CVE-2014-6277 and CVE-2014-6278
So any news on fixes for CVE-2014-6277 and CVE-2014-6278?
Oracle are not returning my calls on this.
Bizarrely, the bash -c foo test passed for Solaris 11 but not for Solaris 10.
I would have assumed that bash for both OS's were based on the same source, but maybe not? Any news on 6277/8?
Management are now mooting pkgrm SUNWbash from all our Sol 10 boxes. I would like to avoid this if possible but Oracle support are not being very helpful.
Thanks.