There is a nice write up on it and the implications here: http://www.troyhunt.com/2014/09/everything-you-need-to-know-about.html
...Tim From: [email protected] [mailto:[email protected]] On Behalf Of Andrew S. Baker Sent: Thursday, September 25, 2014 8:58 AM To: ntsysadm Subject: Re: [NTSysADM] Major Bash Vulnerability -- ALL versions That as my thought as well... If not, I'll bet they're looking for the same class of vulnerability in every other shell or similarly functioning utility/application. ASB http://XeeMe.com/AndrewBaker<http://xeeme.com/AndrewBaker> Providing Virtual CIO Services (IT Operations & Information Security) for the SMB market... On Thu, Sep 25, 2014 at 11:43 AM, Jonathan Link <[email protected]<mailto:[email protected]>> wrote: I'll bet the NSA knew about it... On Thu, Sep 25, 2014 at 11:31 AM, Ben Scott <[email protected]<mailto:[email protected]>> wrote: On Thu, Sep 25, 2014 at 11:28 AM, Rod Trent <[email protected]<mailto:[email protected]>> wrote: > Most interesting thing to me is that this vuln has been around > for close to 25 years. One wonders how many times it's been discovered before now. One hopes that number is zero. -- Ben

