CVE-2022-1292
Vulnerability Summary
Timeline
Description
The c_rehash script does not properly sanitise shell metacharacters to prevent command injection. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating systems, an attacker could execute arbitrary commands with the privileges of the script. Use of the c_rehash script is considered obsolete and should be replaced by the OpenSSL rehash command line tool. Fixed in OpenSSL 3.0.3 (Affected 3.0.0,3.0.1,3.0.2). Fixed in OpenSSL 1.1.1o (Affected 1.1.1-1.1.1n). Fixed in OpenSSL 1.0.2ze (Affected 1.0.2-1.0.2zd).
CVSS Metrics
- v3.1•CRITICAL•Score: 9.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- v3.1•HIGH•Score: 7.3CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
- v2.0•HIGH•Score: 10AV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS Trends
Current EPSS score: 38.89%• Percentile: 97%
Techniques & Countermeasures
- CWE-78•Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.
Affected Systems
- debian•debian_linux
9.0 | 10.0 | 11.0
- fedoraproject•fedora
35 | 36
- netapp•a250_firmware
na
- netapp•a700s_firmware
na
- netapp•active_iq_unified_manager
na
- netapp•aff_500f_firmware
na
- netapp•aff_8300_firmware
na
- netapp•aff_8700_firmware
na
- netapp•aff_a400_firmware
na
- netapp•clustered_data_ontap
na
- netapp•clustered_data_ontap_antivirus_connector
na
- netapp•fabric-attached_storage_a400_firmware
na
- netapp•fas_500f_firmware
na
- netapp•fas_8300_firmware
na
- netapp•fas_8700_firmware
na
- netapp•h300e
na
- netapp•h300s_firmware
na
- netapp•h410s_firmware
na
- netapp•h500e
na
- netapp•h500s_firmware
na
- netapp•h700e
na
- netapp•h700s_firmware
na
- netapp•oncommand_insight
na
- netapp•oncommand_workflow_automation
na
- netapp•santricity_smi-s_provider
na
- netapp•smi-s_provider
na
- netapp•snapcenter
na
- netapp•snapmanager
na
- netapp•solidfire_\&_hci_management_node
na
- netapp•solidfire\,_enterprise_sds_\&_hci_storage_node
na
- Unknown•OpenSSL
Fixed in OpenSSL 3.0.3 (Affected 3.0.0,3.0.1,3.0.2) | Fixed in OpenSSL 1.1.1o (Affected 1.1.1-1.1.1n) | Fixed in OpenSSL 1.0.2ze (Affected 1.0.2-1.0.2zd) | ≥ 1.0.2, < 1.0.2ze | ≥ 1.1.1, < 1.1.1o | ≥ 3.0.0, < 3.0.3
- oracle•enterprise_manager_ops_center
12.4.0.0
- oracle•mysql_server
≥ 5.0.0, ≤ 5.7.38 | ≥ 8.0.0, ≤ 8.0.29
- oracle•mysql_workbench
≤ 8.0.29
- siemens•brownfield_connectivity_gateway
< 2.15
References (15)
- https://www.openssl.org/news/secadv/20220503.txt
- https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=1ad73b4d27bd8c1b369a3cd453681d3a4f1bb9b2
- https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=e5fd1728ef4c7a5bf7c7a7163ca60370460a6e23
- https://git.openssl.org/gitweb/?p=openssl.git%3Ba=commitdiff%3Bh=548d3f280a6e737673f5b61fce24bb100108dfeb
- https://lists.debian.org/debian-lts-announce/2022/05/msg00019.html
- https://www.debian.org/security/2022/dsa-5139
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VX4KWHPMKYJL6ZLW4M5IU7E5UV5ZWJQU/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZNU5M7BXMML26G3GPYKFGQYPQDRSNKDD/
- https://www.oracle.com/security-alerts/cpujul2022.html
- https://security.netapp.com/advisory/ntap-20220602-0009/
- https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0011
- https://security.netapp.com/advisory/ntap-20220729-0004/
- https://security.gentoo.org/glsa/202210-02
- https://cert-portal.siemens.com/productcert/pdf/ssa-953464.pdf
- https://gitlab.com/fraf0/cve-2022-1292-re_score-analysis