Faʻafou le X.Org Server 21.1.5 ma le xwayland 22.1.6 faʻatasi ai ma le faʻaumatiaina o faʻafitauli 6

Fa'asa'oga fa'asa'oga o le X.Org Server 21.1.5 ma le xwayland 22.1.6 ua fa'asalalauina, o se vaega DDX (Device-Dependent X) e mafai ai ona fa'alauiloa le X.Org Server e fa'atulaga ai le fa'atinoina o talosaga X11 i si'osi'omaga fa'avae Wayland. O lomiga fou o loʻo faʻamatalaina 6 faʻafitauli e ono mafai ona faʻaogaina mo le faʻateleina o avanoa i luga o faiga o loʻo faʻaogaina le X server e avea ma aʻa, faʻapea foʻi ma le faʻaogaina o le code mamao i faʻasalalauga e faʻaogaina ai le X11 session redirection e ala i le SSH mo avanoa.

  • CVE-2022-46340 - Fa'aputu fa'aputu pe a fa'agasolo talosaga XTestSwapFakeInput fa'atasi ai ma fa'amaumauga e sili atu i le 32 paita na pasi atu i le GenericEvents fanua.
  • CVE-2022-46341 Ose avanoa pa puipui i fafo o tuaoi e tupu pe a fa'agaoioi talosaga XIPassiveUngrab e vala'au ma fa'ailoga ki tele po'o tau fa'amau.
  • CVE-2022-46342 - faŹ»aoga-pe a uma-leai se manatua avanoa e ala i le faŹ»aogaina o talosaga XvdiSelectVideoNotify.
  • CVE-2022-46343 - fa'aoga-pe a uma-leai se manatua avanoa e ala i le fa'aogaina o talosaga ScreenSaverSetAttributes.
  • CVE-2022-46344 Avanoa faŹ»amatalaga i fafo pe a faŹ»agaoioia talosaga XIChangeProperty ma faŹ»asologa tetele.
  • CVE-2022-46283 - fa'aoga-pe a uma-leai se manatua avanoa e ala ile XkbGetKbdByName ole fa'aogaina ole talosaga.

puna: opennet.ru

FaŹ»atau talimalo faŹ»atuatuaina mo nofoaga ma DDoS puipuiga, VPS VDS servers šŸ”„ Fa'atau le 'upega tafa'ilagi talimalo fa'atuatuaina ma le puipuiga DDoS, 'au'aunaga VPS VDS | ProHoster