Patch available for GNU Bourne Again Shell (Bash) ‘Shellshock’ Vulnerability (CVE-2014-6271, CVE-2014-7169)
This patch addresses the bug discovered in the GNU Bourne Again Shell (Bash). A flaw was found that evaluates specially formatted environment variables passed to it from another environment.
Applying the patch
- Enable SSH on the target component.
- Log on to your system using the clisystem account.
Run the following command:
install https://deviceupdates.bmc.com/downloads/FLAM-131-1.0.0.zip- Repeat for each remaining component.
After applying the patch
Re-establish SSH settings for all applicable components, as described in the following topics:
- Enhancing access management (Collector)
- Enhancing access management (Analyzer)
- Adding components to the Console (PAE)
- Controlling remote access to the command-line interface
If a problem occurs
If you encountered problems during the installation of the patch or if you could not access the internet to run the installation, contact BMC Customer Support.
Related topics
Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*