ื’ืจืกื” ืฉื’ื•ื™ื” ื”ื•ืคืฆื” ื‘ืžืงื•ื Python 3.5.8 ื‘ื˜ืขื•ืช

ืขืงื‘ ืฉื’ื™ืื” ื‘ืขืช ืืจื’ื•ืŸ ืฉืžื™ืจื” ื‘ืžื˜ืžื•ืŸ ื‘ืžืขืจื›ืช ืžืกื™ืจืช ื”ืชื•ื›ืŸ, ื‘ืขืช ื ื™ืกื™ื•ืŸ ืœื”ื•ืจื™ื“ ืืช ืื—ื“ ื”ื”ืจื›ื‘ื™ื ื™ืฆื ืœืื•ืจ ืฉืœืฉื•ื ืฉื—ืจื•ืจ ืžืชืงืŸ ืคื™ื™ืชื•ืŸ 3.5.8 ื”ืชืคืฉื˜ื•ืช ื‘ื ื™ื™ืช ืชืฆื•ื’ื” ืžืงื“ื™ืžื” ืฉืื™ื ื” ืžื›ื™ืœื” ืืช ื›ืœ ื”ืชื™ืงื•ื ื™ื. ื‘ึผึฐืขึธื™ึธื” ื ื’ืข ืืจื›ื™ื•ืŸ ื‘ืœื‘ื“ Python-3.5.8.tar.xz, ื”ืจื›ื‘ื” Python-3.5.8.tgz ืžื•ืคืฅ ื ื›ื•ืŸ.

ืœื›ืœ ื”ืžืฉืชืžืฉื™ื ืฉื”ื•ืจื™ื“ื• ืืช ื”ืงื•ื‘ืฅ "Python-3.5.8.tar.xz" ื‘-12 ื”ืฉืขื•ืช ื”ืจืืฉื•ื ื•ืช ืœืื—ืจ ื”ืฉื—ืจื•ืจ, ืžื•ืžืœืฅ ืœื‘ื“ื•ืง ืืช ื ื›ื•ื ื•ืช ื”ื ืชื•ื ื™ื ืฉื”ื•ืจื“ื• ื‘ืืžืฆืขื•ืช ืกื›ื•ื ื”ื‘ื“ื™ืงื” (MD5 4464517ed6044bca4fc78ea9ed086c36). ื‘ื ื™ื’ื•ื“ ืœืžื”ื“ื•ืจื” ื”ืกื•ืคื™ืช, ื’ืจืกืช ื”ืชืฆื•ื’ื” ื”ืžืงื“ื™ืžื” ืœื ื›ืœืœื” ืชื™ืงื•ืŸ ืคื’ื™ืขื•ืช CVE-2019-16935 ื‘ืงื•ื“ ืฉืจืช XML-RPC. ื”ืคื’ื™ืขื•ืช ืืคืฉืจื” ื”ื–ืจืงืช JavaScript (XSS) ื“ืจืš ืฉื“ื” server_title ืขืงื‘ ื”ื™ืขื“ืจ ื‘ืจื™ื—ื” ืฉืœ ืกื•ื’ืจ ื–ื•ื•ื™ืช. ืชื•ืงืฃ ื™ื›ื•ืœ ืœื”ืฉื™ื’ ื”ื—ืœืคืช JavaScript ืื ื”ื™ื™ืฉื•ื ืžื’ื“ื™ืจ ืืช ืฉื ื”ืฉืจืช ืขืœ ืกืžืš ืงืœื˜ ื”ืžืฉืชืžืฉ (ืœื“ื•ื’ืžื”, "server.set_server_name('test โ€™)ยป).

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”