Nsogbu dị na imelite ya na Windows egbochiri nbudata ahụ Linux mgbe ị na-eji UEFI Secure Boot

Na mmelite sistemụ arụmọrụ nke Microsoft wepụtara na Tuesday, Windows Achọpụtala nsogbu nke na-eme ka nbudata ahụ ghara ịrụ ọrụ nke ọma. Linux- sistemụ arụnyere na otu kọmputa ahụ n'otu oge ahụ WindowsNsogbu a bụ ihe kpatara ya site na ihe mgbochi nke lekwasịrị anya na adịghị ike ochie (CVE-2022-2601) na GRUB bootloader, nke edoziri na 2022. Microsoft ewepụtabeghị nkwupụta gbasara nsogbu ahụ ma ọ bụ kwuo okwu banyere ya.

Ihe ndetu mgbanwe ahụ kwuru na a ga-etinye ndozi iji mee ka amụma SBAT ọhụrụ (UEFI Secure Boot Advanced Targeting) rụọ ọrụ na sistemụ ndị na-agba naanị Windows ọ gaghị emetụta nhazi buut abụọ (mgbanwe ahụ gbochiri ikike iji onyonyo buut na GRUB ochie iji zere Boot Nchekwa na sistemụ ndị nwere naanị Windows) A chọpụtakwara na mgbanwe ahụ nwere ike ibute nsogbu na ibugharị onyonyo ISO nke sistemụ ochie ebugara na ụdị GRUB na-adịghị ike. N'ezie, ndị na-eji sistemụ dual-boot na-eji nkesa ọhụrụ akọpụtawokwa nsogbu. Linux, dika Ubuntu 24.04 na Debian 12.6, ebe a na-edozi adịghị ike dị na GRUB ogologo oge.

Nsogbu a na-apụta ìhè mgbe usoro buut kwụsịrị na ozi "Ịnwale data SBAT onwe onye na-enyocha ada ada: Mmebi Iwu Nchekwa. Ihe agaala nke ọma: SBAT onwe-nyocha ada ada: Mmebi Iwu Nchekwa." Dịka ụzọ mgbake, a na-atụ aro ka ihichapụ data SBAT arụnyere na UEFI. Iji mee nke a, ị nwere ike gbanyụọ Secure Boot na firmware wee budata nke ọhụrụ. Linux- nkesa nwere nkwado UEFI Secure Boot, dịka ọmụmaatụ, Ubuntu, gbaa iwu ahụ “mokutil --set-sbat-policy delete” na njikwa ahụ, wee malitegharịa ya Linux- nkesa maka itinye iwu SBAT ziri ezi. Mgbe nke ahụ gasịrị, ị nwere ike weghachite ọnọdụ Secure Boot na firmware.

Ejiri Red Hat mebere usoro SBAT yana Microsoft iji gbochie adịghị ike na GRUB bootloader na oyi akwa shim na-ewepụghị mbinye aka dijitalụ. SBAT gụnyere ịgbakwunye metadata ọzọ na mpaghara UEFI executables, nke gụnyere ndị nrụpụta, ngwaahịa, akụrụngwa na ozi ụdị. Ejiri akara mbinye aka dijitalụ nweta metadata akọwapụtara ma enwere ike itinye ya iche na ndepụta nke ihe ekwenyere ma ọ bụ ihe amachibidoro maka UEFI Secure Boot. SBAT na-enye gị ohere igbochi ojiji nke mbinye aka dijitalụ maka nọmba ụdị akụrụngwa n'otu n'otu na-enweghị ịwepụ igodo maka Boot Secure.

Mgbochi adịghị ike site na SBAT anaghị achọ iji ndepụta mwepu akwụkwọ UEFI (dbx), mana a na-eme ya n'ogo nke dochie igodo ime iji mepụta mbinye aka na melite GRUB2, shim na arịa akpụkpọ ụkwụ ndị ọzọ nke nkesa wetara. Tupu iwebata SBAT, imelite ndepụta mwepu akwụkwọ (dbx, UEFI Ntughari Ndepụta) bụ ihe achọrọ maka igbochi adịghị ike kpamkpam, ebe ọ bụ na onye na-awakpo, n'agbanyeghị sistemụ arụmọrụ ejiri, nwere ike iji mgbasa ozi bootable nwere ụdị GRUB2 ochie adịghị ike, kwadoro site na mbinye aka dijitalụ, iji mebie UEFI Secure Boot .

isi: opennet.ru

Zụta nnabata ntụkwasị obi maka saịtị nwere nchekwa DDoS, sava VPS VDS 🔥 Zụta ebe nrụọrụ weebụ a pụrụ ịtụkwasị obi na nchekwa DDoS, sava VPS VDS | ProHoster