ืคื’ื™ืขื•ืช ื”ืžืืคืฉืจืช ืœืš ืœืฆืืช ืžื”ืกื‘ื™ื‘ื” ื”ืžื‘ื•ื“ื“ืช QEMU

ื’ื™ืœื” ืคืจื˜ื™ ืคื’ื™ืขื•ืช ืงืจื™ื˜ื™ื™ื (CVE-2019-14378) ื‘ืžื˜ืคืœ SLIRP ื”ืžื•ื’ื“ืจ ื›ื‘ืจื™ืจืช ืžื—ื“ืœ ื”ืžืฉืžืฉ ื‘-QEMU ืœื™ืฆื™ืจืช ืขืจื•ืฅ ืชืงืฉื•ืจืช ื‘ื™ืŸ ืžืชืื ื”ืจืฉืช ื”ื•ื•ื™ืจื˜ื•ืืœื™ืช ื‘ืžืขืจื›ืช ื”ืื•ืจื—ืช ืœื‘ื™ืŸ ื”-backend ืฉืœ ื”ืจืฉืช ื‘ืฆื“ QEMU. ื”ื‘ืขื™ื” ืžืฉืคื™ืขื” ื’ื ืขืœ ืžืขืจื›ื•ืช ื•ื™ืจื˜ื•ืืœื™ื–ืฆื™ื” ืžื‘ื•ืกืกื•ืช KVM (ื‘ ืžืฆื‘ ืžืฉืชืžืฉ) ื•-Virtualbox, ื”ืžืฉืชืžืฉื•ืช ื‘-Sirp Backend ืž-QEMU, ื›ืžื• ื’ื ื™ื™ืฉื•ืžื™ื ื”ืžืฉืชืžืฉื™ื ื‘ืขืจื™ืžืช ื”ืจืฉืช ืฉืœ ืžืจื—ื‘ ื”ืžืฉืชืžืฉ libSLIRP (ืืžื•ืœื˜ื•ืจ TCP/IP).

ื”ืคื’ื™ืขื•ืช ืžืืคืฉืจืช ื‘ื™ืฆื•ืข ืงื•ื“ ื‘ืฆื“ ื”ืžืขืจื›ืช ื”ืžืืจื—ืช ืขื ื–ื›ื•ื™ื•ืช ืฉืœ ืชื”ืœื™ืš ืžื˜ืคืœ QEMU ื›ืืฉืจ ื—ื‘ื™ืœืช ืจืฉืช ื’ื“ื•ืœื” ืžืื•ื“ ืฉืชื•ื›ื ื ื” ื‘ืžื™ื•ื—ื“ ื ืฉืœื—ืช ืžื”ืžืขืจื›ืช ื”ืื•ืจื—ืช, ืžื” ืฉื“ื•ืจืฉ ืคื™ืฆื•ืœ. ืขืงื‘ ืฉื’ื™ืื” ื‘ืคื•ื ืงืฆื™ื” ip_reass() ื”ื ืงืจืืช ื‘ืขืช ื”ืจื›ื‘ื” ืžื—ื“ืฉ ืฉืœ ืžื ื•ืช ื ื›ื ืกื•ืช, ื™ื™ืชื›ืŸ ืฉื”ืคืจื’ืžื ื˜ ื”ืจืืฉื•ืŸ ืœื ื™ืชืื™ื ืœืžืื’ืจ ื”ืžื•ืงืฆื” ื•ื”ื–ื ื‘ ืฉืœื• ื™ื™ื›ืชื‘ ืœืื–ื•ืจื™ ื–ื™ื›ืจื•ืŸ ืœื™ื“ ื”ืžืื’ืจ.

ืœื‘ื“ื™ืงื” ื›ื‘ืจ ื–ืžื™ืŸ ืื‘ ื˜ื™ืคื•ืก ืขื•ื‘ื“ ืฉืœ ื”-exploit, ื”ืžืกืคืง ืขืงื™ืคืช ASLR ื•ื‘ื™ืฆื•ืข ืงื•ื“ ืขืœ ื™ื“ื™ ื”ื—ืœืคืช ื”ื–ื™ื›ืจื•ืŸ ืฉืœ ืžืขืจืš main_loop_tlg, ื›ื•ืœืœ QEMUTimerList ืขื ืžื˜ืคืœื™ื ืฉื ืงืจืื™ื ืขืœ ื™ื“ื™ ื˜ื™ื™ืžืจ.
ื”ืคื’ื™ืขื•ืช ื›ื‘ืจ ืชื•ืงื ื” ืคื“ื•ืจื” ะธ SUSE/openSUSE, ืืš ื ื•ืชืจ ืœืœื ืชื™ืงื•ืŸ ื‘ ื“ื‘ื™ืืŸ, Arch Linux ะธ FreeBSD. ื‘ืชื•ืš ืื•ื‘ื•ื ื˜ื• ะธ ืจื”ืœ ื”ื‘ืขื™ื” ืœื ืžื•ืคื™ืขื” ืขืงื‘ ืื™ ืฉื™ืžื•ืฉ ื‘ืกืœื™ืจืค. ื”ืคื’ื™ืขื•ืช ืœื ืชื•ืงื ื” ื‘ืžื”ื“ื•ืจื” ื”ืื—ืจื•ื ื” libslirp 4.0 (ื”ืชื™ืงื•ืŸ ื–ืžื™ืŸ ื›ืจื’ืข ื‘ืฉื ืชื™ืงื•ืŸ).

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”