BIND nwelite ihe nkesa DNS 9.11.22, 9.16.6, 9.17.4 na mkpochapụ 5 adịghị ike.

Ebipụtara Mmelite mmezi na ngalaba kwụsiri ike nke sava DNS BIND 9.11.22 na 9.16.6, yana ngalaba nnwale 9.17.4, nke na-emepe emepe. A na-edozi adịghị ike 5 na mwepụta ọhụrụ. Ihe ọghọm kachasị dị ize ndụ (CVE-2020-8620) ọ na-enye ohere Na-ebute ịgọnarị ọrụ site na izipu otu ngwugwu n'ọdụ ụgbọ mmiri TCP na-anabata njikọ BIND. Na-eziga arịrịọ AXFR na-ezighi ezi na ọdụ ụgbọ mmiri TCP, nwere ike ịkpata n'eziokwu na ọbá akwụkwọ libiv na-eje ozi na njikọ TCP ga-ebufe nha na ihe nkesa ahụ, na-eme ka nkwenye nkwenye na-akpalite na usoro ahụ na-agwụ.

Ihe ọghọm ndị ọzọ:

  • CVE-2020-8621 - onye na-awakpo nwere ike ịkpalite nyocha nkwuputa ma mebie onye na-edozi ya mgbe ọ na-agbalị ibelata QNAME ka ọ gbanwechara arịrịọ. Nsogbu a na-egosi naanị na sava nwere ike mbelata QNAME ma na-aga n'ihu na ọnọdụ 'n'ihu'.
  • CVE-2020-8622 - onye na-awakpo ahụ nwere ike ịmalite nyocha nkwuputa na nkwụsị mberede nke usoro ọrụ ahụ ma ọ bụrụ na ihe nkesa DNS nke onye mwakpo ahụ na-eweghachi nzaghachi na-ezighi ezi na mbinye aka TSIG na nzaghachi na arịrịọ sitere na sava DNS nke onye ahụ metụtara.
  • CVE-2020-8623 - onye na-awakpo nwere ike ịkpalite nlele nkwuputa na nkwụsị ihe mberede nke onye njikwa site na izipu arịrịọ mpaghara ahaziri ahazi nke ejiri igodo RSA bịanyere aka na ya. Nsogbu a na-apụta naanị mgbe ejiri nhọrọ “-enable-native-pkcs11” wuo ihe nkesa.
  • CVE-2020-8624 - onye na-awakpo nke nwere ikike ịgbanwe ọdịnaya nke mpaghara ụfọdụ na mpaghara DNS nwere ike nweta ohere ọzọ iji gbanwee ọdịnaya ndị ọzọ nke mpaghara DNS.

isi: opennet.ru

Tinye a comment