{"id":39040,"date":"2019-10-31T22:27:31","date_gmt":"2019-10-31T19:27:31","guid":{"rendered":"https:\/\/prohoster.info\/blog\/udalyonno-ekspluatiruemaya-uyazvimost-v-linux-drajvere-dlya-chipov-realtek\/"},"modified":"2019-10-31T22:27:31","modified_gmt":"2019-10-31T19:27:31","slug":"udalyonno-ekspluatiruemaya-uyazvimost-v-linux-drajvere-dlya-chipov-realtek","status":"publish","type":"post","link":"https:\/\/prohoster.info\/it\/blog\/news\/udalyonno-ekspluatiruemaya-uyazvimost-v-linux-drajvere-dlya-chipov-realtek","title":{"rendered":"Vulnerabilit\u00e0 sfruttabile da remoto nel driver Linux per chip Realtek","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Nel driver dell'kernel di Linux inclusa <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/torvalds\/linux\/tree\/master\/drivers\/net\/wireless\/realtek\/rtlwifi\">rtlwifi<\/a><\/noindex> per adattatori wireless basati su chip Realtek <noindex><a rel=\"nofollow\" href=\"https:\/\/twitter.com\/nicowaisman\/status\/1184864519316758535\">identificata<\/a><\/noindex> vulnerabilit\u00e0 (<noindex><a rel=\"nofollow\" href=\"https:\/\/security-tracker.debian.org\/tracker\/CVE-2019-17666\">CVE-2019-17666<\/a><\/noindex>), che pu\u00f2 essere potenzialmente sfruttata per eseguire codice nel contesto del kernel inviando pacchetti appositamente formattati.<\/p>\n<p>La vulnerabilit\u00e0 \u00e8 causata da un overflow del buffer nel codice della modalit\u00e0 P2P (Wifi-Direct). Durante l'analisi dei pacchetti <noindex><a rel=\"nofollow\" href=\"https:\/\/hsc.com\/DesktopModules\/DigArticle\/Print.aspx?PortalId=0&#038;ModuleId=1215&#038;Article=221\">NoA<\/a><\/noindex> (Notice of Absence) non verifica la dimensione di uno dei valori, permettendo di scrivere informazioni nel segmento di memoria oltre il buffer e sovrascrivere le strutture del kernel successive al buffer.<\/p>\n<p>L'attacco pu\u00f2 essere effettuato inviando pacchetti appositamente formattati a un sistema con un adattatore di rete attivo basato su chip Realtek con supporto per la tecnologia <noindex><a rel=\"nofollow\" href=\"https:\/\/ru.wikipedia.org\/wiki\/Wi-Fi_Direct\">Wi-Fi Direct<\/a><\/noindex>, che consente a due adattatori wireless di stabilire una connessione diretta senza un punto di accesso. Per sfruttare il problema non \u00e8 necessaria una connessione alla rete wireless dell'attaccante, n\u00e9 alcuna azione da parte dell'utente, basta che l'attaccante si trovi dentro l'area di copertura del segnale wireless. <\/p>\n<p>Il prototipo di exploit attualmente si limita a causare un crash remoto del kernel, ma la vulnerabilit\u00e0 non esclude potenzialmente la possibilit\u00e0 di eseguire codice (questa ipotesi \u00e8 solo teorica, poich\u00e9 non esiste ancora un prototipo di exploit per eseguire codice, ma il ricercatore che ha rilevato il problema \u00e8 gi\u00e0 <noindex><a rel=\"nofollow\" href=\"https:\/\/arstechnica.com\/information-technology\/2019\/10\/unpatched-linux-flaw-may-let-attackers-crash-or-compromise-nearby-devices\/\">sulla tecnologia Dac. Il sistema monitora lo stato dell'hardware tramite sensori installati nella sala macchine. Essi analizzano le frequenze ultrasoniche e le vibrazioni del pavimento.<\/a><\/noindex> alla sua creazione).<\/p>\n<p>Il problema si manifesta a partire dal kernel <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=38331\">3.12<\/a><\/noindex> (secondo altre fonti, il problema si manifesta a partire dal kernel <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=37315\">3.10<\/a><\/noindex>), rilasciato nel 2013. La correzione \u00e8 attualmente disponibile solo come <noindex><a rel=\"nofollow\" href=\"https:\/\/lkml.org\/lkml\/2019\/10\/16\/1226\">patch<\/a><\/noindex>. Nelle distribuzioni, il problema rimane irrisolto.