vulnerability
shellshock test
applicationlayer
2014. 10. 1. 15:01
rpm -qa|grep bash
env x='() { :;}; echo vulnerable' bash -c "echo this is a test"
env x='() { (a)=>\' bash -c "echo date"; cat echo ; rm -f echo
bash -c 'true <<EOF <<EOF <<EOF <<EOF <<EOF <<EOF <<EOF <<EOF <<EOF <<EOF <<EOF <<EOF <<EOF <<EOF' || echo "CVE-2014-7186 vulnerable, redir_stack"
(for x in {1..200} ; do echo "for x$x in ; do :"; done; for x in {1..200} ; do echo done ; done) | bash || echo "CVE-2014-7187 vulnerable, word_lineno"
foo='() { echo not patched; }' bash -c foo
case open