High severity8.4NVD Advisory· Published Jan 19, 2017· Updated May 13, 2026
CVE-2016-7543
CVE-2016-7543
Description
Bash before 4.4 allows local users to execute arbitrary commands with root privileges via crafted SHELLOPTS and PS4 environment variables.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- lists.gnu.org/archive/html/bug-bash/2016-09/msg00018.htmlnvdPatchVendor Advisory
- www.openwall.com/lists/oss-security/2016/09/26/9nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/93183nvdThird Party AdvisoryVDB Entry
- security.gentoo.org/glsa/201701-02nvdThird Party Advisory
- rhn.redhat.com/errata/RHSA-2017-0725.htmlnvd
- www.securitytracker.com/id/1037812nvd
- access.redhat.com/errata/RHSA-2017:1931nvd
- h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplaynvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F7XOQSHU63Y357NHU5FPTFBM6I3YOCQB/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/OU3C756YPHDAAPFX76UGZBAQQQ5UMHS5/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2VRBSIPZDZ75ZQ2DLITHUIDW4W26KVR/nvd
News mentions
0No linked articles in our index yet.