Registar

User Tag List

Likes Likes:  0
Resultados 1 a 3 de 3
  1. #1
    Moderador Avatar de Winjer
    Registo
    Feb 2013
    Local
    Santo Tirso
    Posts
    12,674
    Likes (Dados)
    30
    Likes (Recebidos)
    208
    Avaliação
    4 (100%)
    Mentioned
    7 Post(s)
    Tagged
    0 Thread(s)

    Vulnerabilidade no Bash é muito grave

    Bash vulnerability allows code execution, may be worse than Heartbleed bug

    The Internet is grappling with another major security vulnerability. According to the Red Hat security blog, the Bash Unix shell is vulnerable to code injection attacks. Dubbed Shellshock, this flaw is severe enough that the Department of Homeland Security's Computer Emergency Readiness Team has issued an alert advising users running Linux and OS X to patch their systems.The National Vulnerability Database rates the flaw as a 10/10 for impact and exploitability. More worryingly, perhaps, Shellshock apparently has "low" access complexity and no authentication requirements. A cybersecurity expert quoted by Reuters claims "you can just cut and paste a line of code and get good results."
    Additional details are available in this blog post by software developer Troy Hunt—and the outlook is pretty grim. Hunt describes the bug's potential as "almost limitless" and "readily automatable." He also worries that Shellshock could be exploited by a worm that propagates quickly, before affected systems can be patched.

    "About 25 years' worth of Bash versions" are affected, Hunt says, and the vulnerability extends beyond traditional computers. Even Internet of Things devices may be exploitable, since many run "embedded Linux distributions with Bash." Machines running Windows-based operating systems seem to be safe, at least.
    A maior parte dos utilizadores comuns não usam sistemas baseados em Unix, mas existem muitas grandes empresas e estados que usam e que ficam expostas.
    Ryzen R5 3700X / Noctua NH-D15 / B550 AORUS ELITE V2 / Cooler Master H500 Mesh / 16Gb DDR4 @ 3800mhz CL16 / Gigabyte RTX 2070 Super / Seasonic Focus GX 750W / Sabrent Q Rocket 2 TB / Crucial MX300 500Gb + Samsung 250Evo 500Gb / Edifier R1700BT


  2. #2
    Tech Mestre
    Registo
    Feb 2013
    Posts
    6,568
    Likes (Dados)
    0
    Likes (Recebidos)
    8
    Avaliação
    3 (100%)
    Mentioned
    3 Post(s)
    Tagged
    0 Thread(s)
    O Unix não é muito explorado, porque isto é só um arranhão na superfície do iceberg...

  3. #3
    Tech Membro Avatar de Filipe
    Registo
    Jun 2014
    Local
    127.0.0.1
    Posts
    655
    Likes (Dados)
    0
    Likes (Recebidos)
    0
    Avaliação
    0
    Mentioned
    0 Post(s)
    Tagged
    0 Thread(s)
    List of Public DNS Servers! - Internet Censurada? Tenta alterar o DNS.
    aqui como testares o teu DNS!


 

 

Informação da Thread

Users Browsing this Thread

Estão neste momento 1 users a ver esta thread. (0 membros e 1 visitantes)

Bookmarks

Regras

  • Você Não Poderá criar novos Tópicos
  • Você Não Poderá colocar Respostas
  • Você Não Poderá colocar Anexos
  • Você Não Pode Editar os seus Posts
  •