[AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Matt via Af
Bash specially-crafted environment variables code injection attack https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Peter Kranz via Af
[mailto:af-bounces+pkranz=unwiredltd@afmug.com] On Behalf Of Matt via Af Sent: Thursday, September 25, 2014 10:27 AM To: af@afmug.com Subject: [AFMUG] Bash specially-crafted environment variables code injection attack Bash specially-crafted environment variables code injection attack https

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Josh Reynolds via Af
td.com Desk: 510-868-1614 x100 Mobile: 510-207- pkr...@unwiredltd.com -Original Message- From: Af [mailto:af-bounces+pkranz=unwiredltd@afmug.com] On Behalf Of Matt via Af Sent: Thursday, September 25, 2014 10:27 AM To: af@afmug.com Subject: [AFMUG] Bash specially-crafted envir

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Ty Featherling via Af
sage- > From: Af [mailto:af-bounces+pkranz=unwiredltd@afmug.com > ] On Behalf Of Matt via Af > Sent: Thursday, September 25, 2014 10:27 AM > To: af@afmug.com > Subject: [AFMUG] Bash specially-crafted environment variables code injection > attack > > Bash specially-craf

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Robbie Wright via Af
Mobile: 510-207-pkr...@unwiredltd.com >> >> -Original Message- >> From: Af [mailto:af-bounces+pkranz=unwiredltd....@afmug.com >> ] On Behalf Of Matt via Af >> Sent: Thursday, September 25, 2014 10:27 AM >> To: af@afmug.com >> Subject: [AFM

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Ty Featherling via Af
ia HTTP/Apache attack vectors, so >>> you need to patch any vulnerable system running Apache. >>> >>> Peter Kranz >>> Founder/CEO - Unwired Ltdwww.UnwiredLtd.com >>> Desk: 510-868-1614 x100 >>> Mobile: 510-207-pkr...@unwiredltd.com >&g

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Josh Baird via Af
> Sent: Thursday, September 25, 2014 10:27 AM > To: af@afmug.com > Subject: [AFMUG] Bash specially-crafted environment variables code > injection attack > > Bash specially-crafted environment variables code injection attack > > > https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/ > >

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Ty Featherling via Af
>> Desk: 510-868-1614 x100 >> Mobile: 510-207- >> pkr...@unwiredltd.com >> >> -Original Message- >> From: Af [mailto:af-bounces+pkranz=unwiredltd@afmug.com] On Behalf >> Of Matt via Af >> Sent: Thursday, September 25, 2014 10:27 AM >

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Josh Baird via Af
- Unwired Ltd >>> www.UnwiredLtd.com >>> Desk: 510-868-1614 x100 >>> Mobile: 510-207- >>> pkr...@unwiredltd.com >>> >>> -Original Message- >>> From: Af [mailto:af-bounces+pkranz=unwiredltd....@afmug.com] On Behalf >>>

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Matt via Af
m >> >> -Original Message- >> From: Af [mailto:af-bounces+pkranz=unwiredltd....@afmug.com] On Behalf Of >> Matt via Af >> Sent: Thursday, September 25, 2014 10:27 AM >> To: af@afmug.com >> Subject: [AFMUG] Bash specially-crafted environment variable

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Josh Reynolds via Af
af@afmug.com> Subject: [AFMUG] Bash specially-crafted environment variables code injection attack Bash specially-crafted environment variables code injection attack https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injection-attack/

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Ty Featherling via Af
red Ltd >>> www.UnwiredLtd.com >>> Desk: 510-868-1614 x100 <510-868-1614%20x100> >>> Mobile: 510-207- >>> pkr...@unwiredltd.com >>> >>> -Original Message----- >>> From: Af [mailto:af-bounces+pkranz=unwiredltd@afmug.com] On Behalf &g

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-25 Thread Matt Hardy via Af
Founder/CEO - Unwired Ltd >>> www.UnwiredLtd.com >>> Desk: 510-868-1614 x100 <510-868-1614%20x100> >>> Mobile: 510-207- >>> pkr...@unwiredltd.com >>> >>> -Original Message----- >>> From: Af [mailto:af-bounces+pkranz=unwiredltd@

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-26 Thread Matt via Af
Redhat has released an updated patch this morning. yum update again. On Thu, Sep 25, 2014 at 12:26 PM, Matt via Af wrote: > Bash specially-crafted environment variables code injection attack > > https://securityblog.redhat.com/2014/09/24/bash-specially-crafted-environment-variables-code-injecti

