Kev hloov kho tshiab rau Java SE, MySQL, VirtualBox thiab lwm yam khoom siv Oracle nrog qhov tsis zoo

Oracle tuam txhab luam tawm npaj kev tso tawm tshiab rau nws cov khoom (Critical Patch Update), txhawm rau tshem tawm cov teeb meem tseem ceeb thiab qhov tsis zoo. Hauv lub Ib Hlis hloov tshiab, tag nrho ntawm 397 vulnerabilities.

Hauv cov teeb meem Java SE 14.0.1, 11.0.7 thiab 8u251 tshem tawm 15 teeb meem kev ruaj ntseg. Txhua qhov kev tsis txaus ntseeg tuaj yeem raug siv los ntawm kev deb yam tsis muaj kev lees paub. Qib siab tshaj plaws yog 8.3, uas tau muab rau cov teeb meem hauv cov tsev qiv ntawv (CVE-2020-2803, CVE-2020-2805). Ob qhov tsis zoo (hauv libxslt thiab JSSE) muaj qhov hnyav ntawm 8.1 thiab 7.5.

Ntxiv rau cov teeb meem hauv Java SE, qhov tsis zoo tau raug nthuav tawm hauv lwm cov khoom lag luam Oracle, suav nrog:

  • 35 vulnerabilities hauv MySQL server thiab
    2 qhov tsis zoo hauv kev siv MySQL tus neeg siv khoom (C API). Qhov siab tshaj plaws ntawm 9.8 yog muab rau qhov tsis muaj zog CVE-2019-5482, uas tshwm sim thaum suav nrog kev txhawb nqa cURL. Cov teeb meem kho hauv kev tshaj tawm MySQL Community Server 8.0.20, 5.7.30 thiab 5.6.49.

  • 19 vulnerabilities, ntawm 7 qhov teeb meem muaj qhov xwm txheej txaus ntshai (CVSS ntau dua 8). Qhov no suav nrog kev kho qhov tsis zoo uas siv rau hauv kev tawm tsam pom ntawm kev sib tw Lub Ob Hlis 2 thiab tso cai, los ntawm kev tswj hwm ntawm sab ntawm cov qhua system, kom nkag mus rau lub party system thiab ua tiav cov cai nrog hypervisor txoj cai. Vulnerabilities raug kho nyob rau hauv kev hloov tshiab VirtualBox 6.1.6, 6.0.20 thiab 5.2.40.
  • 6 vulnerabilities hauv Solaris. Kev phom sij siab tshaj plaws 8.8 - ua haujlwm hauv zos teeb meem nyob rau hauv Common Desktop Ib puag ncig, tso cai rau tus neeg siv tsis muaj cai los ua cov cai nrog cov cai hauv paus. Cov teeb meem kuj tau raug kho nyob rau hauv lub kernel module siv SMB raws tu qauv, hauv Whodo, thiab hauv svcbundle SMF cov lus txib. Cov teeb meem kho nyob rau hauv nag hmo hloov tshiab Solaris 11.4 TSI 20.

Tau qhov twg los: opennet.ru

Ntxiv ib saib