Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You have to look for the vulnerable code, not just the version string. Supposedly it has already been patched.


a patch was released for OS X versions below 10.10 only, so I would assume it should be applied to OS X 10.10: http://support.apple.com/kb/HT6495


I would assume that the patch has already been applied to the shipping final version of 10.10.0; installing system packages designed for older OSX releases sounds dangerous.


Just install a newer bash with homebrew ¯\_(ツ)_/¯

That's what I did, before Apple even released a patch for Mavericks.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: