ืฉื—ืจื•ืจ ืฉืœ FreeRDP 2.0, ื™ื™ืฉื•ื ื—ื•ืคืฉื™ ืฉืœ ืคืจื•ื˜ื•ืงื•ืœ RDP

ืœืื—ืจ ืฉื‘ืข ืฉื ื™ื ืฉืœ ืคื™ืชื•ื— ื”ืชืงื™ื™ื ืฉื—ืจื•ืจ ื”ืคืจื•ื™ืงื˜ FreeRDP 2.0, ืฉืžืฆื™ืขื” ื”ื˜ืžืขื” ื‘ื—ื™ื ื ืฉืœ ืคืจื•ื˜ื•ืงื•ืœ ื”ื’ื™ืฉื” ืœืฉื•ืœื—ืŸ ื”ืขื‘ื•ื“ื” ื”ืžืจื•ื—ืง RDP (Remote Desktop Protocol), ืฉืคื•ืชื— ืขืœ ื‘ืกื™ืก ืžืคืจื˜ื™ื ืžื™ืงืจื•ืกื•ืคื˜. ื”ืคืจื•ื™ืงื˜ ืžืกืคืง ืกืคืจื™ื” ืœืฉื™ืœื•ื‘ ืชืžื™ื›ืช RDP ื‘ื™ื™ืฉื•ืžื™ ืฆื“ ืฉืœื™ืฉื™ ื•ืœืงื•ื— ืฉื ื™ืชืŸ ืœื”ืฉืชืžืฉ ื‘ื• ื›ื“ื™ ืœื”ืชื—ื‘ืจ ืžืจื—ื•ืง ืœืฉื•ืœื—ืŸ ื”ืขื‘ื•ื“ื” ืฉืœ Windows. ืงื•ื“ ืคืจื•ื™ืงื˜ ืžื•ืคืฅ ืขืœ ื™ื“ื™ ืžื•ืจืฉื” ืชื—ืช Apache 2.0.

ื”ืžื”ื“ื•ืจื” ื”ื™ืฆื™ื‘ื” ื”ืื—ืจื•ื ื” ืฉืœ ื”ืคืจื•ื™ืงื˜ ื”ื™ื™ืชื” ื ื•ืฆืจ ื‘ื™ื ื•ืืจ 2013, ื•ื”ื‘ื“ื™ืงื•ืช ืฉืœ ืกื ื™ืฃ 2.0 ื”ื—ืœื• ื‘-2007. ืขืœ ืžื ืช ืœื ืœืขื›ื‘ ืืช ื”ืคื™ืชื•ื— ื‘ืขืชื™ื“, ื”ืžื”ื“ื•ืจื•ืช ื”ื‘ืื•ืช ื™ืคื•ืชื—ื• ื‘ืžืกื’ืจืช
ืžื•ื“ืœ ืžืชื’ืœื’ืœ, ื”ืžืจืžื– ืขืœ ื”ื™ื•ื•ืฆืจื•ืช ืฉื ืชื™ืช ืฉืœ ืฉื—ืจื•ืจ ืžืฉืžืขื•ืชื™ ืœืื—ืจ ื”ืชื™ื™ืฆื‘ื•ืช ื”ืกื ื™ืฃ ื”ืจืืฉื™ ื•ืคืจืกื•ื ืชืงื•ืคืชื™ ืฉืœ ืขื“ื›ื•ื ื™ื ืžืชืงื™ื ื™ื. ืžื”ื“ื•ืจื•ืช ืขื™ืงืจื™ื•ืช ื™ืชืžื›ื• ืœืžืฉืš ืฉื ืชื™ื™ื - ืฉื ื” ืื—ืช ืœืชื™ืงื•ื ื™ ื‘ืื’ื™ื ื•ืฉื ื” ื ื•ืกืคืช ืœืชื™ืงื•ืŸ ืคื’ื™ืขื•ื™ื•ืช ื‘ืœื‘ื“.

ื”ืขื™ืงืจื™ ืฉื™ื ื•ื™ื™ื:

