ืขื“ื›ื•ืŸ Suricata 7.0.3 ื•-6.0.16 ืขื ืคื’ื™ืขื•ื™ื•ืช ืงืจื™ื˜ื™ื•ืช ืฉืชื•ืงื ื•

OISF (Open Information Security Foundation) ืคืจืกืžื” ืžื”ื“ื•ืจื•ืช ืžืชืงื ื•ืช ืฉืœ ืžืขืจื›ืช ื–ื™ื”ื•ื™ ื•ืžื ื™ืขืช ื—ื“ื™ืจืช ืจืฉืช Suricata 7.0.3 ื•-6.0.16, ืืฉืจ ืžื‘ื˜ืœื•ืช ื—ืžืฉ ื ืงื•ื“ื•ืช ืชื•ืจืคื”, ืฉืœื•ืฉ ืžื”ืŸ (CVE-2024-23839, CVE-2024-23836, CVE- 2024-23837) ื”ื•ืงืฆืชื” ืจืžืช ืกื›ื ื” ืงืจื™ื˜ื™ืช. ืชื™ืื•ืจ ื”ืคื’ื™ืขื•ืช ื˜ืจื ื ื—ืฉืฃ, ืขื ื–ืืช, ื”ืจืžื” ื”ืงืจื™ื˜ื™ืช ืžื•ืงืฆื™ืช ื‘ื“ืจืš ื›ืœืœ ื›ืืฉืจ ื ื™ืชืŸ ืœื‘ืฆืข ืžืจื—ื•ืง ืืช ื”ืงื•ื“ ืฉืœ ื”ืชื•ืงืฃ. ืžื•ืžืœืฅ ืœื›ืœ ืžืฉืชืžืฉื™ Suricata ืœืขื“ื›ืŸ ืืช ื”ืžืขืจื›ื•ืช ืฉืœื”ื ื‘ืื•ืคืŸ ืžื™ื™ื“ื™.

ื™ื•ืžืŸ ื”ืฉื™ื ื•ื™ื™ื ืฉืœ Suricata ืื™ื ื• ืžื“ื’ื™ืฉ ื‘ืžืคื•ืจืฉ ืืช ื”ืคื’ื™ืขื•ื™ื•ืช, ืืš ืื—ื“ ื”ืชื™ืงื•ื ื™ื ืžืฆื™ื™ืŸ ื’ื™ืฉื” ืœื–ื™ื›ืจื•ืŸ ืœืื—ืจ ืฉื—ืจื•ืจ ื‘ืขืช ืขื™ื‘ื•ื“ ื›ื•ืชืจื•ืช HTTP ืฉื’ื•ื™ื•ืช. ืื—ืช ืžื”ืคื’ื™ืขื•ื™ื•ืช ื”ืงืจื™ื˜ื™ื•ืช (CVE-2024-23837) ืงื™ื™ืžืช ื‘ืกืคืจื™ื™ืช ื ื™ืชื•ื— ื”ืชืขื‘ื•ืจื” ืฉืœ LibHTP HTTP.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”