{"id":99421,"date":"2021-03-13T22:22:39","date_gmt":"2021-03-13T20:22:40","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/uyazvimost-v-podsisteme-iscsi-yadra-linux-pozvolyayushhaya-podnyat-svoi-privilegii"},"modified":"2021-03-13T22:22:39","modified_gmt":"2021-03-13T20:22:40","slug":"uyazvimost-v-podsisteme-iscsi-yadra-linux-pozvolyayushhaya-podnyat-svoi-privilegii","status":"publish","type":"post","link":"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/uyazvimost-v-podsisteme-iscsi-yadra-linux-pozvolyayushhaya-podnyat-svoi-privilegii","title":{"rendered":"Nj\u00eb vulnerabilitet n\u00eb n\u00ebn-sistemin iSCSI t\u00eb kernelit Linux, i cili lejon rritjen e privilegjeve","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>N\u00eb kodin e n\u00ebn-sistemit iSCSI t\u00eb kernelit Linux \u00ebsht\u00eb zbuluar nj\u00eb vulnerabilitet (CVE-2021-27365), i cili lejon q\u00eb nj\u00eb p\u00ebrdorues lokal pa privilegje t\u00eb ekzekutoj\u00eb kod n\u00eb nivelin e kernelit dhe t\u00eb fitoj\u00eb privilegje root n\u00eb sistem. Nj\u00eb prototip funksional i exploit-it \u00ebsht\u00eb n\u00eb dispozicion p\u00ebr testim. Vulnerabiliteti \u00ebsht\u00eb rregulluar n\u00eb p\u00ebrdit\u00ebsimet e kernelit Linux 5.11.4, 5.10.21, 5.4.103, 4.19.179, 4.14.224, 4.9.260 dhe 4.4.260. P\u00ebrdit\u00ebsimet e paketave me kernelin jan\u00eb n\u00eb dispozicion n\u00eb distribucionet Debian, Ubuntu, SUSE\/openSUSE, Arch Linux dhe Fedora. P\u00ebr RHEL, riparimet ende nuk jan\u00eb l\u00ebshuar.        <\/p>\n<p>Problemi i shkaktuar nga nj\u00eb gabim n\u00eb funksionin iscsi_host_get_param() t\u00eb modulit libiscsi, i b\u00ebr\u00eb q\u00eb nga viti 2006 gjat\u00eb zhvillimit t\u00eb n\u00ebn-sistemit iSCSI. P\u00ebr shkak t\u00eb munges\u00ebs s\u00eb kontrollit t\u00eb duhur t\u00eb madh\u00ebsis\u00eb, disa atributet e vargut iSCSI, si hostname ose username, mund t\u00eb tejkalojn\u00eb vler\u00ebn PAGE_SIZE (4 KB). Kjo dob\u00ebsi mund t\u00eb shfryt\u00ebzohet p\u00ebrmes d\u00ebrgimit t\u00eb mesazheve Netlink nga nj\u00eb p\u00ebrdorues q\u00eb nuk ka privilegje, duke vendosur atributet e iSCSI n\u00eb vlera q\u00eb tejkalojn\u00eb PAGE_SIZE. Kur lexohen t\u00eb dh\u00ebnat e k\u00ebtyre atributeve p\u00ebrmes sysfs ose seqfs, aktivizohet kodi q\u00eb i kalon atributet n\u00eb funksionin sprintf p\u00ebr t'i kopjuar ato n\u00eb nj\u00eb tampon me madh\u00ebsi PAGE_SIZE.               <\/p>\n<p>Ekspozita e dob\u00ebsis\u00eb n\u00eb shp\u00ebrndarjet varet nga mb\u00ebshtetja p\u00ebr ngarkimin automatik t\u00eb modulit t\u00eb b\u00ebrtham\u00ebs scsi_transport_iscsi gjat\u00eb p\u00ebrpjekjes p\u00ebr t\u00eb krijuar nj\u00eb soket NETLINK_ISCSI. N\u00eb shp\u00ebrndarjet ku ky modul ngarkohet automatikisht, sulmi mund t\u00eb kryhet pavar\u00ebsisht nga p\u00ebrdorimi i funksionalitetit iSCSI. N\u00eb k\u00ebt\u00eb rast, p\u00ebr aplikimin e suksessh\u00ebm t\u00eb eksploitit k\u00ebrkohet gjithashtu regjistrimi i s\u00eb pakt\u00ebn nj\u00eb transporti iSCSI. Nga ana tjet\u00ebr, p\u00ebr regjistrimin e transportit mund t\u00eb p\u00ebrdoret moduli i b\u00ebrtham\u00ebs ib_iser, i cili ngarkohet automatikisht gjat\u00eb p\u00ebrpjekjes p\u00ebr t\u00eb krijuar nj\u00eb soket NETLINK_RDMA nga nj\u00eb p\u00ebrdorues pa privilegje.     <\/p>\n<p>Ngarko automatikisht modulat e nevojshme p\u00ebr t\u00eb aplikuar shfryt\u00ebzimin mb\u00ebshtetet n\u00eb CentOS 8, RHEL 8 dhe Fedora gjat\u00eb instalimit t\u00eb paket\u00ebs rdma-core, e cila \u00ebsht\u00eb nj\u00eb var\u00ebsi p\u00ebr disa paketa t\u00eb njohura dhe instalohet si standard n\u00eb konfigurimet p\u00ebr stacionet e pun\u00ebs, sistemet server dhe ambientet e virtualizimit me GUI. N\u00eb t\u00eb nj\u00ebjt\u00ebn koh\u00eb, rdma-core nuk instalohet kur p\u00ebrdoret nd\u00ebrtimi i serverit q\u00eb funksionon vet\u00ebm n\u00eb modalitetin konsol\u00eb, dhe gjat\u00eb instalimit t\u00eb nj\u00eb imazhi minimal t\u00eb instalimit. P\u00ebr shembull, paketa p\u00ebrfshihet n\u00eb paketimin baz\u00eb t\u00eb Fedora 31 Workstation, por nuk \u00ebsht\u00eb p\u00ebrfshir\u00eb n\u00eb Fedora 31 Server. Debian dhe Ubuntu jan\u00eb m\u00eb pak t\u00eb preksh\u00ebm nga problemi, pasi paketa rdma-core ngarkon modul\u00ebt e nevojsh\u00ebm t\u00eb b\u00ebrtham\u00ebs p\u00ebr sulm vet\u00ebm n\u00eb prani t\u00eb pajisjeve RDMA.      <center><img decoding=\"async\" alt=\"Nj\u00eb vulnerabilitet n\u00eb n\u00ebn-sistemin iSCSI t\u00eb kernelit Linux, i cili lejon rritjen e privilegjeve\" src=\"\/wp-content\/uploads\/2021\/03\/3976683ce11a1f5745c19369237c975c.png\" style=\"display:block;margin: 0 auto;\" \/><\/center>  <\/p>\n<p>Si nj\u00eb m\u00ebnyr\u00eb p\u00ebr t\u00eb siguruar mbrojtjen, mund t\u00eb ndaloni ngarkimin automatik t\u00eb modulit libiscsi:       echo \"install libiscsi \/bin\/true\" &gt;&gt; \/etc\/modprobe.d\/disable-libiscsi.conf      <\/p>\n<p>P\u00ebrve\u00e7 k\u00ebsaj, n\u00eb n\u00ebnstruktur\u00ebn iSCSI jan\u00eb eliminuar edhe dy vulnerabilitete t\u00eb tjera m\u00eb pak t\u00eb rrezikshme, t\u00eb cilat mund t\u00eb \u00e7ojn\u00eb n\u00eb shp\u00ebrthimin e t\u00eb dh\u00ebnave nga b\u00ebrthama: CVE-2021-27363  (shp\u00ebrthimi i informacionit p\u00ebr deshifruesin e transportit iSCSI p\u00ebrmes sysfs) dhe  CVE-2021-27364 (leximi nga nj\u00eb hap\u00ebsir\u00eb jasht\u00eb kufijve t\u00eb tamponit). Vulnerabilitetet e p\u00ebrmendura mund t\u00eb p\u00ebrdoren p\u00ebr t\u00eb nd\u00ebrvepruar p\u00ebrmes soketit netlink me n\u00ebnstruktur\u00ebn iSCSI pa pasur privilegjet e nevojshme. P\u00ebr shembull, nj\u00eb p\u00ebrdorues pa privilegje mund t\u00eb lidhet me iSCSI dhe t\u00eb d\u00ebrgoj\u00eb komand\u00ebn \"end a session\" p\u00ebr t\u00eb nd\u00ebrprer\u00eb seanc\u00ebn.<br \/>\n<br \/>Burimi: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=54754\">opennet.ru<\/a> <\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0412 \u043a\u043e\u0434\u0435 \u043f\u043e\u0434\u0441\u0438\u0441\u0442\u0435\u043c\u044b iSCSI \u0438\u0437 \u0441\u043e\u0441\u0442\u0430\u0432\u0430 \u044f\u0434\u0440\u0430 Linux \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2021-27365), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043b\u043e\u043a\u0430\u043b\u044c\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u0432\u044b\u043f\u043e\u043b\u043d\u0438\u0442\u044c \u043a\u043e\u0434 \u043d\u0430 \u0443\u0440\u043e\u0432\u043d\u0435 \u044f\u0434\u0440\u0430 \u0438 \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0438 \u0432 \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u0414\u043b\u044f \u0442\u0435\u0441\u0442\u0438\u0440\u043e\u0432\u0430\u043d\u0438\u044f \u0434\u043e\u0441\u0442\u0443\u043f\u0435\u043d \u0440\u0430\u0431\u043e\u0447\u0438\u0439 \u043f\u0440\u043e\u0442\u043e\u0442\u0438\u043f \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442\u0430. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0430 \u0432 \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f\u0445 \u044f\u0434\u0440\u0430 Linux 5.11.4, 5.10.21, 5.4.103, 4.19.179, 4.14.224, 4.9.260 \u0438 4.4.260. \u041e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f \u043f\u0430\u043a\u0435\u0442\u043e\u0432 \u0441 \u044f\u0434\u0440\u043e\u043c \u0434\u043e\u0441\u0442\u0443\u043f\u043d\u044b \u0432 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u0430\u0445 Debian, Ubuntu, SUSE\/openSUSE, [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":99422,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-99421","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-novosti-interneta"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.0.