FreeBSD yokhazikika 6 zofooka

Pa FreeBSD kuthetsedwa Zowopsa zisanu ndi chimodzi zomwe zitha kuloleza kuwukira kwa DoS, kuphulika kwa ndende, kapena kernel data idadziwika. Nkhanizi zidakonzedwa muzosintha za 12.1-RELEASE-p3 ndi 11.3-RELEASE-p7.

  • CVE-2020-7452 - Chifukwa cha zolakwika pakukhazikitsa ma netiweki ophatikizika, wogwiritsa ntchito PRIV_NET_IFCREATE ufulu kapena mizu kuchokera kundende yakutali angayambitse kernel kusweka kapena kutulutsa code yawo ndi mwayi wa kernel.
  • CVE-2020-7453 - kusakhalapo kwa zingwe zomwe zathetsedwa mukamakonza njira ya "osrelease" kudzera pa jail_set system call imalola kuti zomwe zili m'mbali mwa kernel memory zibwezedwe pomwe woyang'anira ndende adayitanitsa jail_get, ngati thandizo lokhazikitsa ndende zomwe zili m'ndende zimathandizidwa kudzera pa ana.
  • CVE-2019-15877 - Cholakwika mwayi cheke pamene kupeza dalaivala ixl Amalola wogwiritsa ntchito wopanda mwayi kukhazikitsa zosintha za firmware pazida za NVM kudzera pa ioctl.
  • CVE-2019-15876 - Cholakwika mwayi cheke pamene kupeza dalaivala oce kudzera pa ioctl imalola wogwiritsa ntchito wopanda mwayi kutumiza malamulo ku firmware ya Emulex OneConnect network adapter.
  • CVE-2020-7451 - potumiza magawo opangidwa mwapadera a TCP SYN-ACK pa IPv6, ndizotheka kutsitsa kukumbukira kwa kernel pamaneti (gawo la Traffic Class silinayambike ndipo lili ndi zotsalira).
  • Zolakwitsa zitatu mu daemon yolunzanitsa nthawi ya ntpd, zofooka zitha kugwiritsidwa ntchito kukana ntchito (kupangitsa kuti ntpd iwonongeke).

Source: opennet.ru

Gulani kuchititsa kodalirika kwamasamba okhala ndi chitetezo cha DDoS, ma seva a VPS VDS Gulani malo odalirika osungira mawebusayiti okhala ndi chitetezo cha DDoS, ma seva a VPS VDS | ProHoster