News

PubNub Patches Bash Bug ‘Shellshock’ Vulnerability

1 min read Stephen Blum on Sep 29, 2014
Try PubNub Today

Free up to 1MM monthly messages. No credit card required.

Subscribe to our newsletter

By submitting this form, you are agreeing to our Terms and Conditions and Privacy Policy.

PubNub had applied patches to address the Shellshock Bash vulnerability across our entire data stream infrastructure.

You may have heard about the recent “Shellshock” vulnerability, or “Bash” bug. A researcher disclosed it on the oss-sec mailing list yesterday describing the ability to perform remote code execution through bash.

Know that, by midnight PST yesterday, Sept 25, PubNub had applied patches to address the Shellshock Bash vulnerability across our entire data stream infrastructure. PubNub’s “no-downtime” architecture ensured that no PubNub customers were affected by these patch activities to our network.

It’s important to note that no intrusion was detected on any PubNub server.More generally, this vulnerability has made big news because it affects the majority of servers, laptops, and mobile devices around the world. This vulnerability could allow an attacker to perform remote code execution. Given that Bash is in the default install of almost every Unix-based operating system on the planet, this is a pretty big hole. (Similar to the “sysadmin-heart-attack-inducing” Heartbleed vulnerability from earlier this year).

There is some speculation that other Bash vulnerabilities may exist for which patches will be released. If/when other vulnerabilities are found, we will apply patches network-wide across the PubNub Data Stream Network in short order. You can track the status of Bash issues at CVE-2014-6271: remote code execution through bash.

Please don’t hesitate to reach out to our Support Team at support@pubnub.com with any questions or concerns.

More from PubNub

Top Trends to Engage Your App Users
InsightsSep 27, 20224 min read

Top Trends to Engage Your App Users

Take a look at the top trends that are the most effective in attracting customers and reducing churn, and how you can incorporate...

PubNub Staff

PubNub Staff

Comparing Game Engines: Unity vs Unreal vs the Rest
Real-Time Gaming BlogSep 21, 20225 min read

Comparing Game Engines: Unity vs Unreal vs the Rest

Comparing the major game engines: Unity vs Unreal Engine vs Corona SDK vs GameMaker Studio, including the benefits and cons of...

PubNub Staff

PubNub Staff

Python Socket Programming: Client, Server and Peer Libraries
BuildSep 21, 20226 min read

Python Socket Programming: Client, Server and Peer Libraries

Sockets (aka socket programming) enable programs to send and receive data, bi-directionally, at any given moment. This tutorial...

PubNub Staff

PubNub Staff