Page 1 of 1

GHOST, a critical Linux security hole, is revealed

Posted: Thu Jan 29, 2015 12:08 am
by mklym
Summary:
This security hole, which impacts many older versions of Linux and some current ones, should be patched as soon as possible.

http://www.zdnet.com/article/critical-l ... TRE17cfd61

Thanks to ajkula66 for the original post about this security hole.

Re: GHOST, a critical Linux security hole, is revealed

Posted: Thu Jan 29, 2015 3:16 am
by UNCNDL1
Morgan, thank you for this information.
I like the ending words of the article you linked: "My advice to you is to now, not later today, now, update your Linux system as soon as possible. After patching it, you should then reboot the system. I know for Linux it's rarely needed to reboot, but since gethostbyname is called on by so many core processes, such as auditd, dbus-daem, dhclient, init, master, mysqld, rsyslogd, sshd, udevd, and xinetd, you want to make absolutely sure that all your system's running programs are using the patched code."
Yes, we survived the storm. NJ & NY not as much as expected, home in RI much more. Judy cleared most of the mess yesterday, Saturday it will be my turn to finish up. :doh:

Re: GHOST, a critical Linux security hole, is revealed

Posted: Thu Jan 29, 2015 6:59 am
by kode-niner
I've been patching servers all week over this. Some older ones are impossible to upgrade and are being retired.