Mmelite maka Java SE, MySQL, VirtualBox na ngwaahịa Oracle ndị ọzọ nwere adịghị ike edozi

Ụlọ ọrụ Oracle bipụtara akwadoro mwepụta mmelite nke ngwaahịa ya (Critical Patch Update), nke ezubere ikpochapụ nsogbu dị oke egwu na adịghị ike. Na January update, ngụkọta nke 397 adịghị ike.

N'okwu Java SE 14.0.1, 11.0.7 na 8u251 kpochapuru Nsogbu nchekwa 15. Enwere ike iji adịghị ike niile eme ihe n'ime ime na-enweghị nkwenye. Ọkwa kachasị njọ bụ 8.3, nke e kenyere nsogbu na ụlọ akwụkwọ (CVE-2020-2803, CVE-2020-2805). Ọdịmma abụọ (na libxslt na JSSE) nwere ọkwa dị njọ nke 8.1 na 7.5.

Na mgbakwunye na okwu ndị dị na Java SE, ekpughere adịghị ike na ngwaahịa Oracle ndị ọzọ, gụnyere:

  • 35 adịghị ike na MySQL nkesa na
    2 adịghị ike na mmejuputa onye ahịa MySQL (C API). Enyere ọkwa kachasị elu nke 9.8 na adịghị ike CVE-2019-5482, nke na-egosi mgbe ejiri nkwado cURL chịkọta ya. Edere nsogbu na mwepụta MySQL Community Server 8.0.20, 5.7.30 na 5.6.49.

  • 19 adịghị ike, nke nsogbu 7 nwere oke ihe egwu (CVSS karịrị 8). Nke a gụnyere idozi adịghị ike ejiri na mbuso agha egosiri na asọmpi ahụ Pwn2Own nke 2020 na ikwe ka, site na ngbanwe dị n'akụkụ nke usoro ndị ọbịa, iji nweta ohere ịnweta usoro nnabata ma mebie koodu na ikike hypervisor. A na-edozi adịghị ike na mmelite VirtualBox 6.1.6, 6.0.20 na 5.2.40.
  • 6 adịghị ike na Solaris. Ọkwa ihe egwu kachasị 8.8 - arụ ọrụ mpaghara nsogbu ahụ na Gburugburu Desktọpụ A Na-ahụkarị, na-enye onye ọrụ na-enweghị ohere iji ohere mgbọrọgwụ mebie koodu. Edokwala okwu na modul kernel na-emejuputa usoro SMB, na Whodo, yana na iwu svcbundle SMF. Edere nsogbu na mmelite ụnyaahụ Solaris 11.4 SRU 20.

isi: opennet.ru

Tinye a comment