Lalacewar tushen gida a cikin PHP-FPM

PHP-FPM, mai sarrafa tsarin FastCGI wanda aka haɗa a cikin babban rarraba PHP tun daga reshen 5.3, yana da mummunan rauni CVE-2021-21703, wanda ke ba da damar mai amfani mara izini don aiwatar da lamba azaman tushen. Matsalar tana bayyana kanta akan sabobin da ke amfani da PHP-FPM don tsara ƙaddamar da rubutun PHP, yawanci ana amfani da su tare da Nginx. Masu binciken da suka gano matsalar sun iya shirya samfurin aiki na amfani.