Samba 4.10.8 thiab 4.9.13 hloov tshiab nrog qhov tsis zoo kho

Npaj Kev kho qhov tso tawm ntawm Samba pob 4.10.8 thiab 4.9.13, uas tshem tawm yooj yim (CVE-2019-10197), tso cai rau tus neeg siv nkag mus rau hauv paus directory qhov twg Samba network muab faib nyob. Qhov teeb meem tshwm sim thaum 'kev sib txuas dav dav = yog' kev xaiv tau teev nyob rau hauv cov chaw ua ke nrog 'unix extensions = tsis muaj' lossis 'tso cai tsis ruaj ntseg txuas = yog'. Kev nkag mus rau cov ntaub ntawv sab nraud qhov kev faib faib tam sim no raug txwv los ntawm tus neeg siv txoj cai nkag, i.e. tus neeg tawm tsam tuaj yeem nyeem thiab sau cov ntaub ntawv raws li lawv cov uid / gid.

Qhov teeb meem yog tshwm sim los ntawm qhov tseeb tias tom qab thawj qhov kev thov rau lub hauv paus ntawm kev faib faib, kev nkag mus yuam kev raug xa rov qab mus rau tus neeg siv khoom, tab sis smbd caches cov npe nkag thiab tsis tshem cov cache thaum muaj teeb meem nkag. Raws li, tom qab xa ib daim ntawv thov SMB rov qab, nws tau ua tiav raws li kev nkag mus hauv cache yam tsis muaj kev tso cai rov qab xyuas dua.

Tau qhov twg los: opennet.ru

Ntxiv ib saib