Te whakaraerae i roto i te taraiwa vhost-net mai i te kernel Linux

I roto i te taraiwa vhost-net, e whakarite ana i te mahi o te kupenga virtio i te taha o te taiao manaaki, kua tautuhia whakaraeraetanga (CVE-2020-10942), ka tuku i te kaiwhakamahi o te takiwa ki te timata i te puhake o te kernel ma te tuku i tetahi ioctl kua whakahōputu motuhake (VHOST_NET_SET_BACKEND) ki te taputapu /dev/vhost-net. Ko te raruraru ka puta mai i te kore o te whakamana tika o nga ihirangi o te mara sk_family i roto i te waehere mahi get_raw_socket().

E ai ki nga raraunga tuatahi, ka taea te whakaraeraetanga ki te kawe i te whakaeke a DoS o te rohe ma te paheketanga o te kakano (kaore he korero mo te whakamahinga o te puhake putunga na te whakaraeraetanga ki te whakarite i nga mahi waehere).
Whakaraerae whakakorea i roto i te Linux kernel 5.5.8 whakahou. Mo nga tohatoha, ka taea e koe te whai i te tukunga o nga whakahōutanga mokihi ki nga wharangi Debian, Ubuntu, RHEL, SUSE/openSUSE, Fedora, kikorangi.

Source: opennet.ru

Tāpiri i te kōrero