# Which patch fix the  Bash  Vulnerability for Suse  11&#65311;

**URL:** <https://forums.suse.com/t/which-patch-fix-the-bash-vulnerability-for-suse-11-65311/26201>\
**Category:** SLES Updates\
**Created:** [October 10, 2014, 9:42am UTC](https://forums.suse.com/t/which-patch-fix-the-bash-vulnerability-for-suse-11-65311/26201 "2014-10-10T09:42:57Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![A\_MAO](https://avatars.discourse-cdn.com/v4/letter/a/839c29/32.png) [@A\_MAO](https://forums.suse.com/u/A_MAO)\
**Post date:** [October 10, 2014, 9:42am UTC](https://forums.suse.com/t/which-patch-fix-the-bash-vulnerability-for-suse-11-65311/26201/1 "2014-10-10T09:42:57Z")

</div>

I run my machine with SUSE 11 (without any SP), and my system is affected by the GNU Bash Remote Code Execution Vulnerability (CVE-2014-6271 and CVE-2014-7169)。 I have find the download link for the patch to fix the issue as follow :

[https://download.suse.com/Download?buildid=nNXClbWqawg~](https://download.suse.com/Download?buildid=nNXClbWqawg~)

then the question is which patch should I download for my os version ?

the ssbash11GA-64.tar or ssbash11SP1-64.tar ,or the other else?

my OS version and the architecture of my machine is :

# cat /etc/issue

Welcome to SUSE Linux Enterprise Server 11 (x86\_64) - Kernel \r (\l).

# uname -a

Linux GDGZ-PA-DUAP3-DB1-ODC 2.6.27.19-5-default #1 SMP 2009-02-28 04:40:21 +0100 x86\_64 x86\_64 x86\_64 GNU/Linux

My Bash version :

# rpm -qa | grep bash

bash-3.2-147.3  
bash-doc-3.2-147.3

---

<div class="post-metadata">

**Author:** ![mikewillis](https://avatars.discourse-cdn.com/v4/letter/m/b2d939/32.png) [@mikewillis](https://forums.suse.com/u/mikewillis)\
**Post date:** [October 10, 2014, 1:05pm UTC](https://forums.suse.com/t/which-patch-fix-the-bash-vulnerability-for-suse-11-65311/26201/2 "2014-10-10T13:05:16Z")

</div>

[QUOTE=A\_MAO;24112]I run my machine with SUSE 11 (without any SP), and my system is affected by the GNU Bash Remote Code Execution Vulnerability (CVE-2014-6271 and CVE-2014-7169)。 I have find the download link for the patch to fix the issue as follow :

[https://download.suse.com/Download?buildid=nNXClbWqawg~](https://download.suse.com/Download?buildid=nNXClbWqawg~)

then the question is which patch should I download for my os version ?

the ssbash11GA-64.tar or ssbash11SP1-64.tar ,or the other else?

my OS version and the architecture of my machine is :

# cat /etc/issue

Welcome to SUSE Linux Enterprise Server 11 (x86\_64) - Kernel \r (\l).

# uname -a

Linux GDGZ-PA-DUAP3-DB1-ODC 2.6.27.19-5-default #1 SMP 2009-02-28 04:40:21 +0100 x86\_64 x86\_64 x86\_64 GNU/Linux

My Bash version :

# rpm -qa | grep bash

bash-3.2-147.3  
bash-doc-3.2-147.3[/QUOTE]

You want ssbash11GA-64.tar. However installing this update on your machine seems a bit like sticking a plaster on a broken leg. You’re running a version of SLES that went End Of Life in December 2010 and it looks like it’s never even had any updates installed. The earliest kernel update for SLES 11 GA listed on Patch Finder is version 2.6.27.21 in April 2009 and you’re running 2.6.27.19. The earliest bash update was version 3.2-147.4 released in July 2009. You’re concerned about shellshock, what about other vulnerabilities it might be affected by given it doesn’t have updates from over five years ago installed?
