vulnerability
Alpine Linux: CVE-2016-0634: OS Command Injection
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:N/AC:M/Au:S/C:P/I:P/A:P) | Aug 28, 2017 | Aug 22, 2024 | Dec 5, 2025 |
Severity
6
CVSS
(AV:N/AC:M/Au:S/C:P/I:P/A:P)
Published
Aug 28, 2017
Added
Aug 22, 2024
Modified
Dec 5, 2025
Description
The expansion of '\h' in the prompt string in bash 4.3 allows remote authenticated users to execute arbitrary code via shell metacharacters placed in 'hostname' of a machine.
Solution
alpine-linux-upgrade-bash
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.