Samba 4.10.8 ma le 4.9.13 faʻafouga faʻatasi ma faʻafitauli faʻafitauli

Sauniuni faʻasaʻoga faʻasaʻo o le Samba package 4.10.8 ma le 4.9.13, lea na faʻaumatia vaivai (CVE-2019-10197), faʻatagaina le tagata faʻaoga e faʻaoga i le root directory o loʻo i ai le vaeluaga o fesoʻotaiga a Samba. E tupu le faʻafitauli pe a faʻamaonia le filifiliga 'lautele = ioe' i faʻatulagaga faʻatasi ma le 'unix extensions = leai' poʻo le 'faʻatagaina fesoʻotaʻiga lautele le saogalemu = ioe'. Avanoa i faila i fafo atu o le vaeluaga o lo'o iai nei e fa'atapula'aina e le tagata fa'aoga aia tatau, i.e. e mafai e le tagata osofaʻi ona faitau ma tusi faila e tusa ai ma a latou uid/gid.

O le faʻafitauli e mafua mai i le mea moni e faapea, a maeʻa le talosaga muamua mo le aʻa o se vaeluaga faʻasoa, e toe faʻafoʻi atu se mea sese i le kalani, ae o le smbd e faʻapipiʻi le avanoa i le lisi ma e le faʻamalo le cache pe a iai se faʻafitauli avanoa. E tusa ai, pe a maeʻa ona tuʻuina atu se talosaga SMB faifaipea, e faʻatautaia lelei e faʻavae i luga o le faʻaogaina o le cache e aunoa ma ni siaki faʻatagaga faifaipea.

puna: opennet.ru

Faaopoopo i ai se faamatalaga