Nā mea palupalu ma FreeBSD

Ma FreeBSD hōʻike ʻia he mau mea palupalu i hoʻopaʻa ʻia i nā mea hou 12.1-RELEASE-p8, 11.4-RELEASE-p2 a me 11.3-RELEASE-p12:

  • CVE-2020-7460 - hoʻonui i nā pono ma ka ʻōnaehana ma o
    ka hoʻohana ʻana i kahi kelepona sendmsg 32-bit ma kahi ʻōnaehana 64-bit. ʻAʻole pili ka pilikia i nā ʻōnaehana 32-bit a me nā ʻōnaehana me kahi kernel i kūkulu ʻia me ka ʻole o ke koho COMPAT_FREEBSD32 (hiki i ka paʻamau i nā kernels GENERIC).

  • CVE-2020-7459 - ʻo ka nele o nā mākaʻikaʻi kūpono no ka nui o ka ʻikepili i kope ʻia i ka buffer i nā mea hoʻokele Ethernet smsc (SMSC/Microchip), muge (Microchip) a me cdceem (USB Communication Device Class) hiki i ka mea hoʻouka ke hoʻokō i ke code ma ka pae kernel a i ʻole. wahi mea hoʻohana ma ka hoʻopili ʻana i kahi mea USB ʻino i nā ʻōnaehana ʻōnaehana. No ka hoʻohana ʻana i ka nāwaliwali, pono ʻoe e loaʻa i ke kino i ka lako a me ka hiki ke hoʻāla i ke kikowaena pūnaewele.
  • Pūnaehana nā nāwaliwali i SQLite i hoʻopaʻa ʻia ma SQLite 3.32.1 a me 3.32.2 hoʻokuʻu i hiki ke alakaʻi i ka hāʻule a i ʻole ka palaho ʻikepili:
    CVE-2020-11655,
    CVE-2020-11656,
    CVE-2020-13434,
    CVE-2020-13435,
    CVE-2020-13630,
    CVE-2020-13631,
    CVE-2020-13632.

Source: opennet.ru

Pākuʻi i ka manaʻo hoʻopuka