[Announcement] Shellshock - Bash Exploit

2014-09-26 12:15:00

Dear customers,


A critical vulnerability has been discovered within the Bash component of most Linux and Unix systems. This has been classed by OneProvider as severity one due to the fact that it allows the system to be exploited remotely.


At this point a full patch is not available for all systems however CentOS 5, Debian 6 and Ubuntu 13 based systems had a patch released yesterday. In order to patch your environment you should follow the appropriate steps below:


If you are running CentOS Version 5 and above please follow these steps to update your system:


1.         Log in to server via SSH.
2.         Ensure you are logged in as a user who has ‘root’ privileges.
3.         Run the command “yum update -y” on the command line.
4.         Reboot the OS at the earliest opportunity.


 


If you are running Debian 6 and above, or Ubuntu 13 and above:


1.         Log into your server via SSH.
2.         Ensure you are logged in as a user who has ‘root’ privileges.
3.         Run the command “apt-get update && apt-get upgrade -y”.
4.         Reboot the OS at the earliest opportunity.


 


This will patch your system to the latest release of bash and as far as we have been led to believe it should negate the vulnerability. 


If you have any issues patching your system then please raise a ticket via your control panel and we will work with you to address this.


Please be aware that at this point there have been no fixes released for legacy systems (Centos 4 or earlier, Debian 5 or earlier or Ubuntu 12 or earlier) nor has there been a patch for Redhat. Customers with these operating systems are recommended to monitor the appropriate vendor websites for updates. 

Back to Panel