Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The expansion of '\h' in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in 'hostname' of a machine.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bash 安全漏洞
Vulnerability Description
Bash是美国软件开发者布莱恩-福克斯(Brian J. Fox)为GNU计划而编写的一个Shell(命令语言解释器),它运行于类Unix操作系统中(Linux系统的默认Shell),并能够从标准输入设备或文件中读取、执行命令,同时也结合了一部分ksh和csh的特点。 Bash 4.3版本中的提示字符串存在安全漏洞。远程攻击者可借助带有shell元字符的主机名利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A