ืคื’ื™ืขื•ื™ื•ืช ื‘ืžื ื”ืœื™ ื”ืชืงื ื™ื ืฉืœ OpenSSL, Glibc, util-linux, i915 ื•-vmwgfx

ืคื’ื™ืขื•ืช (CVE-2021-4160) ื ื—ืฉืคื” ื‘ืกืคืจื™ื™ืช ื”ื”ืฆืคื ื” OpenSSL, ืืฉืจ ื ื’ืจืžืช ืžืฉื’ื™ืื” ื‘ื™ื™ืฉื•ื ื”-adder ื‘ืคื•ื ืงืฆื™ื™ืช BN_mod_exp, ืืฉืจ ืžื•ื‘ื™ืœื” ืœื”ื—ื–ืจื” ืฉืœ ืชื•ืฆืื” ืฉื’ื•ื™ื” ืฉืœ ืคืขื•ืœืช ื”ืจื™ื‘ื•ืข. ื”ื‘ืขื™ื” ืžืชืจื—ืฉืช ืจืง ื‘ื—ื•ืžืจื” ื”ืžื‘ื•ืกืกืช ืขืœ ืืจื›ื™ื˜ืงื˜ื•ืจื•ืช MIPS32 ื•-MIPS64, ื•ื™ื›ื•ืœื” ืœืคื’ื•ืข ื‘ืืœื’ื•ืจื™ืชืžื™ื ืฉืœ ืขืงื•ืžื” ืืœื™ืคื˜ื™ืช, ื›ื•ืœืœ ืืœื• ื”ืžืฉืžืฉื™ื ื›ื‘ืจื™ืจืช ืžื—ื“ืœ ื‘-TLS 1.3. ื”ื‘ืขื™ื” ืชื•ืงื ื” ื‘ืขื“ื›ื•ื ื™ ื“ืฆืžื‘ืจ ืฉืœ OpenSSL 1.1.1m ื•-3.0.1.

ื™ืฆื•ื™ืŸ ื›ื™ ื™ื™ืฉื•ื ื”ืชืงืคื•ืช ืืžื™ืชื™ื•ืช ืœื”ืฉื’ืช ืžื™ื“ืข ืขืœ ืžืคืชื—ื•ืช ืคืจื˜ื™ื™ื ื‘ืืžืฆืขื•ืช ื”ื‘ืขื™ื” ืฉื–ื•ื”ืชื” ื ื—ืฉื‘ ืขื‘ื•ืจ RSA, DSA ื•ืืœื’ื•ืจื™ืชื ื“ื™ืคื™-ื”ืœืžืŸ (DH, ื“ื™ืคื™-ื”ืœืžืŸ) ื›ื›ืœ ื”ืืคืฉืจ, ืืš ืœื ืกื‘ื™ืจ, ืงืฉื” ืžื“ื™ ืœื‘ื™ืฆื•ืข ื• ื“ื•ืจืฉ ืžืฉืื‘ื™ ืžื—ืฉื•ื‘ ืขืฆื•ืžื™ื. ื™ื—ื“ ืขื ื–ืืช, ืžืชืงืคื” ืขืœ TLS ืื™ื ื” ื ื›ืœืœืช, ืฉื›ืŸ ื‘ืฉื ืช 2016, ื›ืืฉืจ ื‘ื•ื˜ืœื” ื”ืคื’ื™ืขื•ืช CVE-2016-0701, ื ืืกืจ ืฉื™ืชื•ืฃ ืžืคืชื— ืคืจื˜ื™ DH ืื—ื“ ืขืœ ื™ื“ื™ ืœืงื•ื—ื•ืช.

