GNU Bashã«æ°ããªèå¼±æ§ãçºè¦ãããï¼CVE-2014-6271ï¼ãç°å¢å¤æ°ãçµç±ãã¦é¢æ°å®ç¾©ã渡ãå ´åã«ãç´°å·¥ããã¦ã³ãã³ããå®è¡ããããã¨ãã§ãããæ»æã«ä½¿ãç°å¢å¤æ°ã®ååã«å¶éã¯ãªãããã¨ãã°å é¨çã«shãå®è¡ãããããªCGIã«å¯¾ãã¦HTTP ã¦ã¼ã¶ã¼ã¨ã¼ã¸ã§ã³ããéãéããsshæ¥ç¶æã«ç°å¢å¤æ°ã渡ãæãªã©ãç°å¢å¤æ°ãæ¹å¤ããç¶æ ã§bashãå¼ã°ããããã«ãªã£ã¦ããã°æ»æãã§ããï¼ThreatPostãCSO Onlineï¼ã ãã®èå¼±æ§ã¯ãã¹ã¦ã®ãã¼ã¸ã§ã³ã® bashã«ããã¨ãããMac OS Xã«ãå½è©²ã®ãã¼ã¸ã§ã³ãå«ã¾ããã¨ããã¦ãããä¸é¨ã® Linux ãã£ã¹ããªãã¥ã¼ã·ã§ã³ã§ã¯ãã§ã«ã¢ãããã¼ããé å¸ãã¦ããã Red Hat Security Blogã«ããã¨ãèå¼±æ§ã®ãããã¼ã¸ã§ã³ã§ã¯ä»¥ä¸ã®"echo vulnerable"ã®é¨åãäºæããå®è¡ãããã
{{#tags}}- {{label}}
{{/tags}}