ืขื“ื›ื•ืŸ Flatpak ืœืชื™ืงื•ืŸ ืฉืชื™ ื ืงื•ื“ื•ืช ืชื•ืจืคื”

ื–ืžื™ื ื™ื ืขื“ื›ื•ื ื™ื ืžืชืงื™ื ื™ื ืœืขืจื›ืช ื”ื›ืœื™ื ืฉืœ Flatpak 1.14.4, 1.12.8, 1.10.8 ื•-1.15.4, ื”ืžืชืงื ื™ื ืฉืชื™ ื ืงื•ื“ื•ืช ืชื•ืจืคื”:

  • CVE-2023-28100 - ื™ื›ื•ืœืช ืœื”ืขืชื™ืง ื•ืœื”ื“ื‘ื™ืง ื˜ืงืกื˜ ื‘ืžืื’ืจ ื”ืงืœื˜ ืฉืœ ื”ืžืกื•ืฃ ื”ื•ื•ื™ืจื˜ื•ืืœื™ ื‘ืืžืฆืขื•ืช ืžื ื™ืคื•ืœืฆื™ื” ืฉืœ TIOCLINUX ioctl ื‘ืขืช ื”ืชืงื ืช ื—ื‘ื™ืœืช flatpak ืฉื”ื•ื›ื ื” ืœืชื•ืงืฃ. ืœื“ื•ื’ืžื”, ื ื™ืชืŸ ืœื”ืฉืชืžืฉ ื‘ืคื’ื™ืขื•ืช ื›ื“ื™ ืœืืจื’ืŸ ืืช ื”ื”ืฉืงื” ืฉืœ ืคืงื•ื“ื•ืช ืฉืจื™ืจื•ืชื™ื•ืช ื‘ืžืกื•ืฃ ืœืื—ืจ ื”ืฉืœืžืช ืชื”ืœื™ืš ื”ื”ืชืงื ื” ืฉืœ ื—ื‘ื™ืœืช ืฆื“ ืฉืœื™ืฉื™. ื”ื‘ืขื™ื” ืžื•ืคื™ืขื” ืจืง ื‘ืงื•ื ืกื•ืœื” ื”ื•ื™ืจื˜ื•ืืœื™ืช ื”ืงืœืืกื™ืช (/dev/tty1, /dev/tty2 ื•ื›ื•') ื•ืื™ื ื” ืžืฉืคื™ืขื” ืขืœ ื”ืคืขืœื•ืช ื‘-xterm, gnome-terminal, Konsole ื•ื‘ื˜ืจืžื™ื ืœื™ื ื’ืจืคื™ื™ื ืื—ืจื™ื. ื”ืคื’ื™ืขื•ืช ืื™ื ื” ืกืคืฆื™ืคื™ืช ืœ-flatpak ื•ื ื™ืชืŸ ืœื”ืฉืชืžืฉ ื‘ื” ื›ื“ื™ ืœืชืงื•ืฃ ื™ื™ืฉื•ืžื™ื ืื—ืจื™ื, ืœืžืฉืœ, ืคื’ื™ืขื•ื™ื•ืช ื“ื•ืžื•ืช ื‘ืขื‘ืจ ืฉืืคืฉืจื• ื”ื—ืœืคืช ืชื•ื•ื™ื ื“ืจืš ืžืžืฉืง TIOCSTI ioctl ื ืžืฆืื• ื‘-/bin/sandbox ื•-snap.
  • CVE-2023-28101 - ื™ื›ื•ืœืช ืœื”ืฉืชืžืฉ ื‘ืจืฆืคื™ ื‘ืจื™ื—ื” ื‘ืจืฉื™ืžืช ื”ื”ืจืฉืื•ืช ื‘ืžื˜ื ื ืชื•ื ื™ื ืฉืœ ื”ื—ื‘ื™ืœื” ื›ื“ื™ ืœื”ืกืชื™ืจ ืืช ื”ืžื™ื“ืข ื”ืžื•ืฆื’ ื‘ื˜ืจืžื™ื ืœ ืœื’ื‘ื™ ื”ื”ืจืฉืื•ืช ื”ืžื•ืจื—ื‘ื•ืช ื”ืžื‘ื•ืงืฉื•ืช ื‘ืžื”ืœืš ื”ื”ืชืงื ื” ืื• ื”ืฉื“ืจื•ื’ ืฉืœ ื”ื—ื‘ื™ืœื” ื“ืจืš ืžืžืฉืง ืฉื•ืจืช ื”ืคืงื•ื“ื”. ืชื•ืงืฃ ืขืœื•ืœ ืœื”ืฉืชืžืฉ ื‘ืคื’ื™ืขื•ืช ื–ื• ื›ื“ื™ ืœื”ื˜ืขื•ืช ืžืฉืชืžืฉื™ื ืœื’ื‘ื™ ื”ื”ืจืฉืื•ืช ื”ืžืฉืžืฉื•ืช ื‘ื—ื‘ื™ืœื”. ืžืžืฉืงื™ื ื’ืจืคื™ื™ื ืœื”ืชืงื ืช ื—ื‘ื™ืœื•ืช Flatpak, ื›ื’ื•ืŸ ืชื•ื›ื ืช GNOME ื•-KDE Plasma Discover, ืื™ื ื ืžื•ืฉืคืขื™ื.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”