<br \/>\nPuoi seguire l'eliminazione delle vulnerabilit\u00e0 nelle distribuzioni su queste pagine: <noindex><a rel=\"nofollow\" href=\"https:\/\/security-tracker.debian.org\/tracker\/CVE-2019-17666\">Debian<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/www.suse.com\/security\/cve\/CVE-2019-17666\/\">SUSE\/openSUSE<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/bugzilla.redhat.com\/show_bug.cgi?id=CVE-2019-17666\">RHEL<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/people.canonical.com\/~ubuntu-security\/cve\/2019\/CVE-2019-17666.html\">Ubuntu<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/security.archlinux.org\/CVE-2019-17666\">Arch Linux<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"https:\/\/bodhi.fedoraproject.org\/updates\/?releases=F30&#038;type=security\">Fedora<\/a><\/noindex>. \u00c8 probabile che la vulnerabilit\u00e0 riguardi anche <noindex><a rel=\"nofollow\" href=\"https:\/\/android.googlesource.com\/kernel\/tegra\/+\/refs\/tags\/android-8.1.0_r0.135\/drivers\/net\/wireless\/rtlwifi\/ps.c#750\">i processori AMD, per i quali non si manifesta il vettore di attacco principale. I metodi di mitigazione gi\u00e0 implementati contro le vulnerabilit\u00e0 Spectre e Meltdown non proteggono dall'attacco SWAPGS utilizzando processori Intel, ma sono gi\u00e0 state proposte delle patch per Linux, ChromeOS, Android e Windows.<\/a><\/noindex> e la piattaforma Android.<\/p>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Fonte: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=51700\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0412\u043e \u0432\u0445\u043e\u0434\u044f\u0449\u0435\u043c \u0432 \u0441\u043e\u0441\u0442\u0430\u0432 \u044f\u0434\u0440\u0430 Linux \u0434\u0440\u0430\u0439\u0432\u0435\u0440\u0435 rtlwifi \u0434\u043b\u044f \u0431\u0435\u0441\u043f\u0440\u043e\u0432\u043e\u0434\u043d\u044b\u0445 \u0430\u0434\u0430\u043f\u0442\u0435\u0440\u043e\u0432 \u043d\u0430 \u0447\u0438\u043f\u0430\u0445 Realtek \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2019-17666), \u043a\u043e\u0442\u043e\u0440\u0430\u044f \u043f\u043e\u0442\u0435\u043d\u0446\u0438\u0430\u043b\u044c\u043d\u043e \u043c\u043e\u0436\u0435\u0442 \u0431\u044b\u0442\u044c \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0438\u0440\u043e\u0432\u0430\u043d\u0430 \u0434\u043b\u044f \u043e\u0440\u0433\u0430\u043d\u0438\u0437\u0430\u0446\u0438\u0438 \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u044f \u043a\u043e\u0434\u0430 \u0432 \u043a\u043e\u043d\u0442\u0435\u043a\u0441\u0442\u0435 \u044f\u0434\u0440\u0430 \u043f\u0440\u0438 \u043e\u0442\u043f\u0440\u0430\u0432\u043a\u0435 \u0441\u043f\u0435\u0446\u0438\u0430\u043b\u044c\u043d\u043e \u043e\u0444\u043e\u0440\u043c\u043b\u0435\u043d\u043d\u044b\u0445 \u043a\u0430\u0434\u0440\u043e\u0432. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432\u044b\u0437\u0432\u0430\u043d\u0430 \u043f\u0435\u0440\u0435\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u0435\u043c \u0431\u0443\u0444\u0435\u0440\u0430 \u0432 \u043a\u043e\u0434\u0435 \u0441 \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u0435\u0439 \u0440\u0435\u0436\u0438\u043c\u0430 P2P (Wifi-Direct). \u041f\u0440\u0438 \u0440\u0430\u0437\u0431\u043e\u0440\u0435 \u043a\u0430\u0434\u0440\u043e\u0432 NoA (Notice of Absence) \u043e\u0442\u0441\u0443\u0442\u0441\u0442\u0432\u0443\u0435\u0442 \u043f\u0440\u043e\u0432\u0435\u0440\u043a\u0430 \u0440\u0430\u0437\u043c\u0435\u0440\u0430 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-39040","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0412\u043e \u0432\u0445\u043e\u0434\u044f\u0449\u0435\u043c \u0432 \u0441\u043e\u0441\u0442\u0430\u0432 \u044f\u0434\u0440\u0430 Linux \u0434\u0440\u0430\u0439\u0432\u0435\u0440\u0435 rtlwifi \u0434\u043b\u044f \u0431\u0435\u0441\u043f\u0440\u043e\u0432\u043e\u0434\u043d\u044b\u0445 \u0430\u0434\u0430\u043f\u0442\u0435\u0440\u043e\u0432 \u043d\u0430 \u0447\u0438\u043f\u0430\u0445.