  • ื ื•ืกืคื” ืืช ื”ื™ื›ื•ืœืช ืœืขื‘ื•ื“ ื›ืคืจื•ืงืกื™ RDP ืœืชื—ื‘ื•ืจื” ืฆื™ื‘ื•ืจื™ืช;
  • ื ื•ืกืคื” ืชืžื™ื›ื” ืขื‘ื•ืจ MS-RA 2 (ืคืจื•ื˜ื•ืงื•ืœ ืกื™ื•ืข ืžืจื—ื•ืง);
  • ืงื•ื“ ื”ืงืฉื•ืจ ืœืชืžื™ื›ื” ื‘ื›ืจื˜ื™ืกื™ื ื—ื›ืžื™ื ืขื•ื‘ื“ ืžื—ื“ืฉ. ื ื•ืกืคื” ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ืฉื—ืกืจื” ื‘ืขื‘ืจ ื•ื—ื™ื–ื•ืง ื ืชื•ื ื™ ืงืœื˜;
  • ื ื•ืกืคื” ืืคืฉืจื•ืช "/cert", ื”ืžืื—ื“ืช ืืช ื”ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ืฉืกื•ืคืงื” ื‘ืขื‘ืจ ืขืœ ื™ื“ื™ ืืคืฉืจื•ื™ื•ืช ื ืคืจื“ื•ืช ืœืขื™ื‘ื•ื“ ืชืขื•ื“ื•ืช (cert-ignore, cert-deny, cert-name, cert-tofu);
  • ื”ื•ืคืกืงื” ืืกืคืงืช ืœืงื•ื— ื”ืžื‘ื•ืกืก ืขืœ DirectFB, ืืฉืจ ื ื•ืชืจ ืœืœื ืชืžื™ื›ื”;
  • ื”ื—ืœืงืช ื’ื•ืคื ื™ื ืžื•ืคืขืœืช ื›ื‘ืจื™ืจืช ืžื—ื“ืœ;
  • ื ื•ืกืคื” ืชืžื™ื›ื” ื‘ืžืขืจื›ืช Flatpack ืฉืœ ื—ื‘ื™ืœื•ืช ืขืฆืžืื™ื•ืช;
  • ืขื‘ื•ืจ ืžืขืจื›ื•ืช ืžื‘ื•ืกืกื•ืช Wayland, ื™ื•ืฉื ืžืฆื‘ ืงื ื” ืžื™ื“ื” ื—ื›ื ื‘ืืžืฆืขื•ืช libcairo;
  • ื”ืฆื™ื’ API ืœืฉื™ื ื•ื™ ืงื ื” ืžื™ื“ื” ืฉืœ ืชืžื•ื ื•ืช ื‘ืขืช ืจื™ื ื“ื•ืจ ืชื•ื›ื ื”;
  • ื”ื˜ืžืขืช ืจื›ื™ื‘ RAIL (Remote Applications Integrated Locally), ื”ืžืืคืฉืจ ื’ื™ืฉื” ืžืจื—ื•ืง ืœื—ืœื•ื ื•ืช ื‘ื•ื“ื“ื™ื ื•ืœืžื—ื•ื•ื ื™ ื”ืชืจืื•ืช, ืขื•ื“ื›ื ื” ืœืžืคืจื˜ 28.0;
  • ื‘ืžื”ืœืš ื”ืคืขื•ืœื”, ืžื•ื‘ื˜ื— ืฉื”ืฉืจืช ืชื•ืžืš ื‘ืฉื™ื“ื•ืจ ื‘ืคื•ืจืžื˜ H.264;
  • ื ื•ืกืคื” ืืคืฉืจื•ืช "mask="" ืœืคืงื•ื“ื•ืช "/gfx" ื•-"/gfx-h264" ";
  • ื˜ืงืกื˜ื™ ื”ืžืงื•ืจ ืขื•ืฆื‘ื• ืžื—ื“ืฉ;
  • ื ื•ืกืคื” ืืคืฉืจื•ืช "/ timeout" ื›ื“ื™ ืœื”ื’ื“ื™ืจ ืืช ื”ื–ืžืŸ ื”ืงืฆื•ื‘ ืœื”ืžืชื ื” ืœืžื ื•ืช TCP ACK;
  • ืคื’ื™ืขื•ื™ื•ืช CVE-2020-11521, CVE-2020-11522, CVE-2020-11523, CVE-2020-11524, CVE-2020-11525, CVE-2020-11526 ืชื•ืงื ื•, ื›ื•ืœืœ ื™ืฉ ื‘ืขื™ื•ืช ื”ืžื•ื‘ื™ืœื•ืช ืœื›ืชื™ื‘ื” ืœืื–ื•ืจ ื–ื™ื›ืจื•ืŸ ืžื—ื•ืฅ ืœืžืื’ืจ ื”ืžื•ืงืฆื” ื‘ืขืช ืขื™ื‘ื•ื“ ื ืชื•ื ื™ื ื”ืžื’ื™ืขื™ื ืžื‘ื—ื•ืฅ. ื‘ื ื•ืกืฃ, 9 ืคืจืฆื•ืช ื ื•ืกืคื•ืช ืœืœื CVE ืชื•ืงื ื•, ื‘ืขื™ืงืจ ื ื’ืจื ืขืœ ื™ื“ื™ ืงืจื™ืื” ืžืื–ื•ืจื™ ื–ื™ื›ืจื•ืŸ ืžื—ื•ืฅ ืœืžืื’ืจ ื”ืžื•ืงืฆื”.

ืฉื—ืจื•ืจ ืฉืœ FreeRDP 2.0, ื™ื™ืฉื•ื ื—ื•ืคืฉื™ ืฉืœ ืคืจื•ื˜ื•ืงื•ืœ RDP

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”