Kusagadzikana muOpenZFS iyo inotyora kodzero dzekuwana kubata muFreeBSD

В akawedzera в VhuraZFS kodhi yekutsigira FreeBSD OS yakaonekwa seyakakosha vulnerability (CVE-2020-24717), zvichikonzera kutyorwa kwekugadziriswa kwekodzero dzekuwana. Mhedzisiro yedambudziko ndeyekuti kodzero dzakaiswa kuboka dzakabatwa sekodzero kumuridzi wefaira. Dambudziko kubviswa mukuvandudza OpenZFS 2.0.0-rc1. Kururamisa akaunzwa up to kududzira FreeBSD HEAD codebase pa OpenZFS.

Nyaya iyi yakakonzerwa neese maficha ekutonga list zvinhu (ACEs) akaisirwa muridzi weboka (group@) uye mapoka enguva dzose (boka: <zita>) achipihwa kumushandisi aripo.
Semuenzaniso, nzira yekuwana 0770 (kunyora inobvumirwa chete kunhengo dzeboka) yakabatwa se0777 (kunyora kunobvumirwa kune vese vashandisi). Mamiriro akafanana akaonekwa neACLs, semuenzaniso, iyo ACL pazasi yakave yakaenzana nekodzero 0777, sezvo nhengo yeboka ichitsvaga buildin_administrators yakadzoka Chokwadi.

# muridzi: mudzi
# boka: vhiri
boka:builtin_administrators:rwxpDdaARWcCos:——-:bvumira

Zvakare muchiteshi cheOpenZFS cheFreeBSD, rimwe dambudziko rakaonekwa nekupa dhairekitori (cd) kodzero, zvisinei nenzvimbo yemureza wekodzero dzemadhairekitori. Kupinda mudhairekitori kwaikwanisika, kusanganisira nechirambidzo chakajeka kuburikidza ne ACL ("ramba - execute")

Source: opennet.ru

Voeg