ืขื“ื›ื•ืŸ OpenVPN 2.5.2 ื•-2.4.11 ืขื ืชื™ืงื•ืŸ ืคื’ื™ืขื•ืช

ื”ื•ื›ื ื• ืžื”ื“ื•ืจื•ืช ืžืชืงื ื•ืช ืฉืœ OpenVPN 2.5.2 ื•-2.4.11, ื—ื‘ื™ืœื” ืœื™ืฆื™ืจืช ืจืฉืชื•ืช ื•ื™ืจื˜ื•ืืœื™ื•ืช ืคืจื˜ื™ื•ืช ื”ืžืืคืฉืจืช ืœืš ืœืืจื’ืŸ ื—ื™ื‘ื•ืจ ืžื•ืฆืคืŸ ื‘ื™ืŸ ืฉื ื™ ืžื›ื•ื ื•ืช ืœืงื•ื— ืื• ืœืกืคืง ืฉืจืช VPN ืžืจื›ื–ื™ ืœืคืขื•ืœื” ื‘ื•-ื–ืžื ื™ืช ืฉืœ ืžืกืคืจ ืœืงื•ื—ื•ืช. ืงื•ื“ OpenVPN ืžื•ืคืฅ ืชื—ืช ืจื™ืฉื™ื•ืŸ GPLv2, ื—ื‘ื™ืœื•ืช ื‘ื™ื ืืจื™ื•ืช ืžื•ื›ื ื•ืช ื ื•ืฆืจื•ืช ืขื‘ื•ืจ Debian, Ubuntu, CentOS, RHEL ื•-Windows.

ื”ืžื”ื“ื•ืจื•ืช ื”ื—ื“ืฉื•ืช ืžืชืงื ื•ืช ืคื’ื™ืขื•ืช (CVE-2020-15078) ื”ืžืืคืฉืจืช ืœืชื•ืงืฃ ืžืจื•ื—ืง ืœืขืงื•ืฃ ื”ื’ื‘ืœื•ืช ืื™ืžื•ืช ื•ื’ื™ืฉื” ื›ื“ื™ ืœื”ื“ืœื™ืฃ ื”ื’ื“ืจื•ืช VPN. ื”ื‘ืขื™ื” ืžื•ืคื™ืขื” ืจืง ื‘ืฉืจืชื™ื ืฉืžื•ื’ื“ืจื™ื ืœื”ืฉืชืžืฉ ื‘-deferred_auth. ื‘ื ืกื™ื‘ื•ืช ืžืกื•ื™ืžื•ืช, ืชื•ืงืฃ ื™ื›ื•ืœ ืœืืœืฅ ืืช ื”ืฉืจืช ืœื”ื—ื–ื™ืจ ื”ื•ื“ืขืช PUSH_REPLY ืขื ื ืชื•ื ื™ื ืขืœ ื”ื’ื“ืจื•ืช ื”-VPN ืœืคื ื™ ืฉืœื™ื—ืช ื”ื•ื“ืขืช AUTH_FAILED. ื‘ืฉื™ืœื•ื‘ ืขื ื”ืฉื™ืžื•ืฉ ื‘ืคืจืžื˜ืจ --auth-gen-token ืื• ื”ืฉื™ืžื•ืฉ ืฉืœ ื”ืžืฉืชืžืฉ ื‘ืกื›ื™ืžืช ืื™ืžื•ืช ืžื‘ื•ืกืกืช ืืกื™ืžื•ืŸ ืžืฉืœื•, ื”ืคื’ื™ืขื•ืช ืขืœื•ืœื” ืœื’ืจื•ื ืœืžื™ืฉื”ื• ืœืงื‘ืœ ื’ื™ืฉื” ืœ-VPN ื‘ืืžืฆืขื•ืช ื—ืฉื‘ื•ืŸ ืฉืื™ื ื• ืขื•ื‘ื“.

ื‘ื™ืŸ ื”ืฉื™ื ื•ื™ื™ื ืฉืื™ื ื ื‘ื™ื˜ื—ื•ื ื™ื™ื, ื™ืฉื ื” ื”ืจื—ื‘ื” ืฉืœ ื”ืฆื’ืช ื”ืžื™ื“ืข ืขืœ ืฆืคื ื™ ื”-TLS ื”ืžื•ืกื›ืžื™ื ืœืฉื™ืžื•ืฉ ื”ืœืงื•ื— ื•ื”ืฉืจืช. ื›ื•ืœืœ ืžื™ื“ืข ื ื›ื•ืŸ ืœื’ื‘ื™ ืชืžื™ื›ื” ื‘ืชืขื•ื“ื•ืช TLS 1.3 ื•-EC. ื‘ื ื•ืกืฃ, ื”ื™ืขื“ืจ ืงื•ื‘ืฅ CRL ืขื ืจืฉื™ืžืช ื‘ื™ื˜ื•ืœื™ ืื™ืฉื•ืจื™ื ื‘ืžื”ืœืš ื”ื”ืคืขืœื” ืฉืœ OpenVPN ืžื˜ื•ืคืœ ื›ืขืช ื›ืฉื’ื™ืื” ื”ืžื•ื‘ื™ืœื” ืœืกื™ื•ื.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”