Shell Arithmetic Expansion and Evaluation Abuse
ID: ee339a36-63b3-510f-8939-42a70acd09c9
STIX ID: report--ee339a36-63b3-510f-8939-42a70acd09c9
Feed Name: NCC Research
Threat Score
This report analyzes a class of Bash/ksh arithmetic-evaluation vulnerabilities where untrusted environment variables can cause information leakage, numeric assignment to shell variables, PATH overwrite leading to command hijacking, and unconditional command execution via array-index command substitution; it includes PoCs that demonstrate gaining a privileged shell and recommends input sanitization and careful quoting as mitigations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
