Contribute
Register

Shellshock

Status
Not open for further replies.
Joined
Jul 27, 2010
Messages
62
Motherboard
MacBookPro8,1
CPU
Intel Core i5-2415M
Graphics
Intel HD Graphics 3000
Mac
  1. MacBook Pro
Classic Mac
  1. PowerBook
Mobile Phone
  1. iOS
Hi guys, just sharing about the shellsock bug. I've been wondering when is Appel going to release a fix for that bug. In short for the peolple that don't know about that critical bug, it's a problem within the Bash interpreter program. What happens is that the interpreter still parses past the end of a function when declaring a variable in the environment, allowing to insert malicious code. It is important to notice that many servers run bash in the background, for instance git. It's serious security flaw and I don't understand, why Apple hasn't fixed it's distribution of bash, when they are so focused on our security! I'm interested to read your thoughts about it.
 
Hi guys, just sharing about the shellsock bug. I've been wondering when is Appel going to release a fix for that bug. In short for the peolple that don't know about that critical bug, it's a problem within the Bash interpreter program. What happens is that the interpreter still parses past the end of a function when declaring a variable in the environment, allowing to insert malicious code. It is important to notice that many servers run bash in the background, for instance git. It's serious security flaw and I don't understand, why Apple hasn't fixed it's distribution of bash, when they are so focused on our security! I'm interested to read your thoughts about it.
Mavericks:

http://support.apple.com/kb/DL1769

Mountain Lion:

http://support.apple.com/kb/DL1768

Lion:

http://support.apple.com/kb/DL1767
 
Status
Not open for further replies.
Back
Top