Differences between revisions 8 and 9
Revision 8 as of 2014-09-27 16:32:27
Size: 2731
Editor: WillDye
Comment: Typo.
Revision 9 as of 2014-09-27 20:23:54
Size: 3225
Editor: WillDye
Comment: Apparently there's a final fix out now
Deletions are marked like this. Additions are marked like this.
Line 4: Line 4:
As of this writing (September 25th, 2014), As of this writing (September 27th, 2014),
Line 11: Line 11:

A quick summary is this:
 * The most recent updates should now fix all known Shellshock-related vulnerabilities.
 * Many systems were never vulnerable to a remote attack, but it's safer to patch all systems anyway.
 * Other potential problems were identified during the investigation, but are considered separate from the Shellshock bug.

After things stabilize a bit,
this FAQ page should be updated with a better summary.
Line 15: Line 23:
After things stabilize a bit,
this FAQ page should be updated with a handy summary.
Line 20: Line 26:
 * [[http://www.zdnet.com/shellshock-better-bash-patches-now-available-7000034115/|ZDNet: the latest patches do fix all known Shellshock issues]]

What is the Shellshock vulnerability in Bash?

As of this writing (September 27th, 2014), the situation with Shellshock is changing so rapidly that you're probably better off using your preferred search engine instead of this FAQ. For example, you could search a news site for recent items which contain the word "Shellshock".

A quick summary is this:

  • The most recent updates should now fix all known Shellshock-related vulnerabilities.
  • Many systems were never vulnerable to a remote attack, but it's safer to patch all systems anyway.
  • Other potential problems were identified during the investigation, but are considered separate from the Shellshock bug.

After things stabilize a bit, this FAQ page should be updated with a better summary. For information about specific vulnerabilities related to Shellshock, you may find better results by searching for terms such as "CVE-2014-6271", "CVE-2014-7169", "CVE-2014-7186", or "CVE-2014-7187".

In the meantime, here are a few links that should help you get started:


CategoryShell

BashFAQ/111 (last edited 2014-10-09 20:04:09 by GreyCat)