ืฉืœื•ืฉื” ื‘ืื’ื™ื ื”ืžื•ื‘ื™ืœื™ื ืœืฆืจื™ื›ืช ื–ื™ื›ืจื•ืŸ ืžื•ื’ื–ืžืช ืชื•ืงื ื• ื‘-nginx

ืฉืœื•ืฉ ื‘ืขื™ื•ืช ื–ื•ื”ื• ื‘ืฉืจืช ื”ืื™ื ื˜ืจื ื˜ ืฉืœ nginx (CVE-2019-9511, CVE-2019-9513, CVE-2019-9516) ืฉื”ื•ื‘ื™ืœื• ืœืฆืจื™ื›ืช ื–ื™ื›ืจื•ืŸ ืžื•ื’ื–ืžืช ื‘ืขืช ื”ืฉื™ืžื•ืฉ ื‘ืžื•ื“ื•ืœ ngx_http_v2_module ื•ืžื™ื•ืฉื ืžืคืจื•ื˜ื•ืงื•ืœ HTTP/2. ื”ื‘ืขื™ื” ืžืฉืคื™ืขื” ืขืœ ื’ืจืกืื•ืช ืž-1.9.5 ืขื“ 1.17.2. ื‘ื•ืฆืขื• ืชื™ืงื•ื ื™ื ืœ-nginx 1.16.1 (ืขื ืฃ ื™ืฆื™ื‘) ื•-1.17.3 (ืžื™ื™ื ืกื˜ืจื™ื). ื”ื‘ืขื™ื•ืช ื”ืชื’ืœื• ืขืœ ื™ื“ื™ ื’'ื•ื ืชืŸ ืœื•ื ื™ ืžื ื˜ืคืœื™ืงืก.

ืžื”ื“ื•ืจื” 1.17.3 ื›ื•ืœืœืช ืฉื ื™ ืชื™ืงื•ื ื™ื ื ื•ืกืคื™ื:

  • ืชื™ืงื•ืŸ: ื‘ืขืช ืฉื™ืžื•ืฉ ื‘ื“ื—ื™ืกื”, ื”ื•ื“ืขื•ืช "buff ื‘ื’ื•ื“ืœ ืืคืก" ืขืœื•ืœื•ืช ืœื”ื•ืคื™ืข ื‘ื™ื•ืžื ื™ื; ื”ื‘ืื’ ื”ื•ืคื™ืข ื‘-1.17.2.
  • ืชื™ืงื•ืŸ: ืชืงืœืช ืคื™ืœื•ื— ืขืœื•ืœื” ืœื”ืชืจื—ืฉ ื‘ืชื”ืœื™ืš ืขื•ื‘ื“ ื‘ืขืช ืฉื™ืžื•ืฉ ื‘ื”ื ื—ื™ื™ืช ื”ืคื•ืชืจ ื‘ืคืจื•ืงืกื™ SMTP.

ืžืงื•ืจ: linux.org.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”