ื‘ื ื•ืกืฃ, ื™ืฉื ืŸ ืžืกืคืจ ื ืงื•ื“ื•ืช ืชื•ืจืคื” ืฉื–ื•ื”ื• ืœืื—ืจื•ื ื” ื‘ืคืจื•ื™ืงื˜ื™ ืงื•ื“ ืคืชื•ื—:

  • ืžืกืคืจ ื ืงื•ื“ื•ืช ืชื•ืจืคื” (CVE-2022-0330) ื‘ืžื ื”ืœ ื”ื”ืชืงืŸ ื”ื’ืจืคื™ i915 ื”ืงืฉื•ืจื•ืช ืœืื™ืคื•ืก ื—ืกืจ ืฉืœ GPU TLB. ืื IOMMU (ืชืจื’ื•ื ื›ืชื•ื‘ื•ืช) ืื™ื ื• ืžื•ื—ืœ, ื”ืคื’ื™ืขื•ืช ืžืืคืฉืจืช ื’ื™ืฉื” ืœื“ืคื™ ื–ื™ื›ืจื•ืŸ ืืงืจืื™ื™ื ืžืžืจื—ื‘ ื”ืžืฉืชืžืฉ. ื ื™ืชืŸ ืœื”ืฉืชืžืฉ ื‘ื‘ืขื™ื” ื›ื“ื™ ืœื”ืฉื—ื™ืช ืื• ืœืงืจื•ื ื ืชื•ื ื™ื ืžืื–ื•ืจื™ื ืืงืจืื™ื™ื ื‘ื–ื™ื›ืจื•ืŸ. ื”ื‘ืขื™ื” ืžืชืจื—ืฉืช ื‘ื›ืœ ื”ืžืขื‘ื“ื™ื ื”ืžืฉื•ืœื‘ื™ื ื•ื”ื‘ื•ื“ื“ื™ื ืฉืœ ืื™ื ื˜ืœ. ื”ืชื™ืงื•ืŸ ืžื™ื•ืฉื ืขืœ ื™ื“ื™ ื”ื•ืกืคืช ืฉื˜ื™ืคืช TLB ื—ื•ื‘ื” ืœืคื ื™ ื›ืœ ืคืขื•ืœืช ื”ื—ื–ืจืช ืžืื’ืจ GPU ืœืžืขืจื›ืช, ืžื” ืฉื™ื•ื‘ื™ืœ ืœื™ืจื™ื“ื” ื‘ื‘ื™ืฆื•ืขื™ื. ื”ืฉืคืขืช ื”ื‘ื™ืฆื•ืขื™ื ืชืœื•ื™ื” ื‘-GPU, ื‘ืคืขื•ืœื•ืช ื”ืžื‘ื•ืฆืขื•ืช ื‘-GPU, ื•ื‘ืขื•ืžืก ืขืœ ื”ืžืขืจื›ืช. ื”ืชื™ืงื•ืŸ ื–ืžื™ืŸ ื›ืจื’ืข ืจืง ื›ืชื™ืงื•ืŸ.
  • ืคื’ื™ืขื•ืช (CVE-2022-22942) ื‘ืžื ื”ืœ ื”ื”ืชืงืŸ ื”ื’ืจืคื™ vmwgfx ื”ืžืฉืžืฉ ืœื™ื™ืฉื•ื ื”ืืฆืช 3D ื‘ืกื‘ื™ื‘ื•ืช VMware. ื”ื‘ืขื™ื” ืžืืคืฉืจืช ืœืžืฉืชืžืฉ ื—ืกืจ ื”ืจืฉืื•ืช ืœื’ืฉืช ืœืงื‘ืฆื™ื ืฉื ืคืชื—ื• ืขืœ ื™ื“ื™ ืชื”ืœื™ื›ื™ื ืื—ืจื™ื ื‘ืžืขืจื›ืช. ื”ื”ืชืงืคื” ื“ื•ืจืฉืช ื’ื™ืฉื” ืœืžื›ืฉื™ืจ /dev/dri/card0 ืื• /dev/dri/rendererD128 ื•ื™ื›ื•ืœืช ืœื‘ืฆืข ืงืจื™ืืช ioctl() ืขื ืžืชืืจ ื”ืงื•ื‘ืฅ ื”ืžืชืงื‘ืœ.
  • ืคื’ื™ืขื•ื™ื•ืช (CVE-2021-3996, CVE-2021-3995) ื‘ืกืคืจื™ื™ืช libmount ืฉืกื•ืคืงื” ืขื ื—ื‘ื™ืœืช util-linux ื”ืžืืคืฉืจื•ืช ืœืžืฉืชืžืฉ ื—ืกืจ ื”ืจืฉืื•ืช ืœืขืœื•ืช ืžื—ื™ืฆื•ืช ื“ื™ืกืง ืžื‘ืœื™ ืœื”ื™ื•ืช ืžื•ืจืฉื” ืœืขืฉื•ืช ื–ืืช. ื”ื‘ืขื™ื” ื–ื•ื”ืชื” ื‘ืžื”ืœืš ื‘ื™ืงื•ืจืช ืฉืœ ืชื•ื›ื ื™ื•ืช ื”ืฉื•ืจืฉ SUID umount ื•-fusermount.
