Export Compliance Daily is a Warren News publication.

The Department of Homeland Security gave the...

The Department of Homeland Security gave the recently discovered “Shellshock” bug an impact score of 10 out of 10 (http://1.usa.gov/1uNsOsZ) Friday. The U.S. Computer Emergency Readiness Team (US-CERT) said the vulnerability compromises “the common command-line shell used in most Linux/UNIX…

Sign up for a free preview to unlock the rest of this article

Export Compliance Daily combines U.S. export control news, foreign border import regulation and policy developments into a single daily information service that reliably informs its trade professional readers about important current issues affecting their operations.

operating systems and Apple’s Mac OS X,” in a Thursday alert (http://1.usa.gov/Zgw72T). “The flaw could allow an attacker to remotely execute shell commands by attaching malicious code in environment variables used by the operating system.” In a statement, Apple said, “The vast majority of OS X users are not at risk.” Only those who have configured their computers for “advanced UNIX services” are at risk, the company said. “We are working to quickly provide a software update for our advanced UNIX users.” The Heartbleed security flaw was the last major open source software vulnerability to get similar widespread attention (WID April 11 p10).