FreeBSD na-edozi adịghị ike 6

Na FreeBSD kpochapuru adịghị ike isii na-enye gị ohere ịme mwakpo DoS, hapụ ụlọ mkpọrọ, ma ọ bụ nweta data kernel. Edoziri nsogbu ndị ahụ na mmelite 12.1-RELEASE-p3 na 11.3-RELEASE-p7.

  • CVE-2020-7452 - n'ihi njehie na mmejuputa epair mebere netwọk interfaces, onye ọrụ nwere PRIV_NET_IFCREATE ma ọ bụ ikike mgbọrọgwụ sitere na ụlọ mkpọrọ dịpụrụ adịpụ nwere ike ime ka kernel daa ma ọ bụ jiri ikike kernel mebie koodu ha.
  • CVE-2020-7453 - Enweghị nlele maka nkwụsị eriri na njirimara efu mgbe ị na-ahazi nhọrọ "osrelease" site na oku usoro jail_set, na-enye gị ohere ịnweta ọdịnaya nke ebe nchekwa kernel dị n'akụkụ mgbe onye nlekọta ụlọ mkpọrọ na-akpọ jail_get oku, ma ọ bụrụ na nkwado maka ịmalite ụlọ mkpọrọ. A na-akwado gburugburu ebe obibi site na ụmụaka.max paramita (Na ndabara, amachibidoro imepụta gburugburu ụlọ nga akwụrụ).
  • CVE-2019-15877 - ịlele ikike na-ezighi ezi mgbe ị na-abanye onye ọkwọ ụgbọ ala ixl site na ioctl na-enye onye ọrụ na-enweghị ohere ịwụnye mmelite firmware maka ngwaọrụ NVM.
  • CVE-2019-15876 - ịlele ikike na-ezighi ezi mgbe ị na-abanye onye ọkwọ ụgbọ ala oce site na ioctl na-enye onye ọrụ na-enweghị ohere izipu iwu na ngwa ngwa nke Emulex OneConnect netwọk nkwụnye.
  • CVE-2020-7451 - site na izipu akụkụ TCP SYN-ACK emebere n'ụzọ ụfọdụ n'elu IPv6, enwere ike ịgbapụta otu byte nke ebe nchekwa kernel na netwọkụ (a naghị ebido ngalaba Traffic Class ma nwee data fọdụrụnụ).
  • Mmejọ atọ na oge ntpd mmekọrịta daemon nwere ike iji mee ka agọnahụ ọrụ (na-eme ka usoro ntpd daa).

isi: opennet.ru

Tinye a comment