CVE-2022-2068

Modified
Published: 21 Jun 2022, 14:45
Last modified:30 Dec 2025, 04:55

Vulnerability Summary

Overall Risk (default)
high
70/100
CVSS Score
10 HIGH
v2.0 (nvd)
EPSS Score
20.22% HIGH
20% probability +1.64%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

21 Jun 2022, 14:45
Published
Vulnerability first disclosed
30 Dec 2025, 04:55
Last Modified
Vulnerability information updated

Description

In addition to the c_rehash shell command injection identified in CVE-2022-1292, further circumstances where the c_rehash script does not properly sanitise shell metacharacters to prevent command injection were found by code review. When the CVE-2022-1292 was fixed it was not discovered that there are other places in the script where the file names of certificates being hashed were possibly passed to a command executed through the shell. This script is distributed by some operating systems in a manner where it is automatically executed. On such operating systems, an attacker could execute arbitrary commands with the privileges of the script. Use of the c_rehash script is considered obsolete and should be replaced by the OpenSSL rehash command line tool. Fixed in OpenSSL 3.0.4 (Affected 3.0.0,3.0.1,3.0.2,3.0.3). Fixed in OpenSSL 1.1.1p (Affected 1.1.1-1.1.1o). Fixed in OpenSSL 1.0.2zf (Affected 1.0.2-1.0.2ze).

CVSS Metrics

  • v3.1CRITICALScore: 9.8CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • v3.1HIGHScore: 7.3CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
  • v2.0HIGHScore: 10AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS Trends

Current EPSS score: 20.22% Percentile: 96%

Techniques & Countermeasures

  • CWE-78Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

    The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.

Affected Systems

  • broadcomsannav

    na

  • debiandebian_linux

    10.0 | 11.0

  • fedoraprojectfedora

    35 | 36

  • netappaff_8300_firmware

    na

  • netappaff_8700_firmware

    na

  • netappaff_a400_firmware

    na

  • netappbootstrap_os

    na

  • netappelement_software

    na

  • netappfas_8300_firmware

    na

  • netappfas_8700_firmware

    na

  • netappfas_a400_firmware

    na

  • netapph300s_firmware

    na

  • netapph410c_firmware

    na

  • netapph410s_firmware

    na

  • netapph500s_firmware

    na

  • netapph610c_firmware

    na

  • netapph610s_firmware

    na

  • netapph615c_firmware

    na

  • netapph700s_firmware

    na

  • netapphci_management_node

    na

  • netappontap_antivirus_connector

    na

  • netappontap_select_deploy_administration_utility

    na

  • netappsantricity_smi-s_provider

    na

  • netappsmi-s_provider

    na

  • netappsnapmanager

    na

  • netappsolidfire

    na

  • UnknownOpenSSL

    Fixed in OpenSSL 3.0.4 (Affected 3.0.0,3.0.1,3.0.2,3.0.3) | Fixed in OpenSSL 1.1.1p (Affected 1.1.1-1.1.1o) | Fixed in OpenSSL 1.0.2zf (Affected 1.0.2-1.0.2ze) | ≥ 1.0.2, < 1.0.2zf | ≥ 1.1.1, < 1.1.1p | ≥ 3.0.0, < 3.0.4

  • siemenssinec_ins

    < 1.0 | 1.0 | 1.0:sp1 | 1.0:sp2

References (11)