Password leak kubva ku encrypted partitions muUbuntu Server installer log

Canonical Company yakabudiswa kugadzirisa kuburitswa kweiyo installer Subiquity 20.05.2, inova ndiyo yakasarudzika yeUbuntu Server kumisikidzwa kutanga nekuburitswa 18.04 paunenge uchiisa muLive mode. Yakabviswa mukuburitswa kutsva kuchengeteka dambudziko (CVE-2020-11932), zvichikonzerwa nekuchengetedza murogi password inotsanangurwa nemushandisi kuti uwane yakavharidzirwa LUKS partition yakagadzirwa panguva yekuisa. Updates iso mifananidzo ine gadziriso yekusagadzikana haisati yaburitswa, asi vhezheni nyowani yeSubiquity ine gadziriso posted muSnap Store dhairekitori, kubva iyo iyo yekuisa inogona kuvandudzwa paunenge uchirodha muLive mode, pachinhanho usati watanga kuisirwa system.

Pasiwedhi yechikamu chakavharidzirwa inochengetwa mumavara akajeka mumafaira autoinstall-user-data, curtin-install-cfg.yaml, curtin-install.log, installer-journal.txt uye subiquity-curtin-install.conf, inochengetwa mushure kuisirwa mu/dhairekitori var/log/installer. Mukugadzirisa uko iyo / var partition haina kuvharirwa, kana sisitimu ikawira mumaoko asiri iwo, password yeiyo encrypted partitions inogona kubviswa kubva kune aya mafaera, ayo anoramba kushandiswa kwekunyorera.

Source: opennet.ru

Voeg