USN-2362-1: Bash vulnerability
24 September 2014
Bash allowed bypassing environment restrictions in certain environments.
Releases
Packages
- bash - GNU Bourne Again SHell
Details
Stephane Chazelas discovered that Bash incorrectly handled trailing code in
function definitions. An attacker could use this issue to bypass
environment restrictions, such as SSH forced command environments.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 14.04
Ubuntu 12.04
Ubuntu 10.04
In general, a standard system update will make all the necessary changes.