Monday, September 29, 2014

And the bash goes on: 4.3.27

Another problem in bash, another bump, now updated to 4.3.27. Since the recommended patch is now officially part of upstream, I updated the link and instructions in the previous post.

9 comments:

  1. Thanks, again. Can I buy you beer, coffee or something? :-)

    ReplyDelete
  2. Does the bash issue only affect those running PPC servers or all PPC desktops as well? Thanking you in advance for your help and guidance!

    ReplyDelete
    Replies
    1. We don't really know. It affects servers potentially worse, but there is the possibility that a poorly coded application calling bash (which it can do) could be used as a means of exploitation even on a client desktop. I think it's safer to do the update, since it's available and you don't have to worry about it.

      Delete
    2. This comment has been removed by the author.

      Delete
  3. Thank you for the update of bash. Are there any possibility to enable TRIM with Mac OS X Tiger on our PowerPC computers? I installed Debian Wheezy on my PowerMac G4 on an SSD via a PCI SATA card and when I boot from my old Mac OS X Tiger I am discouraged : it is too slow

    ReplyDelete
    Replies
    1. Unfortunately, not that I know of. However, I suspect that you're noticing the more lightweight Debian layer than actual TRIM.

      Delete
  4. Here we go again?
    http://www.zdnet.com/apple-issues-os-x-patch-for-shellshock-7000034170/?s_cid=e505&ttag=e505&ftag=TRE0fb9d06

    ReplyDelete
  5. Thanks. I'm wondering if you can provide the config and build info. Although I have no reason not to trust you, just copying a binary leaves me a bit worried. Thx again for your work. I have to manage a very old PPC server for the next couple of months so I can use all the info I can get on shellshock

    ReplyDelete
    Replies
    1. There's no modification to the sourcecode other than to set CFLAGS to "-arch ppc -arch i386 -isysroot /Developer/SDKs/Mac10.4u.sdk" and run configure and make. Otherwise it's built with boring old Xcode 2.5. I'm not sure what else I could provide to make the concern better; it's very easy to build yourself. I just downloaded the 4.3 tarball and applied all the 27(!) patches to it.

      Delete

Due to an increased frequency of spam, comments are now subject to moderation.