FreeBSD yakagadziriswa 6 kusasimba

Pamusoro peFreeBSD kubviswa kusakwana kutanhatu kunobvumidza iwe kuita kurwisa kweDoS, kusiya nharaunda yejeri, kana kuwana ruzivo rwekernel. Matambudziko akagadziriswa mukuvandudza 12.1-RELEASE-p3 uye 11.3-RELEASE-p7.

  • CVE-2020-7452 -Nekuda kwechikanganiso mukushandiswa kwe epair virtual network interfaces, mushandisi ane PRIV_NET_IFCREATE kana kodzero dzemidzi kubva kune yakasarudzika jeri nharaunda inogona kukonzera kernel kupaza kana kuita kodhi yavo nekodzero dzekernel.
  • CVE-2020-7453 - hapana cheki yekumisa tambo neasina hunhu paunenge uchigadzira iyo "osrelease" sarudzo kuburikidza nejail_set system kufona, inobvumidza iwe kuti uwane zviri mukati meiyo iri padyo kernel memory zvimiro kana jeri nharaunda maneja anofona, kana tsigiro yekutanga jeri nested. nharaunda inogoneswa kuburikidza ne children.max parameter ( By default, kusikwa kwe nested jail environments zvinorambidzwa).
  • CVE-2019-15877 -Kutarisisa zvisizvo kweropafadzo kana uchiwana mutyairi ixl kuburikidza neoctl inobvumira mushandisi asina rusarura kuti aise firmware update yeNVM madivayiri.
  • CVE-2019-15876 -Kutarisisa zvisizvo kweropafadzo kana uchiwana mutyairi oce kuburikidza neoctl inobvumira mushandisi asina rombo rakanaka kutumira mirairo kune firmware yeEmulex OneConnect network adapters.
  • CVE-2020-7451 - nekutumira TCP SYN-ACK zvikamu zvakagadzirirwa neimwe nzira pamusoro peIPv6, imwe byte yekernel memory inogona kuburitswa pamusoro petiweki (iyo Traffic Kirasi munda haina kutangwa uye ine yakasara data).
  • Zvikanganiso zvitatu mu ntpd nguva yekuwiriranisa daemon inogona kushandiswa kukonzera kuramba sevhisi (zvichikonzera kuti ntpd process iparare).

Source: opennet.ru

Voeg