5.5
CVSSv3

CVE-2016-9401

Published: 23/01/2017 Updated: 14/09/2020
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 191
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu bash

gnu bash 4.4

debian debian linux 8.0

redhat enterprise linux desktop 6.0

redhat enterprise linux desktop 7.0

redhat enterprise linux server 6.0

redhat enterprise linux server 7.0

redhat enterprise linux server aus 7.4

redhat enterprise linux server aus 7.6

redhat enterprise linux server aus 7.7

redhat enterprise linux server eus 7.4

redhat enterprise linux server eus 7.5

redhat enterprise linux server eus 7.6

redhat enterprise linux server eus 7.7

redhat enterprise linux server tus 7.6

redhat enterprise linux server tus 7.7

redhat enterprise linux workstation 6.0

redhat enterprise linux workstation 7.0

Vendor Advisories

Synopsis Moderate: bash security and bug fix update Type/Severity Security Advisory: Moderate Topic An update for bash is now available for Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring System (CVSS) base sco ...
Debian Bug report logs - #844727 bash: CVE-2016-9401: popd controlled free Package: src:bash; Maintainer for src:bash is Matthias Klose <doko@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 18 Nov 2016 13:51:02 UTC Severity: normal Tags: security, upstream Found in version bash/43-11 F ...
Several security issues were fixed in Bash ...
popd controlled free:A denial of service flaw was found in the way bash handled popd commands A poorly written shell script could cause bash to crash resulting in a local denial of service limited to a specific bash session(CVE-2016-9401) Arbitrary code execution via malicious hostname:An arbitrary command injection flaw was found in the way bash ...
A denial of service flaw was found in the way bash handled popd commands A poorly written shell script could cause bash to crash resulting in a local denial of service limited to a specific bash session ...