024-08-06T20:05:12.514Z",
        "state": "PUBLISHED"
      },
      "dataType": "CVE_RECORD",
      "dataVersion": "5.1"
    }