AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2012-3410

MEDIUM · CVSS 4.6 EPSS 0.41%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-08-27 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2012-3410
Severity
MEDIUM
CVSS
4.6
EPSS
0.41%

Original NVD Description

Stack-based buffer overflow in lib/sh/eaccess.c in GNU Bash before 4.2 patch 33 might allow local users to bypass intended restricted shell access via a long filename in /dev/fd, which is not properly handled when expanding the /dev/fd prefix.