bash
Safeguard articles tagged "bash" — guides, analysis, and best practices for software supply chain and application security.
4 articles
Shellshock (CVE-2014-6271): The Bash Vulnerability That Hit CGI Scripts and Embedded Devices
A factual retrospective on Shellshock, the September 2014 Bash vulnerability that allowed remote code execution through crafted environment variables, affecting web servers and countless embedded devices.
A Decade Apart: GNU Bash and InetUtils Both Land on KEV for the Same Root Cause
A 2014 Shellshock-family Bash bug and a fresh telnetd argument injection in InetUtils both reached CISA's KEV catalogue, both driven by untrusted input crossing a privilege boundary.
Shellshock (CVE-2014-6271) Explained: RCE Hiding in Bash Environment Variables
CVE-2014-6271, Shellshock, let attackers run commands by smuggling code into environment variables that Bash parsed as function definitions. Reachable over HTTP, DHCP, and SSH. Here is how.
Shellshock, Five Years On: The Lessons That Stuck
Five years after CVE-2014-6271, Shellshock remains the clearest case study in how one interpreter bug becomes thousands of downstream holes.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.