Nuglaanta darawalka vhost-net ee kernel Linux

In darawalka vhost-net, kaas oo hubiya hawlgalka virtio net dhinaca deegaanka martida loo yahay, la aqoonsaday nuglaanta (CVE-2020-10942), u oggolaanaya isticmaale maxalli ah inuu bilaabo qulqulka kernel-ka isagoo u diraya ioctl si gaar ah loo qaabeeyey (VHOST_NET_SET_BACKEND) aaladda /dev/vhost-net. Dhibka waxaa keenay la'aanta ansaxinta saxda ah ee waxa ku jira goobta sk_family ee get_raw_socket() code function.

Marka loo eego xogta hordhaca ah, nuglaanshaha waxaa loo isticmaali karaa in lagu fuliyo weerar DoS maxalli ah iyadoo sababeysa shil kernel ah (ma jiraan macluumaad ku saabsan isticmaalka qulqulka buuxdhaafka ah ee ay sababtay u nuglaanshaha abaabulka fulinta koodka).
Nuglaanta meesha laga saaray ee Linux kernel 5.5.8 update. Qaybinta, waxaad ula socon kartaa sii deynta xirmada cusub ee boggaga Debian, Ubuntu, RHEL, SUSE/furanSUSE, Fedora, halka.

Source: opennet.ru

Add a comment