Overview

Request 251985 accepted

bash function definition bug, CVE-2014-6271, bnc#896776.

changelog:

Wed Sep 24 19:56:47 CEST 2014 - draht@suse.de

- bash-4.1-function_definition.patch: prevent the execution of
commands after a function definition when parsing the environment.
This addresses CVE-2014-6271 [bnc#896776]

Request History
Roman Drahtmueller's avatar

draht created request

bash function definition bug, CVE-2014-6271, bnc#896776.

changelog:

Wed Sep 24 19:56:47 CEST 2014 - draht@suse.de

- bash-4.1-function_definition.patch: prevent the execution of
commands after a function definition when parsing the environment.
This addresses CVE-2014-6271 [bnc#896776]


Wolfgang Rosenauer's avatar

wrosenauer accepted request

thanks

openSUSE Build Service is sponsored by