[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[ale] bash critical vulnerability - update NOW!
- Subject: [ale] bash critical vulnerability - update NOW!
- From: jdp at algoloma.com (JD)
- Date: Wed, 24 Sep 2014 14:58:47 -0400
- In-reply-to: <CAAt=rgD+dk5NWHmdEiK1zHpNDspRuK8+mBOXxhEBeAhDqF3VxQ@mail.gmail.com>
- References: <CAEo=5PzyJnEKg0kkk3-uPqffgM7HxQZ9aedxMVfxMQwByRYggg@mail.gmail.com> <CAAt=rgD+dk5NWHmdEiK1zHpNDspRuK8+mBOXxhEBeAhDqF3VxQ@mail.gmail.com>
On 09/24/2014 02:50 PM, James Sumners wrote:
> The moral of this story: don't write CGI scripts in Bash.
+100
Now, I need to check all my quick-n-dirty scripts. ;(
I usually do perl with taint checking (perl -T) - hopefully that is 100%.
egrep says I'm clean! Yippy!