Ọdịmma dị na ClamAV na-eduga na mkpochapụ koodu dịpụrụ adịpụ yana mpụ faịlụ sistemụ

Cisco ebipụtala mwepụta ọhụrụ nke ngwugwu antivirus efu ClamAV 1.0.1, 0.105.3 na 0.103.8, nke na-ewepụ adịghị ike dị oke egwu (CVE-2023-20032) nke nwere ike iduga mkpochapụ koodu mgbe ị na-enyocha faịlụ nwere onyonyo diski pụrụ iche emebere. Usoro ClamAV HFS+.

A na-akpata adịghị ike ahụ site na enweghị nlele kwesịrị ekwesị nke ihe nchekwa ahụ, nke na-enye gị ohere ide data gị na mpaghara gafere ókèala nchekwa wee hazie mmejuputa koodu na ikike nke usoro ClamAV, dịka ọmụmaatụ, nyocha faịlụ ndị ewepụtara na ya. akwụkwọ ozi na ihe nkesa ozi. Enwere ike nyochaa mbipụta mmelite ngwugwu na nkesa na ibe: Debian, Ubuntu, Gentoo, RHEL, SUSE, Arch, FreeBSD, NetBSD.

Mwepụta ọhụrụ a na-ekwukwa maka adịghị ike ọzọ (CVE-2023-20052) nke nwere ike ịwepụ ọdịnaya site na faịlụ ọ bụla na sava nke usoro na-eme nyocha ahụ nwetara. Ọdịmma ahụ na-eme mgbe ị na-atụgharị faịlụ ndị ahaziri ahazi n'ụdị DMG ma kpatara ya bụ eziokwu na parser, n'oge usoro ntugharị, na-enye ohere ka edochi ihe XML mpụga nke edebere na faịlụ DMG nke pịrị apị.

isi: opennet.ru

Tinye a comment