Questions? Feedback? powered by Olark live chat software

Call Us

408 677 5213

Home / About Us

Blog

Bug in *nix Bash dubbed ‘shellshock’

A vulnerability has been discovered in ‘ Bash ‘

For Our Managed Customers;

No need to worry, we have updated for you!

For Unmanaged Customers;

Patches are available for major Linux distributions, including:

- CentOS
- Debian
- Fedora
- Red Hat Enterprise Linux
- Ubuntu

 

For MAC OSX Please visit;

http://mac-how-to.wonderhowto.com/how-to/every-mac-is-vulnerable-shellshock-bash-exploit-heres-patch-os-x-0157606/

 

You can update your Linux Distribution, by running the following commands;

For CentOS / CloudLinux / RedHat / Fedora;

# yum update bash -y

 

For Debian / Ubuntu;

# apt-get update; apt-get install bash

 

Once Updated, you can verify with the following command;

# env x=’() { :;}; echo isVulnerable’ bash -c “echo Hello World”

 

Vulnerable Result:

isVulnerable

Hello World

 

Updated Result:

bash: warning: x: ignoring function definition attempt

bash: error importing function definition for `x’

Hello World

 

For additional information, please visit:

https://access.redhat.com/announcements/1210053

https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/

http://seclists.org/oss-sec/2014/q3/649

http://mac-how-to.wonderhowto.com/how-to/every-mac-is-vulnerable-shellshock-bash-exploit-heres-patch-os-x-0157606/

Author: Samantha Parker

Trusted By Thousands of Australian Companies Like:

Deals.com.au

"The support at Servers Australia for outside of business hours are phenomenal."

Cong Do - IT Associate
Twitter Facebook