Originally posted by stek
View Post
- Visitors can check out the Forum FAQ by clicking this link. You have to register before you can post: click the REGISTER link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below. View our Forum Privacy Policy.
- Want to receive the latest contracting news and advice straight to your inbox? Sign up to the ContractorUK newsletter here. Every sign up will also be entered into a draw to WIN £100 Amazon vouchers!
Linux bash vulnerability
Collapse
X
Collapse
-
-
Although from the horses mouth
USN-2362-1: Bash vulnerability | Ubuntu
Ubuntu Security Notice USN-2362-1
24th September, 2014
bash vulnerability
A security issue affects these releases of Ubuntu and its derivatives:
Ubuntu 14.04 LTS
Ubuntu 12.04 LTS
Ubuntu 10.04 LTS
Summary
Bash allowed bypassing environment restrictions in certain environments.
Knock first as I might be balancing my chakras.Comment
-
Originally posted by CheeseSlice View PostIf DHCP and Macs are affected, thats going to be a problem for some creative/digital businesses.
All it would take is a worm to set up rogue DHCP servers on each infected host and it would be a fast spreading Denial of service infection akin to Blaster or SQL Slammer.
I imagine businesses running mainly Macs are also going to take a relaxed approach to endpoint security, since its commonfolkloreknowledge "Macs dont get viruses"
I'd warrant there's next to no (if any) host on public IP's with a DHCP issued one. Of course that won't stop internal meddling.....Comment
-
Originally posted by stek View PostOr it was installed with the default install like is 99% likely, like I already said.
Like.Comment
-
Originally posted by administrator View PostCheers stek, will give them a kick later!Comment
-
Originally posted by stek View PostNot really cos 99.99% of desktops that would normally use DHCP are hidden behind NAT. Safe, unless you've been pissing around with port forwarding on your NAT router.
I'd warrant there's next to no (if any) host on public IP's with a DHCP issued one. Of course that won't stop internal meddling.....
All it takes is for one user to be fooled to execute a file attached to an email, and then its in.Comment
-
Originally posted by CheeseSlice View PostSQL Slammer made it behind plenty of firewalled networks. I was working at a very large firm when it spread fast across the corporate network. No idea how it got in, but it did.
All it takes is for one user to be fooled to execute a file attached to an email, and then its in.
I've got some Mr Kipling Viennese Whirls.Comment
-
Originally posted by CheeseSlice View PostSQL Slammer made it behind plenty of firewalled networks. I was working at a very large firm when it spread fast across the corporate network. No idea how it got in, but it did.
All it takes is for one user to be fooled to execute a file attached to an email, and then its in.
I am telling you now, this will run and run.Knock first as I might be balancing my chakras.Comment
-
Already posted this in Technical earlier today, but I might as well tack it on here too for those who only see this thread: Troy Hunt: Everything you need to know about the Shellshock Bash bugComment
-
Originally posted by NickFitz View PostAlready posted this in Technical earlier today, but I might as well tack it on here too for those who only see this thread: Troy Hunt: Everything you need to know about the Shellshock Bash bugKnock first as I might be balancing my chakras.Comment
- Home
- News & Features
- First Timers
- IR35 / S660 / BN66
- Employee Benefit Trusts
- Agency Workers Regulations
- MSC Legislation
- Limited Companies
- Dividends
- Umbrella Company
- VAT / Flat Rate VAT
- Job News & Guides
- Money News & Guides
- Guide to Contracts
- Successful Contracting
- Contracting Overseas
- Contractor Calculators
- MVL
- Contractor Expenses
Advertisers
Contractor Services
CUK News
- Business Asset Disposal Relief changes in April 2025: Q&A Yesterday 09:37
- How debt transfer rules will hit umbrella companies in 2026 Nov 12 09:28
- IT contractor demand floundering despite Autumn Budget 2024 Nov 11 09:30
- An IR35 bill of £19m for National Resources Wales may be just the tip of its iceberg Nov 7 09:20
- Micro-entity accounts: Overview, and how to file with HMRC Nov 6 09:27
- Will HMRC’s 9% interest rate bully you into submission? Nov 5 09:10
- Business Account with ANNA Money Nov 1 15:51
- Autumn Budget 2024: Reeves raids contractor take-home pay Oct 31 14:11
- How Autumn Budget 2024 affects homes, property and mortgages Oct 31 09:23
- Autumn Budget 2024: Reeves raids contractor take-home pay Oct 31 09:20
Comment