Oval Definition:oval:org.mitre.oval:def:26797
Revision Date:2014-11-10Version:5
Title:SUSE-SU-2014:1213-1 -- Security update for bash
Description:ash has been updated to fix a critical security issue.In some circumstances, the shell would evaluate shellcode in environmentvariables passed at startup time. This allowed code execution by local orremote attackers who could pass environment variables to bash scripts.(CVE-2014-6271)Security Issues: * CVE-2014-6271
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2014-0475
CVE-2014-6271
SUSE-SU-2014:1213-1
Platform(s):SUSE Linux Enterprise Desktop 11
SUSE Linux Enterprise Server 10
SUSE Linux Enterprise Server 11
Product(s):bash
Definition Synopsis
  • SUSE Linux Enterprise Server 11 and SUSE Linux Enterprise Desktop 11 release section
  • Operation system section
  • SUSE Linux Enterprise Server 11.x is installed
  • OR SUSE Linux Enterprise Desktop 11.x is installed
  • AND Packages match section
  • bash RPM is earlier than 0:3.2-147.20.1
  • OR bash-doc RPM is earlier than 0:3.2-147.20.1
  • OR libreadline5 RPM is earlier than 0:5.2-147.20.1
  • OR readline-doc RPM is earlier than 0:5.2-147.20.1
  • OR libreadline5-32bit RPM is earlier than 0:5.2-147.20.1
  • SUSE Linux Enterprise Server 11 release section
  • SUSE Linux Enterprise Server 11.x is installed
  • AND Packages match section
  • bash RPM is earlier than 0:3.2-147.14.20.1
  • OR bash-doc RPM is earlier than 0:3.2-147.14.20.1
  • OR libreadline5 RPM is earlier than 0:5.2-147.14.20.1
  • OR readline-doc RPM is earlier than 0:5.2-147.14.20.1
  • OR libreadline5-32bit RPM is earlier than 0:5.2-147.14.20.1
  • SUSE Linux Enterprise Server 10 release section
  • SUSE Linux Enterprise Server 10 is installed
  • AND Packages match section
  • bash RPM is earlier than 0:3.1-24.32.1
  • OR readline RPM is earlier than 0:5.1-24.32.1
  • OR readline-devel RPM is earlier than 0:5.1-24.32.1
  • OR readline-32bit RPM is earlier than 0:5.1-24.32.1
  • OR readline-devel-32bit RPM is earlier than 0:5.1-24.32.1
  • BACK