OVM and CVE-2014-6271/CVE-2014-7169
Currently running Oracle VM Server 3.2.8. OVM 3.2.8 includes bash-3.2-24.el5 which is vulnerable per the diagnostics at https://access.redhat.com/articles/1200223. Is there any timeline for updating bash for OVM or should I just manually install the updated bash for RHEL 5 (bash-3.2-33.el5.1)?