I run my machine with SUSE 11 (without any SP), and my system is affected by the GNU Bash Remote Code Execution Vulnerability (CVE-2014-6271 and CVE-2014-7169)。 I have find the download link for the patch to fix the issue as follow :
[QUOTE=A_MAO;24112]I run my machine with SUSE 11 (without any SP), and my system is affected by the GNU Bash Remote Code Execution Vulnerability (CVE-2014-6271 and CVE-2014-7169)。 I have find the download link for the patch to fix the issue as follow :
You want ssbash11GA-64.tar. However installing this update on your machine seems a bit like sticking a plaster on a broken leg. You’re running a version of SLES that went End Of Life in December 2010 and it looks like it’s never even had any updates installed. The earliest kernel update for SLES 11 GA listed on Patch Finder is version 2.6.27.21 in April 2009 and you’re running 2.6.27.19. The earliest bash update was version 3.2-147.4 released in July 2009. You’re concerned about shellshock, what about other vulnerabilities it might be affected by given it doesn’t have updates from over five years ago installed?