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0412 \u043a\u043e\u0434\u0435 \u043f\u043e\u0434\u0441\u0438\u0441\u0442\u0435\u043c\u044b iSCSI \u0438\u0437 \u0441\u043e\u0441\u0442\u0430\u0432\u0430 \u044f\u0434\u0440\u0430 Linux \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2021-27365), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043b\u043e\u043a\u0430\u043b\u044c\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u0432\u044b\u043f\u043e\u043b\u043d\u0438\u0442\u044c \u043a\u043e\u0434 \u043d\u0430 \u0443\u0440\u043e\u0432\u043d\u0435 \u044f\u0434\u0440\u0430 \u0438 \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0438 \u0432 \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u0414\u043b\u044f \u0442\u0435\u0441\u0442\u0438\u0440\u043e\u0432\u0430\u043d\u0438\u044f \u0434\u043e\u0441\u0442\u0443\u043f\u0435\u043d \u0440\u0430\u0431\u043e\u0447\u0438\u0439 \u043f\u0440\u043e\u0442\u043e\u0442\u0438\u043f \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442\u0430. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0430 \u0432 \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f\u0445 \u044f\u0434\u0440\u0430 Linux 5.11.4, 5.10.21, 5.4.103, 4.19.179, 4.14.224, 4.9.260 \u0438 4.4.260. \u041e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f \u043f\u0430\u043a\u0435\u0442\u043e\u0432 \u0441 \u044f\u0434\u0440\u043e\u043c \u0434\u043e\u0441\u0442\u0443\u043f\u043d\u044b \u0432 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u0430\u0445 Debian, Ubuntu, SUSE\/openSUSE,\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/uyazvimost-v-podsisteme-iscsi-yadra-linux-pozvolyayushhaya-podnyat-svoi-privilegii\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.0.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"sq_AL\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u043f\u043e\u0434\u0441\u0438\u0441\u0442\u0435\u043c\u0435 iSCSI \u044f\u0434\u0440\u0430 Linux, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043f\u043e\u0434\u043d\u044f\u0442\u044c \u0441\u0432\u043e\u0438 \u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0438 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0412 \u043a\u043e\u0434\u0435 \u043f\u043e\u0434\u0441\u0438\u0441\u0442\u0435\u043c\u044b iSCSI \u0438\u0437 \u0441\u043e\u0441\u0442\u0430\u0432\u0430 \u044f\u0434\u0440\u0430 Linux \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2021-27365), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043b\u043e\u043a\u0430\u043b\u044c\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u0432\u044b\u043f\u043e\u043b\u043d\u0438\u0442\u044c \u043a\u043e\u0434 \u043d\u0430 \u0443\u0440\u043e\u0432\u043d\u0435 \u044f\u0434\u0440\u0430 \u0438 \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0438 \u0432 \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u0414\u043b\u044f \u0442\u0435\u0441\u0442\u0438\u0440\u043e\u0432\u0430\u043d\u0438\u044f \u0434\u043e\u0441\u0442\u0443\u043f\u0435\u043d \u0440\u0430\u0431\u043e\u0447\u0438\u0439 \u043f\u0440\u043e\u0442\u043e\u0442\u0438\u043f \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442\u0430. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0430 \u0432 \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f\u0445 \u044f\u0434\u0440\u0430 Linux 5.11.4, 5.10.21, 5.4.103, 4.19.179, 4.14.224, 4.9.260 \u0438 4.4.260. \u041e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f \u043f\u0430\u043a\u0435\u0442\u043e\u0432 \u0441 \u044f\u0434\u0440\u043e\u043c \u0434\u043e\u0441\u0442\u0443\u043f\u043d\u044b \u0432 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u0430\u0445 Debian, Ubuntu, SUSE\/openSUSE,\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/uyazvimost-v-podsisteme-iscsi-yadra-linux-pozvolyayushhaya-podnyat-svoi-privilegii\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2021-03-13T20:22:40+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2021-03-13T20:22:40+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Vulnerabiliteti n\u00eb n\u00ebndeg\u00ebn iSCSI t\u00eb b\u00ebrtham\u00ebs Linux, i cili lejon rritjen e privilegjeve t\u00eb tij | ProHoster","description":"N\u00eb kodin e n\u00ebndeg\u00ebs iSCSI