JM Aggie08
Diamond Member
Any sysadmins in this subforum? How's everyone dealing with the most recent big scare?
This is a good thing IMO. Perhaps a security audit is in order, but the amount of eyes on the code right now is a good thing. 🙂So the bash bug has really has turned into to the gift that keeps on giving
They are up to 6 vulnerabilities:
CVE-2014-6271
CVE-2014-7169
CVE-2014-7186
CVE-2014-7187
CVE-2014-6277
CVE-2014-6278
more redhat specific info here:
https://access.redhat.com/articles/1200223
Chet Ramey has put out new patches for the latest
http://seclists.org/oss-sec/2014/q4/17
good reading:
http://lcamtuf.blogspot.de/2014/10/bash-bug-how-we-finally-cracked.html
This is a good thing IMO. Perhaps a security audit is in order, but the amount of eyes on the code right now is a good thing. 🙂
Not sure what the above command does but yum update worked for me, may as well do a full system update at the same time. Fortunately distros were pretty quick to issue the patch and even older distros like CentOS 5 got it.
Mmm Denny's. Been a while since I've been to one. They have em down south and often are near the hotel.
It's an automation command to yum update bash on all servers known to ansible. That's about 3200 linux servers for me.
3200! - That is impressive
What else do you use to manage that many servers?