Vulnerability hauv NTFS-3G tsav tsheb, muaj peev xwm tso cai rau kev ua tiav nrog cov cai hauv paus

Hauv ntfs-3g kev siv hluav taws xob los ntawm NTFS-3G suite, uas muaj cov neeg siv qhov chaw siv ntawm NTFS cov ntaub ntawv kaw lus, qhov tsis zoo CVE-2022-40284 tau raug txheeb xyuas, muaj peev xwm tso cai rau kev ua tiav nrog cov cai hauv paus hauv lub cev thaum mounting ib tug tshwj xeeb tsim muab faib. Qhov tsis zoo yog daws tau hauv NTFS-3G tso tawm 2022.10.3.

Qhov tsis zoo yog tshwm sim los ntawm qhov yuam kev hauv cov cai rau kev txheeb xyuas cov metadata hauv NTFS partitions, uas ua rau muaj qhov tsis txaus thaum ua cov duab nrog NTFS cov ntaub ntawv tsim los ntawm qee txoj kev. Qhov kev tawm tsam tuaj yeem ua tiav thaum tus neeg siv tau teeb tsa cov duab lossis tsav npaj los ntawm tus neeg tawm tsam, lossis thaum txuas USB Flash nrog qhov tshwj xeeb tsim muab faib rau lub khoos phis tawj (yog tias lub kaw lus tau teeb tsa kom tau txais NTFS partitions siv NTFS-3G). Kev ua hauj lwm siv rau qhov tsis zoo no tseem tsis tau pom dua.

Tau qhov twg los: opennet.ru

Ntxiv ib saib