  • ืคื’ื™ืขื•ื™ื•ืช ื‘ืกืคืจื™ื™ืช Glibc C ื”ืกื˜ื ื“ืจื˜ื™ืช ื”ืžืฉืคื™ืขื•ืช ืขืœ ื”ืคื•ื ืงืฆื™ื•ืช realpath (CVE-2021-3998) ื•-getcwd (CVE-2021-3999).
    • ื”ื‘ืขื™ื” ื‘-realpath() ื ื’ืจืžืช ืžื”ื—ื–ืจืช ืขืจืš ืœื ื—ื•ืงื™ ื‘ืชื ืื™ื ืžืกื•ื™ืžื™ื, ื”ืžื›ื™ืœ ื ืชื•ื ื™ื ืฉื™ื•ืจื™ื™ื ืœื ืžื ื•ืงื™ื ืžื”ืžื—ืกื ื™ืช. ืขื‘ื•ืจ ืชื•ื›ื ื™ืช SUID-root fusermount, ื ื™ืชืŸ ืœื”ืฉืชืžืฉ ื‘ืคื’ื™ืขื•ืช ื›ื“ื™ ืœืงื‘ืœ ืžื™ื“ืข ืจื’ื™ืฉ ืžื–ื™ื›ืจื•ืŸ ื”ืชื”ืœื™ืš, ืœืžืฉืœ, ื›ื“ื™ ืœืงื‘ืœ ืžื™ื“ืข ืขืœ ืžืฆื‘ื™ืขื™ื.
    • ื‘ืขื™ื” ื‘-getcwd() ืžืืคืฉืจืช ื”ืฆืคืช ืžืื’ืจ ืฉืœ ื‘ื™ืช ืื—ื“. ื”ื‘ืขื™ื” ื ื’ืจืžืช ืขืœ ื™ื“ื™ ื‘ืื’ ืฉืงื™ื™ื ืžืื– 1995. ื›ื“ื™ ืœืงืจื•ื ืœื’ืœื™ืฉื”, ื‘ืžืจื—ื‘ ืฉืžื•ืช ื ืคืจื“ ืฉืœ ื ืงื•ื“ืช ื”ืจื›ื‘ื”, ืžืกืคื™ืง ืœืงืจื•ื ืœ-chdir () ืขื‘ื•ืจ ืกืคืจื™ื™ืช "/". ืœื ืžื“ื•ื•ื— ืื ื”ืคื’ื™ืขื•ืช ืžื•ื’ื‘ืœืช ืœืงืจื™ืกืช ืชื”ืœื™ื›ื™ื, ืื‘ืœ ื”ื™ื• ืžืงืจื™ื ืฉืœ ื ื™ืฆื•ืœ ืขื‘ื•ื“ื” ืขื‘ื•ืจ ืคืจืฆื•ืช ื›ืืœื” ื‘ืขื‘ืจ, ืœืžืจื•ืช ื”ืกืคืงื ื•ืช ืฉืœ ื”ืžืคืชื—ื™ื.
  • ืคื’ื™ืขื•ืช (CVE-2022-23220) ื‘ื—ื‘ื™ืœืช usbview ื”ืžืืคืฉืจืช ืœืžืฉืชืžืฉื™ื ืžืงื•ืžื™ื™ื ื”ืžื—ื•ื‘ืจื™ื ื“ืจืš SSH ืœื‘ืฆืข ืงื•ื“ ื›-root, ืขืงื‘ ื”ื”ื’ื“ืจื” (allow_any=yes) ื‘ื›ืœืœื™ PolKit ืœื”ืคืขื™ืœ ืืช ื›ืœื™ ื”ืฉื™ืจื•ืช usbview ื›-root ืœืœื ืื™ืžื•ืช. ื”ืคืขื•ืœื” ืžืกืชื›ืžืช ื‘ืฉื™ืžื•ืฉ ื‘ืืคืฉืจื•ืช "--gtk-module" ื›ื“ื™ ืœื˜ืขื•ืŸ ืืช ื”ืกืคืจื™ื™ื” ืฉืœืš ืœ-usbview. ื‘ืขื™ื” ื–ื• ืชื•ืงื ื” ื‘-usbview 2.2.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”