Achọpụtala adịghị ike na-erigbu na POSIX CPU timemer, cls_route na nf_tables na Linux kernel.

Achọpụtala ọtụtụ adịghị ike na Linux kernel, kpatara site na ịnweta ebe nchekwa enwerelarị yana ikwe ka onye ọrụ mpaghara nwekwuo ohere ha na sistemụ. Maka nsogbu niile a na-atụle, a na-emepụta ụdị ọrụ nke ịkpa ókè, nke a ga-ebipụta otu izu mgbe e bipụtara ozi gbasara adịghị ike. E zigara ndị nrụpụta Linux kernel patches iji dozie nsogbu ahụ.

  • CVE-2022-2588 bụ adịghị ike na mmejuputa cls_route nzacha kpatara njehie n'ihi nke, mgbe ị na-edozi njikwa efu, ewepụghị ihe nzacha ochie na tebụl hash tupu ekpochapụ ebe nchekwa. Ihe ọghọm dị adị kemgbe ewepụtara 2.6.12-rc2. Mwakpo a chọrọ ikike CAP_NET_ADMIN, nke enwere ike nweta site n'inwe ike ịmepụta oghere aha netwọk ma ọ bụ aha njirimara. Dịka nchekwa nchekwa, ị nwere ike gbanyụọ modul cls_route site na ịgbakwunye ahịrị 'wụnye cls_route / bin/eziokwu' na modprobe.conf.
  • CVE-2022-2586 bụ ihe adịghị ike na netfilter subsystem na nf_tables modul, nke na-enye nzacha ngwugwu nftables. A na-akpata nsogbu ahụ n'eziokwu na ihe nft nwere ike ịdebanye aha ndepụta setịpụrụ na tebụl ọzọ, nke na-eduga na ịnweta ebe nchekwa a tọhapụrụ mgbe ehichapụchara tebụl. Ihe ọghọm dị adị kemgbe ewepụtara 3.16-rc1. Mwakpo a chọrọ ikike CAP_NET_ADMIN, nke enwere ike nweta site n'inwe ike ịmepụta oghere aha netwọk ma ọ bụ aha njirimara.
  • CVE-2022-2585 bụ adịghị ike na POSIX CPU timemer kpatara na mgbe a na-akpọ ya site na eri na-adịghị eduga, usoro nhazi oge na-anọgide na ndepụta ahụ, n'agbanyeghị na-ekpochapụ ebe nchekwa ekenyere maka nchekwa. Ihe ọghọm dị adị kemgbe ewepụtara 3.16-rc1.

isi: opennet.ru

Tinye a comment