Login
Newsletter
Werbung

Sicherheit: Ausführen beliebiger Kommandos in Bash
Aktuelle Meldungen Distributionen
Name: Ausführen beliebiger Kommandos in Bash
ID: USN-4180-1
Distribution: Ubuntu
Plattformen: Ubuntu 12.04 ESM
Datum: Mo, 11. November 2019, 16:40
Referenzen: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-6711
Applikationen: GNU Bash

Originalnachricht


--===============2509666911053291249==
Content-Type: multipart/signed; micalg=pgp-sha1;
protocol="application/pgp-signature";
boundary="VbJkn9YxBvnuCH5J"
Content-Disposition: inline


--VbJkn9YxBvnuCH5J
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

==========================================================================
Ubuntu Security Notice USN-4180-1
November 11, 2019

bash vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 12.04 ESM

Summary:

Bash could be made to crash or execute arbitrary code if it received
a specially crafted input.

Software Description:
- bash: GNU Bourne Again SHell

Details:

It was discovered that Bash incorrectly handled certain inputs.
An attacker could possibly use this issue to cause a crash or execute
arbitrary code.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 12.04 ESM:
bash 4.2-2ubuntu2.9

After a standard system update you need to restart Bash to make
all the necessary changes.

References:
https://usn.ubuntu.com/4180-1
CVE-2012-6711

--VbJkn9YxBvnuCH5J
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=R89R
-----END PGP SIGNATURE-----

--VbJkn9YxBvnuCH5J--


--===============2509666911053291249==
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
Content-Transfer-Encoding: base64
Content-Disposition: inline

--
ubuntu-security-announce mailing list
ubuntu-security-announce@lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung