So how to maintain a single YUM repository across the environment ? 1 root root 3211 Feb 28 RPM-GPG-KEY-redhat-release -r--r--r--.

This can be done by setting up yum repositories over http and merging RHEL ISO repositories. uaans-repo UAANS-GLOBAL 4,305 repolist: 4,305 [[email protected] ~]# [[email protected] repo]# yum install createrepo yum-utils Loaded plugins: langpacks, product-id, subscription-manager This system is not registered to Red Hat Subscription Management. Package yum-utils-1.1.31-24.el7.noarch already installed and latest version Resolving Dependencies --[[email protected] ~]# mount /dev/sr1 /mnt mount: /dev/sr1 is write-protected, mounting read-only [[email protected] ~]# cd /mnt [[email protected] mnt]# ls -lrt total 952 -r--r--r--. 1 root root 3375 Feb 28 RPM-GPG-KEY-redhat-beta -r--r--r--.

An attacker could potentially usethis flaw to override or bypass environment restrictions to execute shellcommands.

The GNU Bourne Again shell (Bash) is a shell and command languageinterpreter compatible with the Bourne shell (sh).Installing these updated packages without restarting services will addressthe vulnerability, but functionality may be impacted until affectedservices are restarted.For more information see the Knowledgebase articleat https://access.redhat.com/articles/1200223Note: Docker users are advised to use "yum update" within their containers,and to commit the resulting changes.(CVE-2014-7169)Applications which directly create bash functions as environment variablesneed to be made aware of changes to the way names are handled by thisupdate.Note that certain services, screen sessions, and tmux sessions mayneed to be restarted, and affected interactive users may need to re-login.

