First published: Tue Jan 14 2020(Updated: )
BSD mailx 8.1.2 and earlier allows remote attackers to execute arbitrary commands via a crafted email address.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat enterprise Linux desktop | =6.0 | |
redhat enterprise Linux desktop | =7.0 | |
redhat enterprise Linux server | =6.0 | |
redhat enterprise Linux server | =7.0 | |
redhat enterprise Linux server aus | =6.6 | |
redhat enterprise Linux server aus | =7.3 | |
redhat enterprise Linux server aus | =7.4 | |
redhat enterprise Linux server aus | =7.6 | |
redhat enterprise Linux server aus | =7.7 | |
redhat enterprise Linux server eus | =6.6 | |
redhat enterprise Linux server eus | =7.2 | |
redhat enterprise Linux server eus | =7.3 | |
redhat enterprise Linux server eus | =7.4 | |
redhat enterprise Linux server eus | =7.5 | |
redhat enterprise Linux server eus | =7.6 | |
redhat enterprise Linux server eus | =7.7 | |
redhat enterprise Linux server tus | =6.6 | |
redhat enterprise Linux server tus | =7.3 | |
redhat enterprise Linux server tus | =7.6 | |
redhat enterprise Linux server tus | =7.7 | |
redhat enterprise Linux workstation | =6.0 | |
redhat enterprise Linux workstation | =7.0 | |
Debian GNU/Linux | =7.0 | |
BSD mailx | =8.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-7844 is a vulnerability in BSD mailx 8.1.2 and earlier that allows remote attackers to execute arbitrary commands via a crafted email address.
The severity of CVE-2014-7844 is high, with a severity value of 7.8.
Redhat Enterprise Linux Desktop 6.0, Redhat Enterprise Linux Desktop 7.0, Redhat Enterprise Linux Server 6.0, Redhat Enterprise Linux Server 7.0, Redhat Enterprise Linux Server Aus 6.6, Redhat Enterprise Linux Server Aus 7.3, Redhat Enterprise Linux Server Aus 7.4, Redhat Enterprise Linux Server Aus 7.6, Redhat Enterprise Linux Server Aus 7.7, Redhat Enterprise Linux Server Eus 6.6, Redhat Enterprise Linux Server Eus 7.2, Redhat Enterprise Linux Server Eus 7.3, Redhat Enterprise Linux Server Eus 7.4, Redhat Enterprise Linux Server Eus 7.5, Redhat Enterprise Linux Server Eus 7.6, Redhat Enterprise Linux Server Eus 7.7, Redhat Enterprise Linux Server Tus 6.6, Redhat Enterprise Linux Server Tus 7.3, Redhat Enterprise Linux Server Tus 7.6, Redhat Enterprise Linux Server Tus 7.7, Redhat Enterprise Linux Workstation 6.0, Redhat Enterprise Linux Workstation 7.0, Debian Debian Linux 7.0, Bsd Mailx Project Bsd Mailx 8.1.2.
Apply the necessary security patches provided by the software vendors.
You can find more information about CVE-2014-7844 at the following references: http://linux.oracle.com/errata/ELSA-2014-1999.html, http://rhn.redhat.com/errata/RHSA-2014-1999.html, http://seclists.org/oss-sec/2014/q4/1066.