BASH Shellshock and FreeBSD 4.X

Mark Felder feld at FreeBSD.org
Sun Sep 28 21:05:02 UTC 2014



On Sun, Sep 28, 2014, at 15:59, Everett Batey wrote:
> Severely stuck in Time - OLD FBSD .. any bright ideas around /bin/bash
> risks AND NOT DONT TELL ME UPDATE FBSD .. - Dependencies I can NOT
> escape ..
> 

Is bash the default shell of the system? The default shell of any users
running exposed services? If not, it's not exploitable. Just having bash
installed doesn't make you vulnerable.

> On other hand for FreeBSD 9.1-RELEASE-p7 is there an equivalent of yum
> update bash?
> 

pkg upgrade bash


More information about the freebsd-questions mailing list