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-26 Thread That One Guy via Af
Simon, is the powercode centos vulnerable? Does it matter the ports that are exposed, we have a couple DNS servers running but only DNS is opened through the external firewall Is there a vulnerability scanner available for morons like me? On Fri, Sep 26, 2014 at 9:50 AM, Matt via Af wrote: > R

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-26 Thread Simon Westlake via Af
Not if you're only running Powercode on the server, but you should still do a 'yum update' for safety. On 9/26/2014 11:10 AM, That One Guy via Af wrote: Simon, is the powercode centos vulnerable? Does it matter the ports that are exposed, we have a couple DNS servers running but only DNS is o

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-26 Thread That One Guy via Af
there will be no v9 impact by doing that? On Fri, Sep 26, 2014 at 11:20 AM, Simon Westlake via Af wrote: > Not if you're only running Powercode on the server, but you should still > do a 'yum update' for safety. > > On 9/26/2014 11:10 AM, That One Guy via Af wrote: > > Simon, is the powercode c

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-26 Thread Mike Hammett via Af
: Af [ mailto:af-bounces+pkranz=unwiredltd@afmug.com ] On Behalf Of Matt via Af Sent: Thursday, September 25, 2014 10:27 AM To: af@afmug.com Subject: [AFMUG] Bash specially-crafted environment variables code injection attack Bash specially-crafted environment variables code injecti

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-26 Thread Ty Featherling via Af
t; http://www.ics-il.com > > -- > *From: *"Ty Featherling via Af" > *To: *af@afmug.com > *Sent: *Thursday, September 25, 2014 2:42:31 PM > *Subject: *Re: [AFMUG] Bash specially-crafted environment variables code > injection attack > > Noob question but how ca

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-26 Thread That One Guy via Af
y Featherling via Af" >> *To: *af@afmug.com >> *Sent: *Thursday, September 25, 2014 2:42:31 PM >> *Subject: *Re: [AFMUG] Bash specially-crafted environment variables code >> injection attack >> >> Noob question but how can I easiest update my linux boxes to get the

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-27 Thread Ty Featherling via Af
t;>> >>> >>> - >>> Mike Hammett >>> Intelligent Computing Solutions >>> http://www.ics-il.com >>> >>> -------------- >>> *From: *"Ty Featherling via Af" >>> *To: *af@afmug.com >>> *Sent: *Thursday, September 25

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-27 Thread Ken Hohhof via Af
.rpm From: Ty Featherling via Af Sent: Saturday, September 27, 2014 10:52 AM To: af@afmug.com Subject: Re: [AFMUG] Bash specially-crafted environment variables code injection attack Yeah probably the NSA! Hahaha! -Ty On Sep 26, 2014 10:36 PM, "That One Guy via Af" wrote: Man I

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-27 Thread Jeremy via Af
> > http://public-yum.oracle.com/repo/EnterpriseLinux/EL4/latest/i386/getPackage/bash-3.0-27.0.2.el4.i386.rpm > > > *From:* Ty Featherling via Af > *Sent:* Saturday, September 27, 2014 10:52 AM > *To:* af@afmug.com > *Subject:* Re: [AFMUG] Bash specially-crafted environment variabl

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-27 Thread Matt via Af
m.oracle.com/repo/EnterpriseLinux/EL4/latest/i386/getPackage/bash-3.0-27.0.2.el4.i386.rpm > > > From: Ty Featherling via Af > Sent: Saturday, September 27, 2014 10:52 AM > To: af@afmug.com > Subject: Re: [AFMUG] Bash specially-crafted environment variables code > injection attack &

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-27 Thread Ken Hohhof via Af
exposed script that will pass an environment variable to bash for you. From: Jeremy via Af Sent: Saturday, September 27, 2014 12:13 PM To: af@afmug.com Subject: Re: [AFMUG] Bash specially-crafted environment variables code injection attack Our webserver was vulnerable. Tried to fix it without

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-27 Thread Shayne Lebrun via Af
happens over the next few weeks, that’s why. From: Af [mailto:af-bounces+slebrun=muskoka@afmug.com] On Behalf Of That One Guy via Af Sent: Friday, September 26, 2014 12:22 PM To: af@afmug.com Subject: Re: [AFMUG] Bash specially-crafted environment variables code injection attack there

Re: [AFMUG] Bash specially-crafted environment variables code injection attack

2014-09-28 Thread Shayne Lebrun via Af
[mailto:af-bounces+slebrun=muskoka@afmug.com] On Behalf Of Ken Hohhof via Af Sent: Saturday, September 27, 2014 1:38 PM To: af@afmug.com Subject: Re: [AFMUG] Bash specially-crafted environment variables code injection attack So maybe I won’t do that. The newer servers where I could just