Kev hloov kho tshiab rau Java SE, MySQL, VirtualBox thiab lwm yam khoom siv Oracle nrog qhov tsis zoo

Oracle tuam txhab luam tawm npaj kev tso tawm tshiab rau nws cov khoom (Critical Patch Update), txhawm rau tshem tawm cov teeb meem tseem ceeb thiab qhov tsis zoo. Hauv lub Ib Hlis hloov tshiab, tag nrho ntawm 334 vulnerabilities.

Hauv cov teeb meem Java SE 13.0.2, 11.0.6 thiab 8u241 tshem tawm 12 teeb meem kev ruaj ntseg. Txhua qhov kev tsis txaus ntseeg tuaj yeem raug siv los ntawm kev deb yam tsis muaj kev lees paub. Qib siab tshaj plaws yog 8.1, uas tau muab rau qhov teeb meem serialization (CVE-2020-2604), uas tso cai rau Java SE daim ntawv thov raug cuam tshuam los ntawm kev sib kis ntawm cov ntaub ntawv tshwj xeeb tsim serialized. Peb qhov tsis zoo muaj qhov hnyav ntawm 7.5. Cov teeb meem no muaj nyob hauv JavaFX thiab yog tshwm sim los ntawm qhov tsis zoo hauv SQLite thiab libxslt.

Ntxiv rau cov teeb meem hauv Java SE, qhov tsis zoo tau raug nthuav tawm hauv lwm cov khoom lag luam Oracle, suav nrog:

  • 12 vulnerabilities hauv MySQL server thiab
    3 qhov tsis zoo hauv kev siv MySQL tus neeg siv khoom (C API). Qhov siab tshaj plaws ntawm 6.5 yog muab rau peb qhov teeb meem hauv MySQL parser thiab optimizer.
    Cov teeb meem kho hauv kev tshaj tawm MySQL Community Server 8.0.19, 5.7.29 thiab 5.6.47.

  • 18 vulnerabilities hauv VirtualBox, ntawm 6 muaj qhov txaus ntshai heev (CVSS Score 8.2 thiab 7.5). Vulnerabilities yuav raug kho nyob rau hauv kev hloov tshiab VirtualBox 6.1.2, 6.0.16 thiab 5.2.36uas xav tau hnub no.
  • 10 vulnerabilities hauv Solaris. Qhov Kev Ua Phem Siab Tshaj Plaws Tshaj Plaws 8.8 yog qhov teeb meem siv tau hauv zos hauv Common Desktop Ib puag ncig. Cov teeb meem uas muaj qhov hnyav siab dua 7 kuj suav nrog qhov tsis zoo hauv cheeb tsam hauv Consolidation Infrastructure thiab cov ntaub ntawv kaw lus. Cov teeb meem kho nyob rau hauv nag hmo hloov tshiab Solaris 11.4 TSI 17.

Tau qhov twg los: opennet.ru

Ntxiv ib saib