Stack-based buffer overflow in lib/sh/eaccess.c in GNU Bash prior to 4.2 patch 33 might allow local users to bypass intended restricted shell access via a long filename in /dev/fd, which is not properly handled when expanding the /dev/fd prefix.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gnu bash 4.2 |