BASH - CVE-2014-6271

Dagobert Michelsen dam at opencsw.org
Thu Sep 25 09:11:44 CEST 2014


Hi Upen,

Am 24.09.2014 um 23:06 schrieb upen <upendra.gandhi at gmail.com>:
> Is the current bash in OpenCSW( 4.3.24,REV=2014.09.07) vulnerable to
> CVE in the subject?

Yes, we’ll push out an updated bash ASAP.

You can check with
  env x='() { :;}; echo vulnerable' /opt/csw/bin/bash -c "echo test“


Best regards

  — Dago


-- 
"You don't become great by trying to be great, you become great by wanting to do something,
and then doing it so hard that you become great in the process." - xkcd #896

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 2418 bytes
Desc: not available
URL: <http://lists.opencsw.org/pipermail/users/attachments/20140925/bf059fe2/attachment.p7s>


More information about the users mailing list