[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: buffer overflow errors
From: |
Chet Ramey |
Subject: |
Re: buffer overflow errors |
Date: |
Sat, 03 Jan 2015 20:32:07 -0500 |
User-agent: |
Mozilla/5.0 (Macintosh; Intel Mac OS X 10.10; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 |
On 1/3/15 6:50 PM, Smokey Mtn Digital Hams wrote:
> Bash Version: 4.3
> Patch Level: 11
> Release Status: release
>
> Description:
> Log files are showing an increased level of buffer overflows from common
> CLI usage and scripts that previously did not result in excessive overflows
> being passed.
There's a lack of detail here that makes the report not actionable.
> When I use zsh or rollback to a previous version of bash (pre-March 2014)
> it returns to previous level of issues (minimal with occasional overflows).
> The issue with this fix is the obvious, security issue over the summer made
> it dangerous to use an unpatched bash.
Well, there was this little dust-up in September.
--
``The lyf so short, the craft so long to lerne.'' - Chaucer
``Ars longa, vita brevis'' - Hippocrates
Chet Ramey, ITS, CWRU chet@case.edu http://cnswww.cns.cwru.edu/~chet/