BASH vulnerability issue

The BASH v.<4.3 can be vulnerable. Name: Shellshock.

Some info here:

NIST NVD – Vulnerability Summary for CVE-2014-6271 – https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-6271

Wordfence – http://www.wordfence.com/blog/2014/09/major-bash-vulnerability-disclosed-may-affect-a-large-number-of-websites-and-web-apps/

The Register: http://www.theregister.co.uk/2014/09/24/bash_shell_vuln/

SecurityIntelligence: http://securityintelligence.com/news/shellshock-where-the-bash-bug-could-hit-the-hardest/

CentOS: http://centosnow.blogspot.com/2014/09/critical-bash-updates-for-centos-5.html

ArsTechnica: http://arstechnica.com/security/2014/09/concern-over-bash-vulnerability-grows-as-exploit-reported-in-the-wild/

 

RSS EETimes Semiconductor News
  • Comment on Canadian Researcher Ponders Cyborg Rights by Dug_E_Bug December 13, 2019
    I see your point. The common denominator for your list is the Social Security Number - or equivalent for non-USA countries. Being a boomer, the introduction of the SSN seemed to be apocalyptic for many in my parent's generation. I didn't see it that way, because it was already implemented, and it was 'good'. The […]
  • Comment on AWS Rolls Out AI Inference Chip by Evariste December 13, 2019
    Sounds pretty neat. Has anybody used the AWS F1 instances? These have Xilinx Ultrascale FPGAs. I was wondering how useful they are for hardware simulation; I haven't tried them myself, though.
  • Comment on Qualcomm Rides on China’s Belt & Road Initiative by kenpillay December 13, 2019
    a couple of pinch points on that so-called Belt and Road Initiative : 1. overland rail route has a gauge mismatch ; China 4ft Kazakhstan 6ft 2. sea route/road westward goes through Singapore Straits (and eventually Suez)