Siideynta VeraCrypt 1.26.18 nidaamka sirta qaybinta diskka

VeraCrypt 1.26.18, oo ah fargeeto ka mid ah nidaamka qarsoon ee qaybsiga diskka TrueCrypt ee aan shaqaynayn, ayaa la sii daayay. VeraCrypt waa mid caan ku ah beddelidda algorithm-ka RIPEMD-160 ee TrueCrypt SHA-512 iyo SHA-256, kordhinta tirada ku celcelinta hashing, iyo fududeynta habka dhismaha Linux и macOS, wax ka qabashada arrimaha la aqoonsaday intii lagu jiray baaritaanka koodhka isha ee TrueCrypt. Koodhka ay samaysay mashruuca VeraCrypt waxaa lagu qaybiyaa Shatiga Apache 2.0, halka waxyaabaha ka soo baxa TrueCrypt ay sii wadaan in lagu qaybiyo Shatiga TrueCrypt 3.0. Dhismayaasha diyaarka u ah in la isticmaalo waxaa loo sameeyay Linux, FreeBSD, Windows и macOS.

Waxaa ka mid ah isbeddelada nooca cusub:

  • Nidaamyada x86, si loo dedejiyo PBKDF2-HMAC-SHA256 algorithm, tilmaamaha CPU ee gaarka ah ayaa loo isticmaalaa in lagu xisaabiyo SHA-256 hashes.
  • Goobaha ARM64, taageerada lagu daray ee tilmaamaha horumarsan ee dardargelinta qalabka sirta AES.
  • Caqliga aqoonsashada fadhiyada la abuuray iyadoo la isticmaalayo utility sudo waa la fududeeyay.
  • Dhibaatooyin la xalliyay oo ku saabsan dhismaha maktabadda wxWidgets ee la bixiyay Ubuntu.
  • Lagu daray hubinta jiritaanka qaybo ka hor inta aan la saarin.
  • Kulamada loogu talagalay macOS Qabashada shaashadda waa la damiyay si caadi ah (waxaa lagu daray ikhtiyaarka "--allow-screencapture" si loo awoodsiiyo).
  • Taageerada nidaamyada 32-bit waa la joojiyay. WindowsSii deynta ugu yar ee la taageerayo waxaa la sheegay inay tahay Windows 10 Cusboonaysiinta 1809 (Oktoobar 2018). Nidaamyada leh Windows Soo-saare lambarrada aan kala sooca lahayn ee BCryptGenRandom ayaa la isticmaalaa (halkii laga isticmaali lahaa CryptGenRandom-kii duugoobay) iyo API casri ah oo loogu talagalay ururinta entropy.
  • Nuglaanta go'an CVE-2024-54187 oo ay sababtay isticmaalka dariiqyada qaraabada ah marka la wado faylalka nidaamka la fulin karo. Si looga ilaaliyo beddelka faylalka la bilaabay adiga oo ku dhejinaya hagayaal ay heli karaan isticmaaluhu, kaliya wadooyin dhammaystiran ayaa hadda la adeegsadaa marka la bilaabayo.
  • Nuglaanta go'an CVE-2025-23021, taas oo u ogolaatay qaybo ka mid ah in lagu dhejiyo hagaha nidaamka, tusaale ahaan, hagayaasha lagu sheegay doorsoomiyaha deegaanka PATH.

Source: opennet.ru

U soo iibso martigelin lagu kalsoonaan karo oo loogu talagalay bogagga leh ilaalinta DDoS, VPS VDS servers 🔥 Iibso martigelin degel oo lagu kalsoonaan karo oo leh ilaalinta DDoS, VPS VDS servers | ProHoster