Bash bug blows open Linux systems to hackers....

Status
Not open for further replies.

Amphibian

Joined
Sep 8, 2009
Messages
1,128
Reaction score
1
Bash bug blows open Linux, OS X systems to hackers
CGI scripts to DHCP clients affected – patch Heartbleed-grade injection vuln NOW


Check out the following and look for the test script to enter to check your systems:

http://www.theregister.co.uk/2014/09/24 ... hell_vuln/



amphibian
 
Thanks for the information, th bug has been fixed:
yum update bash
 
Hi,

I'm running Elastix 2.5 Beta 3 and I see that it is vulnerable:
[root@MKElastix ~]# env x='() { :;}; echo vulnerable' bash -c "echo this is a test"
vulnerable
this is a test
[root@MKElastix ~]#

Can I use yum update bash to fix it?
 
Well, if you are afraid of performing an action, it is wise to have a virtual/physical test server.
 
Or, as always, make a backup of your system before you do the update. That way you can restore a backup if the update don't work.



amphibian
 
Just update, everything will go ok, tested on Elastix 2.4, no problems
 
Hi

May be bring a feedback to bugs.elastix.org and post this issue in the security area or else.
In this case, Elastix team could apply this patch for the new update and or they could spread a security alert on Elastix website.

But, well done. :wink:
 
Status
Not open for further replies.

Forum statistics

Threads
111,858
Messages
589,426
Members
164,698
Latest member
RRusev