ืชืžื•ื ื•ืช Alpine Docker ื ืฉืœื—ื• ืขื ืกื™ืกืžืช ืฉื•ืจืฉ ืจื™ืงื”

ื—ื•ืงืจื™ ืื‘ื˜ื—ื” ืฉืœ ืกื™ืกืงื• ื—ึธืฉื‚ื•ึผืฃ ืžื™ื“ืข ืขืœ ืคื’ื™ืขื•ืช (CVE-2019-5021) ื‘ ืžื›ืœื•ืœื™ื ื”ืคืฆื” ืืœืคื™ื ื™ืช ืขื‘ื•ืจ ืžืขืจื›ืช ื‘ื™ื“ื•ื“ ื”ืžื›ื•ืœื•ืช Docker. ื”ืžื”ื•ืช ืฉืœ ื”ื‘ืขื™ื” ืฉื–ื•ื”ืชื” ื”ื™ื ืฉืกื™ืกืžืช ื‘ืจื™ืจืช ื”ืžื—ื“ืœ ืฉืœ ืžืฉืชืžืฉ ื”ืฉื•ืจืฉ ื”ื•ื’ื“ืจื” ืœืกื™ืกืžื” ืจื™ืงื” ืžื‘ืœื™ ืœื—ืกื•ื ื›ื ื™ืกื” ื™ืฉื™ืจื” ื›-root. ื‘ื•ืื• ื ื–ื›ื•ืจ ืฉ-Alpine ืžืฉืžืฉ ืœื™ืฆื™ืจืช ืชืžื•ื ื•ืช ืจืฉืžื™ื•ืช ืžืคืจื•ื™ืงื˜ Docker (ืงื•ื“ืžื™ื ื‘ื ื™ื™ื” ืจืฉืžื™ืช ื”ืชื‘ืกืกื” ืขืœ ืื•ื‘ื•ื ื˜ื•, ืื‘ืœ ืื– ื”ื™ื• ืžึฐืชื•ึผืจื’ึธื ืขืœ ืืœืคื™ื™ืŸ).

ื”ื‘ืขื™ื” ืงื™ื™ืžืช ืžืื– ื‘ื ื™ื™ืช Alpine Docker 3.3 ื•ื ื’ืจืžื” ืขืœ ื™ื“ื™ ืฉื™ื ื•ื™ ืจื’ืจืกื™ื” ืฉื”ืชื•ื•ืกืฃ ื‘-2015 (ืœืคื ื™ ื’ืจืกื” 3.3, /etc/shadow ื”ืฉืชืžืฉ ื‘ืฉื•ืจื” "root:!::0:::::", ื•ืื—ืจื™ ื”ื•ืฆืื” ืžืฉื™ืžื•ืฉ ืฉืœ ื”ื“ื’ืœ "-d" ื”ืฉื•ืจื” "root:::0:::::" ื”ื—ืœื” ืœื”ืชื•ื•ืกืฃ. ื”ื‘ืขื™ื” ื–ื•ื”ืชื” ื‘ืชื—ื™ืœื” ื• ืชื•ืงืŸ ื‘ื ื•ื‘ืžื‘ืจ 2015, ืื‘ืœ ื‘ื“ืฆืžื‘ืจ ืฉื•ื‘ ื‘ื˜ืขื•ืช ืžึฐืฉืื•ึผื˜ึธื— ื‘ืงื‘ืฆื™ ื”-build ืฉืœ ืขื ืฃ ื”ื ื™ืกื•ื™, ื•ืœืื—ืจ ืžื›ืŸ ื”ื•ืขื‘ืจ ืœ-builds ื™ืฆื™ื‘ื™ื.

ืžื™ื“ืข ื”ืคื’ื™ืขื•ืช ืžืฆื™ื™ืŸ ื›ื™ ื”ื‘ืขื™ื” ืžื•ืคื™ืขื” ื’ื ื‘ืกื ื™ืฃ ื”ืื—ืจื•ืŸ ืฉืœ Alpine Docker 3.9. ืžืคืชื—ื™ ืืœืคื™ื ื™ ื‘ืžืจืฅ ืžึฐืฉืื•ึผื—ืจึธืจ ืชื™ืงื•ืŸ ื•ืคื’ื™ืขื•ืช ืœื ืžื•ืคื™ืข ื”ื—ืœ ื‘-builds 3.9.2, 3.8.4, 3.7.3 ื•-3.6.5, ืืš ื ืฉืืจ ื‘ืขื ืคื™ื ื”ื™ืฉื ื™ื 3.4.x ื•-3.5.x, ืฉื›ื‘ืจ ื”ื•ืคืกืงื•. ื‘ื ื•ืกืฃ, ื”ืžืคืชื—ื™ื ื˜ื•ืขื ื™ื ื›ื™ ื•ืงื˜ื•ืจ ื”ื”ืชืงืคื” ืžื•ื’ื‘ืœ ืžืื•ื“ ื•ื“ื•ืจืฉ ืžื”ืชื•ืงืฃ ื’ื™ืฉื” ืœืื•ืชื” ืชืฉืชื™ืช.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”