Heartbleed Extension Vulnerability caused lots of worries for Internet system. The affects still do not go away and now Shellshock coming. This latest vulnerability affects the command line software Bash operating at Linux , Unix and Mac OS X.
Vendors have been posting the patches and suggestions on their websites already. Here is some quick collections for my environment.
1. Checkpoint’s Responding:
2. Cisco’s Responding:
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140926-bash
3. Juniper’s Responding:
https://kb.juniper.net/InfoCenter/index?page=content&id=JSA10648&actp=RSS
4. Vmware:
Note: How it happened? (from Symantec)
An attacker can potentially use CGI to send a malformed environment variable to a vulnerable Web server. Because the server uses Bash to interpret the variable, it will also run any malicious command tacked-on to it.
本文介绍了最新的Shellshock漏洞,该漏洞影响了Linux、Unix及Mac OS X等系统的Bash命令行软件。文章汇总了Checkpoint、Cisco、Juniper及Vmware等厂商针对此漏洞发布的补丁和建议。


1849

被折叠的 条评论
为什么被折叠?



