ืคื’ื™ืขื•ืช ืฉืœ ื‘ื™ืฆื•ืข ืงื•ื“ ืžืจื—ื•ืง ืฉืœ StrongSwan IPsec

strongSwan 5.9.10 ื–ืžื™ืŸ ื›ืขืช, ื—ื‘ื™ืœื” ื—ื™ื ืžื™ืช ืœื™ืฆื™ืจืช ื—ื™ื‘ื•ืจื™ VPN ื”ืžื‘ื•ืกืกื™ื ืขืœ ืคืจื•ื˜ื•ืงื•ืœ IPSec ื”ืžืฉืžืฉ ื‘ืœื™ื ื•ืงืก, ืื ื“ืจื•ืื™ื“, FreeBSD ื•-macOS. ื”ื’ืจืกื” ื”ื—ื“ืฉื” ืžื‘ื˜ืœืช ืคื’ื™ืขื•ืช ืžืกื•ื›ื ืช (CVE-2023-26463) ืฉื ื™ืชืŸ ืœื”ืฉืชืžืฉ ื‘ื” ื›ื“ื™ ืœืขืงื•ืฃ ืืช ื”ืื™ืžื•ืช, ืืš ืขืฉื•ื™ื” ื’ื ืœื”ื•ื‘ื™ืœ ืœื‘ื™ืฆื•ืข ืงื•ื“ ืชื•ืงืฃ ื‘ืฆื“ ื”ืฉืจืช ืื• ื”ืœืงื•ื—. ื”ื‘ืขื™ื” ืžืชืจื—ืฉืช ื‘ืขืช ืื™ืžื•ืช ืื™ืฉื•ืจื™ื ืฉืชื•ื›ื ื ื• ื‘ืžื™ื•ื—ื“ ื‘ืฉื™ื˜ื•ืช ืื™ืžื•ืช EAP (Extensible Authentication Protocol) ืžื‘ื•ืกืกื•ืช TLS.

ื”ืคื’ื™ืขื•ืช ื ื’ืจืžืช ืžื›ืš ืฉื”ืžื˜ืคืœ ื‘-TLS ืžืงื‘ืœ ื‘ืื•ืคืŸ ืฉื’ื•ื™ ืžืคืชื—ื•ืช ืฆื™ื‘ื•ืจื™ื™ื ืžืชืขื•ื“ืช ืขืžื™ืช, ืชื•ืš ืฉื”ื•ื ืžื—ืฉื™ื‘ ืื•ืชื ื›ืืžื™ื ื™ื ื’ื ืื ืœื ื ื™ืชืŸ ืœืืžืช ืืช ื”ืื™ืฉื•ืจ ื‘ื”ืฆืœื—ื”. ื‘ืื•ืคืŸ ืกืคืฆื™ืคื™, ื‘ืขืช ืงืจื™ืื” ืœืคื•ื ืงืฆื™ื” tls_find_public_key(), ื‘ื—ื™ืจื” ื”ืžื‘ื•ืกืกืช ืขืœ ืกื•ื’ ื”ืžืคืชื— ื”ืฆื™ื‘ื•ืจื™ ืžืฉืžืฉืช ื›ื“ื™ ืœืงื‘ื•ืข ืื™ืœื• ืื™ืฉื•ืจื™ื ืžื”ื™ืžื ื™ื. ื”ื‘ืขื™ื” ื”ื™ื ืฉื”ืžืฉืชื ื” ื”ืžืฉืžืฉ ืœืงื‘ื™ืขืช ืกื•ื’ ื”ืžืคืชื— ืขื‘ื•ืจ ืคืขื•ืœืช ื”ื—ื™ืคื•ืฉ ืžื•ื’ื“ืจ ื‘ื›ืœ ืžืงืจื”, ื’ื ืื ื”ืื™ืฉื•ืจ ืื™ื ื• ืืžื™ืŸ.

ื™ืชืจื” ืžื›ืš, ืขืœ ื™ื“ื™ ืžื ื™ืคื•ืœืฆื™ื” ืฉืœ ื”ืžืคืชื—, ื ื™ืชืŸ ืœืฆืžืฆื ืืช ืžื•ื ื” ื”ืคื ื™ื•ืช (ืื ื”ืื™ืฉื•ืจ ืื™ื ื• ืืžื™ืŸ, ื”ื”ืคื ื™ื” ืœืื•ื‘ื™ื™ืงื˜ ืžืฉืชื—ืจืจืช ืœืื—ืจ ืงื‘ื™ืขืช ืกื•ื’ ื”ืžืคืชื—) ื•ืœืคื ื•ืช ื–ื™ื›ืจื•ืŸ ืœืื•ื‘ื™ื™ืงื˜ ืฉืขื“ื™ื™ืŸ ื ืžืฆื ื‘ืฉื™ืžื•ืฉ ืขื ื”ืžืคืชื—. ืคื’ื ื–ื” ืื™ื ื• ืฉื•ืœืœ ื™ืฆื™ืจืช ื ื™ืฆื•ืœ ืœื“ืœื™ืคืช ืžื™ื“ืข ืžื”ื–ื™ื›ืจื•ืŸ ื•ื‘ื™ืฆื•ืข ืงื•ื“ ืžื•ืชืื ืื™ืฉื™ืช.

ื”ื”ืชืงืคื” ืขืœ ื”ืฉืจืช ืžืชื‘ืฆืขืช ื‘ืืžืฆืขื•ืช ืฉืœื™ื—ืช ื”ืœืงื•ื— ืื™ืฉื•ืจ ื‘ื—ืชื™ืžื” ืขืฆืžื™ืช ืœืื™ืžื•ืช ื”ืœืงื•ื— ื‘ืืžืฆืขื•ืช ืฉื™ื˜ื•ืช EAP-TLS, EAP-TTLS, EAP-PEAP ื•-EAP-TNC. ื”ืชืงืคื” ืขืœ ื”ืœืงื•ื— ื™ื›ื•ืœื” ืœื”ืชื‘ืฆืข ื‘ืืžืฆืขื•ืช ื”ืฉืจืช ื”ืžื—ื–ื™ืจ ืชืขื•ื“ื” ืฉืชื•ื›ื ื ื” ื‘ืžื™ื•ื—ื“. ื”ืคื’ื™ืขื•ืช ืžื•ืคื™ืขื” ื‘ืžื”ื“ื•ืจื•ืช strongSwan 5.9.8 ื•-5.9.9. ื ื™ืชืŸ ืœืขืงื•ื‘ ืื—ืจ ืคืจืกื•ื ืขื“ื›ื•ื ื™ ื”ื—ื‘ื™ืœื•ืช ื‘ื”ืคืฆื•ืช ื‘ื“ืคื™ื: Debian, Ubuntu, Gentoo, RHEL, SUSE, Arch, FreeBSD, NetBSD.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”