Faʻamatalaga mo Java SE, MySQL, VirtualBox ma isi oloa Oracle faʻatasi ai ma faʻafitauli faʻapitoa

Kamupani Oracle lomia fuafuaina le tatalaina o faʻafouga i ana oloa (Critical Patch Update), faʻamoemoe e faʻaumatia faʻafitauli ogaoga ma faʻafitauli. I le fa'afouga ia Ianuari, o le aofa'i o 397 fa'aletonu.

Mataupu Java SE 14.0.1, 11.0.7 ma le 8u251 aveesea 15 faafitauli saogalemu. O fa'aletonu uma e mafai ona fa'aogaina mamao e aunoa ma le fa'amaonia. Ole maualuga maualuga ole tulaga ole 8.3, lea e tuʻuina atu ile faʻafitauli ile faletusi (CVE-2020-2803, CVE-2020-2805). E lua faʻafitauli (i le libxslt ma le JSSE) e iai le mamafa o le 8.1 ma le 7.5.

I le faaopoopo atu i mataupu i Java SE, o faʻafitauli ua faʻaalia i isi oloa Oracle, e aofia ai:

  • 35 fa'aletonu i le MySQL server ma
    2 faʻafitauli i le faʻatinoina o le MySQL client (C API). Ole maualuga maualuga ole tulaga ole 9.8 o loʻo tuʻuina atu ile faʻafitauli CVE-2019-5482, lea e aliali mai pe a tuʻufaʻatasia ma le lagolago cURL. Fa'afitauli ua fa'amauina i fa'asalalauga MySQL Community Server 8.0.20, 5.7.30 ma le 5.6.49.

  • 19 fa'aletonu, o fa'afitauli e 7 o lo'o i ai se tulaga ogaoga o le lamatiaga (CVSS sili atu i le 8). E aofia ai le fa'aleleia o fa'aletonu e fa'aaogaina i osofa'iga na fa'aalia i le tauvaga Pwn2Own 2020 ma fa'atagaina, e ala i le fa'aogaina i le itu o le faiga malo, e maua ai le avanoa i le polokalama talimalo ma fa'atino le tulafono fa'atasi ma aia tatau hypervisor. O faʻafitauli e faʻamautu i faʻafouga VirtualBox 6.1.6, 6.0.20 ma le 5.2.40.
  • 6 fa'aletonu i Solaris. Tulaga maualuga o le lamatiaga 8.8 - fa'aoga i le lotoifale le faafitauli i le Siosiomaga masani Papamaa, faʻatagaina se tagata faʻaoga le faʻaaogaina e faʻatino le code ma faʻamanuiaga aʻa. O faʻafitauli ua faʻamautuina foi i totonu o le kernel module o loʻo faʻaaogaina le SMB protocol, i Whodo, ma i le svcbundle SMF poloaiga. Fa'afitauli ua fa'amautuina ile fa'afouga ananafi Solaris 11.4 SRU 20.

puna: opennet.ru

Faaopoopo i ai se faamatalaga