Resend my activation email : Register : Log in 
BCF: Bike Chat Forums


BASH vulnerability

Reply to topic
Bike Chat Forums Index -> The Geek Zone
View previous topic : View next topic  
Author Message

UnknownStuntm...
World Chat Champion



Joined: 13 Sep 2007
Karma :

PostPosted: 16:23 - 25 Sep 2014    Post subject: BASH vulnerability Reply with quote

Oh cock.

https://www.theregister.co.uk/2014/09/24/bash_shell_vuln/

This means I have to actually work for a while. Worst bit is all the smug Windows users I've been telling 'Unix is inherrently more secure....' blah blah shootmyselfintheface blah...
 Back to top
View user's profile Send private message You must be logged in to rate posts

Rogerborg
nimbA



Joined: 26 Oct 2010
Karma :

PostPosted: 19:22 - 25 Sep 2014    Post subject: Reply with quote

Mmm, fun times today explaining the concept that your primary application vendor isn't your OS support monkey.

Going to be a powerful lot of systems that never get patched.

Oh noes, my Rasperry Pi! Shocked Rolling Eyes
____________________
Biking is 1/20th as dangerous as horse riding.
GONE: HN125-8, LF-250B, GPz 305, GPZ 500S, Burgman 400 // RIDING: F650GS (800 twin), Royal Enfield Bullet Electra 500 AVL, Ninja 250R because racebike
 Back to top
View user's profile Send private message You must be logged in to rate posts

CaNsA
Super Spammer



Joined: 02 Jan 2008
Karma :

PostPosted: 19:48 - 25 Sep 2014    Post subject: Reply with quote

Rogerborg wrote:
Mmm, fun times today explaining the concept that your primary application vendor isn't your OS support monkey.

Going to be a powerful lot of systems that never get patched.

Oh noes, my Rasperry Pi! Shocked Rolling Eyes


my pi autoruns "apt-get update && apt-get upgrade y" daily Very Happy
 Back to top
View user's profile Send private message You must be logged in to rate posts

Pigeon
World Chat Champion



Joined: 27 Sep 2012
Karma :

PostPosted: 20:21 - 25 Sep 2014    Post subject: Reply with quote

"You can check if you're vulnerable by running the following lines in your default shell, which on many systems will be Bash. If you see the words "busted", then you're at risk. If not, then either your Bash is fixed or your shell is using another interpreter."


Code:

pigeon@theroost:~$ env X="() { :;} ; echo busted" /bin/sh -c "echo completed"
completed
pigeon@theroost:~$ env X="() { :;} ; echo busted" `which bash` -c "echo completed"
/bin/bash: warning: X: ignoring function definition attempt
/bin/bash: error importing function definition for `X'
completed
pigeon@theroost:~$


Cool


"Ubuntu and other Debian-derived systems that use Dash exclusively are not at risk"
 Back to top
View user's profile Send private message You must be logged in to rate posts

Rogerborg
nimbA



Joined: 26 Oct 2010
Karma :

PostPosted: 21:01 - 25 Sep 2014    Post subject: Reply with quote

I'm iron like a lion in Zion now too. Thumbs Up

No haxxorzing my minecraft server. Folded arms
____________________
Biking is 1/20th as dangerous as horse riding.
GONE: HN125-8, LF-250B, GPz 305, GPZ 500S, Burgman 400 // RIDING: F650GS (800 twin), Royal Enfield Bullet Electra 500 AVL, Ninja 250R because racebike
 Back to top
View user's profile Send private message You must be logged in to rate posts

CaNsA
Super Spammer



Joined: 02 Jan 2008
Karma :

PostPosted: 21:23 - 25 Sep 2014    Post subject: Reply with quote

NobKitten, NobCat and the pi are all well secure n shit Very Happy

Cheers pigeon Thumbs Up
 Back to top
View user's profile Send private message You must be logged in to rate posts
Old Thread Alert!

The last post was made 11 years, 161 days ago. Instead of replying here, would creating a new thread be more useful?
  Display posts from previous:   
This page may contain affiliate links, which means we may earn a small commission if a visitor clicks through and makes a purchase. By clicking on an affiliate link, you accept that third-party cookies will be set.

Post new topic   Reply to topic    Bike Chat Forums Index -> The Geek Zone All times are GMT
Page 1 of 1

 
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum

Read the Terms of Use! - Powered by phpBB © phpBB Group
 

Debug Mode: ON - Server: birks (www) - Page Generation Time: 0.06 Sec - Server Load: 0.49 - MySQL Queries: 14 - Page Size: 49.01 Kb