Bitcoin Forum

Other => Off-topic => Topic started by: RedDiamond on September 25, 2014, 12:54:04 PM



Title: A new Unix bug can pose bigger threat than Heartbleed
Post by: RedDiamond on September 25, 2014, 12:54:04 PM
"A newly discovered security bug in a widely used piece of Linux software, known as "Bash," could pose a bigger threat to computer users than the "Heartbleed" bug that surfaced in April, cyber experts warned on Wednesday. Bash is the software used to control the command prompt on many Linux computers. Hackers can exploit a bug in Bash to take complete control of a targeted system, security experts said. The Department of Homeland Security's United States Computer Emergency Readiness Team, or US-CERT, issued an alert saying the vulnerability affected Unix-based operating systems including Linux and Apple Inc's Mac OS X"

http://www.nbcnews.com/tech/security/new-bash-bug-could-pose-bigger-threat-heartbleed-n211006



Title: Re: A new Unix bug can pose bigger threat than Heartbleed
Post by: bluefirecorp on September 25, 2014, 01:42:29 PM
Still waiting on my patch. They had one patch, but only fixed a small bit of it :(


Title: Re: A new Unix bug can pose bigger threat than Heartbleed
Post by: Decksperiment on September 25, 2014, 02:34:46 PM
"A newly discovered security bug in a widely used piece of Linux software, known as "Bash," could pose a bigger threat to computer users than the "Heartbleed" bug that surfaced in April, cyber experts warned on Wednesday. Bash is the software used to control the command prompt on many Linux computers. Hackers can exploit a bug in Bash to take complete control of a targeted system, security experts said. The Department of Homeland Security's United States Computer Emergency Readiness Team, or US-CERT, issued an alert saying the vulnerability affected Unix-based operating systems including Linux and Apple Inc's Mac OS X"

http://www.nbcnews.com/tech/security/new-bash-bug-could-pose-bigger-threat-heartbleed-n211006



Bug? This has actually been known by myself since 98-99, and I found it online!! Along with how to create a root account on a unix system, using 98se. I should run an ftp server for those wishing to contribute to server costs lol, just to give access to a pentesters exploits..


Title: Re: A new Unix bug can pose bigger threat than Heartbleed
Post by: RedDiamond on September 25, 2014, 03:02:15 PM
"A newly discovered security bug in a widely used piece of Linux software, known as "Bash," could pose a bigger threat to computer users than the "Heartbleed" bug that surfaced in April, cyber experts warned on Wednesday. Bash is the software used to control the command prompt on many Linux computers. Hackers can exploit a bug in Bash to take complete control of a targeted system, security experts said. The Department of Homeland Security's United States Computer Emergency Readiness Team, or US-CERT, issued an alert saying the vulnerability affected Unix-based operating systems including Linux and Apple Inc's Mac OS X"

http://www.nbcnews.com/tech/security/new-bash-bug-could-pose-bigger-threat-heartbleed-n211006



Bug? This has actually been known by myself since 98-99, and I found it online!! Along with how to create a root account on a unix system, using 98se. I should run an ftp server for those wishing to contribute to server costs lol, just to give access to a pentesters exploits..

Maybe you mean this one from 1999: http://www.cvedetails.com/cve/CVE-1999-0491/

The currently found bug is much worse: http://www.cvedetails.com/cve/CVE-2014-6271/

"GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vectors involving the ForceCommand feature in OpenSSH sshd, the mod_cgi and mod_cgid modules in the Apache HTTP Server, scripts executed by unspecified DHCP clients, and other situations in which setting the environment occurs across a privilege boundary from Bash execution. "


Title: Re: A new Unix bug can pose bigger threat than Heartbleed
Post by: Bitcoin Magazine on September 25, 2014, 06:48:33 PM
oh shit it's just like winnuke (circa 1997-1998)


Title: Re: A new Unix bug can pose bigger threat than Heartbleed
Post by: catena5260 on September 25, 2014, 07:33:09 PM
Is it in any way related to the recent problems with Huobi, related to coins credit by mistake?


Title: Re: A new Unix bug can pose bigger threat than Heartbleed
Post by: anonymous.lawman on September 26, 2014, 12:56:08 AM
Uninstall it.


Title: Re: A new Unix bug can pose bigger threat than Heartbleed
Post by: b!z on September 26, 2014, 03:11:10 AM
#windowsvistamasterrace