t\u00eb b\u00ebrtham\u00ebs Linux \u00ebsht\u00eb zbuluar nj\u00eb vulnerabilitet (CVE-2021-27365), i cili lejon nj\u00eb p\u00ebrdorues lokal pa privilegje t\u00eb ekzekutoj\u00eb kod n\u00eb nivelin e b\u00ebrtham\u00ebs dhe t\u00eb fitoj\u00eb privilegje root n\u00eb sistem. Nj\u00eb prototip funksional i shfryt\u00ebzuesit \u00ebsht\u00eb n\u00eb dispozicion p\u00ebr testim. Vulnerabiliteti \u00ebsht\u00eb eliminuar n\u00eb p\u00ebrdit\u00ebsimet e b\u00ebrtham\u00ebs Linux 5.11.4, 5.10.21, 5.4.103, 4.19.179, 4.14.224, 4.9.260 dhe 4.4.260. P\u00ebrdit\u00ebsimet e paketave me b\u00ebrtham\u00ebn jan\u00eb n\u00eb dispozicion n\u00eb shp\u00ebrndarjet Debian, Ubuntu, SUSE\/openSUSE.","canonical_url":"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/uyazvimost-v-podsisteme-iscsi-yadra-linux-pozvolyayushhaya-podnyat-svoi-privilegii","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"sq_AL","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u043f\u043e\u0434\u0441\u0438\u0441\u0442\u0435\u043c\u0435 iSCSI \u044f\u0434\u0440\u0430 Linux, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043f\u043e\u0434\u043d\u044f\u0442\u044c \u0441\u0432\u043e\u0438 \u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0438 | ProHoster","og:description":"\u0412 \u043a\u043e\u0434\u0435 \u043f\u043e\u0434\u0441\u0438\u0441\u0442\u0435\u043c\u044b iSCSI \u0438\u0437 \u0441\u043e\u0441\u0442\u0430\u0432\u0430 \u044f\u0434\u0440\u0430 Linux \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u0430 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c (CVE-2021-27365), \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u043d\u0435\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u043b\u043e\u043a\u0430\u043b\u044c\u043d\u043e\u043c\u0443 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044e \u0432\u044b\u043f\u043e\u043b\u043d\u0438\u0442\u044c \u043a\u043e\u0434 \u043d\u0430 \u0443\u0440\u043e\u0432\u043d\u0435 \u044f\u0434\u0440\u0430 \u0438 \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c root-\u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0438 \u0432 \u0441\u0438\u0441\u0442\u0435\u043c\u0435. \u0414\u043b\u044f \u0442\u0435\u0441\u0442\u0438\u0440\u043e\u0432\u0430\u043d\u0438\u044f \u0434\u043e\u0441\u0442\u0443\u043f\u0435\u043d \u0440\u0430\u0431\u043e\u0447\u0438\u0439 \u043f\u0440\u043e\u0442\u043e\u0442\u0438\u043f \u044d\u043a\u0441\u043f\u043b\u043e\u0438\u0442\u0430. \u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u0430 \u0432 \u043e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f\u0445 \u044f\u0434\u0440\u0430 Linux 5.11.4, 5.10.21, 5.4.103, 4.19.179, 4.14.224, 4.9.260 \u0438 4.4.260. \u041e\u0431\u043d\u043e\u0432\u043b\u0435\u043d\u0438\u044f \u043f\u0430\u043a\u0435\u0442\u043e\u0432 \u0441 \u044f\u0434\u0440\u043e\u043c \u0434\u043e\u0441\u0442\u0443\u043f\u043d\u044b \u0432 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u0430\u0445 Debian, Ubuntu, SUSE\/openSUSE,","og:url":"https:\/\/prohoster.info\/sq\/blog\/novosti-interneta\/uyazvimost-v-podsisteme-iscsi-yadra-linux-pozvolyayushhaya-podnyat-svoi-privilegii","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2021-03-13T20:22:40+00:00","article:modified_time":"2021-03-13T20:22:40+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"99421","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-03-13 20:38:21","updated":"2022-09-28 06:45:53","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/99421","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/comments?post=99421"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/99421\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/media\/99422"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/media?parent=99421"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/categories?post=99421"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/tags?post=99421"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}