Shellshock (software bug): Difference between revisions

Content deleted Content added
Edprevost (talk | contribs)
Edprevost (talk | contribs)
No edit summary
Line 1:
{{merge|Shellshock vulnerability|discuss=Talk:Shellshock (software bug)#Proposed merge with Shellshock vulnerability|date=September 2014}}
{{current event|date=September 2014}}
'''Shellshock''' is one of the names of a serious security vulnerability in [[Bash (Unix shell)|BASH]], a commandshell interpreterenvironment used byfor manya [[webvariety server]]sof runningtasks [[Apacheon HTTPLinux Server|Apache]]systems. and/orThe [[Securebinary Shell|SSH]]itself is typically found at /bin/bash. Attackers may execute arbitrary commands on affected servers by appending commands to executions of the shell that interact with environment variables.<br />
<br />
[[File:BashProof.fw.png|thumb|Simple Proof BASHINGA]]
<br />
 
It has been added to the United States [[National Vulnerability Database]] with identifier CVE-2014-7169.<ref name=NIST>
{{cite web