OpenVPN 2.4.9 gadziriso

Yakagadzirwa kugadzirisa kuburitswa kwepakeji yekugadzira chaiwo akavanzika network OpenVPN 2.4.9. Mushanduro itsva kubviswa kusagadzikana (CVE-2020-11810) iyo inobvumira musangano wemutengi kuti uendeswe kune imwe kero yeIP itsva yakanga isati yapihwa mvumo. Dambudziko rinogona kushandiswa kukanganisa mutengi achangobva kubatanidzwa padanho apo peer-id yakatogadzirwa, asi nhaurirano yemakiyi echikamu haisati yapera (mutengi mumwe anogona kumisa zvikamu zvevamwe vatengi).

Dzimwe shanduko dzinosanganisira:

  • PaWindows platform, inobvumirwa kushandisa unicode yekutsvaga tambo mu "-cryptoapicert" sarudzo;
  • Inova nechokwadi chekuti zvitupa zvakapera nguva zvinopfuudzwa muWindows zvitupa chitoro;
  • Dambudziko rekutadza kurodha akati wandei maCRL (Sitifiketi Revocation Rondedzero) iri mufaira rimwechete paunenge uchishandisa "--crl-verify" sarudzo pamasystem ane OpenSSL yakagadziriswa;
  • Paunenge uchishandisa sarudzo "-auth-user-pass file", kana paine chete zita remushandisi mufaira, kukumbira password, chinongedzo chekugadzirisa zvitupa chave kudiwa (kukumbira password uchishandisa OpenVPN kuburikidza nekukurumidza mune console. hazvichaiti);
  • Kurongeka kwekutarisa masevhisi anodyidzana emushandisi akashandurwa (muWindows, nzvimbo yekumisikidza inotanga kutariswa, uyezve chikumbiro chinotumirwa kune domain controller);
  • Yakagadziriswa matambudziko nekuvaka paFreeBSD papuratifomu kana uchishandisa iyo "-enable-async-push" mureza.

Source: opennet.ru

Voeg