216.73.217.22

CVE-2014-6271

· Published 24/09/2014 20:48 · Modified 22/04/2026 23:57 · Author: Cybersecurity and Infrastructure Security Agency

Labels: CVE-2014-6271

Essential information

Published
24/09/2014 20:48
Modified
22/04/2026 23:57
Author
Cybersecurity and Infrastructure Security Agency
Creator
Cybersecurity and Infrastructure Security Agency
CVSS
10.0 (v2) 9.8 CRITICAL (v3.1)
CISA KEV
Yes
CWE
CWE-78
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute code.

NVD status

NVD
View on NVD