Nuglaanta maareeyaha xirmada GNU Guix

In maamulaha xirmo Hagaha GNU la aqoonsaday nuglaanta (CVE-2019-18192), kaas oo u oggolaanaya koodka in lagu fuliyo macnaha guud ee isticmaale kale. Dhibaatadu waxay ku dhacdaa isku xidhka isticmaaleyaal badan oo Guix waxaana sababa inay si khaldan u dejiyaan xuquuqaha gelitaanka hagaha nidaamka ee leh profiles isticmaalaha.

Sida caadiga ah, ~/.guix-profile profiles user waxaa lagu qeexaa inay yihiin iskuxirayaasha astaanta u ah /var/guix/profiles/ per-user/$USER directory. Dhibaatadu waxay tahay in oggolaanshaha ku yaal /var/guix/profiles/per-user/ directory ay u ogolaato isticmaale kasta inuu abuuro hagahan-hoosaadyo cusub. Weeraryahanku waxa uu u samayn karaa hage isticmaale kale oo aan wali soo galin waxa uuna u habayn karaa koodkiisa si uu u shaqeeyo tusahan oo la fulin doono inta dhibbanuhu uu socdo halkii laga isticmaali lahaa faylalka la fulin karo).

Source: opennet.ru

Add a comment