CVE-2014-6271 and CVE-2014-7169 on servers running Oracle database
Hi everyone
just wondering if we update the bash on our oracle database server to address the subject vulnerability would / could it cause any issues for the database?
should we shutdown the database before we apply the patch / update the bash to latest RPM?
Also, what is the best method to fix this? should we use "yum update bash" ? command?
The only concern we have is that it does not uninstall / update / install any new RPMs that could impact oracle database
Here are the details of the server
Linux Server release 6.4 (Santiago)
# uname -a
Linux HP-RHEL-ODS1 2.6.32-358.18.1.el6.x86_64 #1 SMP Fri Aug 2 17:04:38 EDT 2013 x86_64 x86_64 x86_64 GNU/Linux