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/it\/blog\/news\/udalyonno-ekspluatiruemaya-uyazvimost-v-linux-drajvere-dlya-chipov-realtek\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"it_IT\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0423\u0434\u0430\u043b\u0451\u043d\u043d\u043e \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0438\u0440\u0443\u0435\u043c\u0430\u044f \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 Linux-\u0434\u0440\u0430\u0439\u0432\u0435\u0440\u0435 \u0434\u043b\u044f \u0447\u0438\u043f\u043e\u0432 Realtek | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0412\u043e \u0432\u0445\u043e\u0434\u044f\u0449\u0435\u043c \u0432 \u0441\u043e\u0441\u0442\u0430\u0432 \u044f\u0434\u0440\u0430 Linux \u0434\u0440\u0430\u0439\u0432\u0435\u0440\u0435 rtlwifi \u0434\u043b\u044f \u0431\u0435\u0441\u043f\u0440\u043e\u0432\u043e\u0434\u043d\u044b\u0445 \u0430\u0434\u0430\u043f\u0442\u0435\u0440\u043e\u0432 \u043d\u0430 \u0447\u0438\u043f\u0430\u0445.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/it\/blog\/news\/udalyonno-ekspluatiruemaya-uyazvimost-v-linux-drajvere-dlya-chipov-realtek\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2019-10-31T19:27:31+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2019-10-31T19:27:31+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47 Vulnerabilit\u00e0 remota in sfruttamento nel driver Linux per chip Realtek | ProHoster","description":"Nel driver dell'kernel di Linux rtlwifi per adattatori wireless basati su chip.","canonical_url":"https:\/\/prohoster.info\/it\/blog\/news\/udalyonno-ekspluatiruemaya-uyazvimost-v-linux-drajvere-dlya-chipov-realtek","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"it_IT","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0423\u0434\u0430\u043b\u0451\u043d\u043d\u043e \u044d\u043a\u0441\u043f\u043b\u0443\u0430\u0442\u0438\u0440\u0443\u0435\u043c\u0430\u044f \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 Linux-\u0434\u0440\u0430\u0439\u0432\u0435\u0440\u0435 \u0434\u043b\u044f \u0447\u0438\u043f\u043e\u0432 Realtek | ProHoster","og:description":"\u0412\u043e \u0432\u0445\u043e\u0434\u044f\u0449\u0435\u043c \u0432 \u0441\u043e\u0441\u0442\u0430\u0432 \u044f\u0434\u0440\u0430 Linux \u0434\u0440\u0430\u0439\u0432\u0435\u0440\u0435 rtlwifi \u0434\u043b\u044f \u0431\u0435\u0441\u043f\u0440\u043e\u0432\u043e\u0434\u043d\u044b\u0445 \u0430\u0434\u0430\u043f\u0442\u0435\u0440\u043e\u0432 \u043d\u0430 \u0447\u0438\u043f\u0430\u0445.","og:url":"https:\/\/prohoster.info\/it\/blog\/news\/udalyonno-ekspluatiruemaya-uyazvimost-v-linux-drajvere-dlya-chipov-realtek","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2019-10-31T19:27:31+00:00","article:modified_time":"2019-10-31T19:27:31+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"39040","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":"2026-01-24 00:30:19","breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-03-01 00:58:37","updated":"2026-01-24 00:30:19","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts\/39040","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/comments?post=39040"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts\/39040\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/media?parent=39040"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/categories?post=39040"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/tags?post=39040"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}