Lintlafatso tsa Java SE, MySQL, VirtualBox le lihlahisoa tse ling tsa Oracle tse nang le bofokoli tse tsitsitseng

Khampani ea Oracle e phatlalalitsoeng tokollo e reriloeng ea lintlafatso ho lihlahisoa tsa bona (Critical Patch Update), e reretsoeng ho felisa mathata a bohlokoa le bofokoli. E lokisitsoe ntlafatsong ea Mmesa 297 bofokoli.

Litaba Java SE 12.0.1, 11.0.3 le 8u212 lintlha tse 5 tsa ts'ireletso tse tsitsitseng. Bofokoli bohle bo ka sebelisoa ka thoko ntle le netefatso. Kotsi e le 'ngoe e ikhethileng sethaleng sa Windows abeloa CVSS Score 9.0 (CVE-2019-2699), e tsamaellanang le boemo bo boima ba bohlokoa mme e lumella mosebelisi ea sa netefatsoang holim'a marang-rang hore a sekisetse lits'ebetso tsa Java SE. Likotsi tse peli tsamaisong e ka tlase ea ts'ebetso ea lits'oants'o tsa 2D li fuoe lintlha tsa 8.1 (CVE-2019-2697, CVE-2019-2698). Lintlha ha li so hlahisoe.

Ntle le litaba tsa Java SE, bofokoli bo phatlalalitsoe lihlahisoa tse ling tsa Oracle, ho kenyelletsa:

  • 40 bofokoli ho MySQL (boemo bo phahameng ba kotsi 7.5). Bothata bo kotsi ka ho fetisisa
    (CVE-2019-2632) e ama tsamaiso ea polaka-in ea netefatso. Litaba li tla lokisoa litokollong MySQL Community Server 8.0.16, 5.7.26 le 5.6.44.

  • 12 bofokoli ho VirtualBox, eo 7 ea eona e leng ea bohlokoa (CVSS Score 8.8). Bofokoli bo kentsoe lintlafatsong VirtualBox 6.0.6 le 5.2.28 (ka Hlokomela taba ea ho felisa mathata a ts'ireletso ha e phatlalatsoe ka ho lokolloa). Lintlha ha li tlalehoe, empa ho latela boemo ba CVSS, bofokoli bo lokisitsoe, bontshitse tlholisanong ea Pwn2Own 2019 le ho u lumella ho etsa khoutu ka lehlakoreng la sistimi e amohelang baeti ho tsoa tikolohong ea sistimi ea baeti.

    lumella hore u hlasele tsamaiso ea moeti ho tloha sebakeng sa baeti.

  • 3 bofokoli ho Solaris (boima bo kaholimo ho 5.3 - litaba tse ho molaoli oa sephutheloana oa IPS, SunSSH, le ts'ebeletso ea taolo ea linotlolo. Litaba li lokisitsoe tokollong.
    Solaris 11.4 SRU8, e ileng ea boela ea tsosolosa tšehetso bakeng sa lilaebrari tsa UCB (libucb, librpcsoc, libdbm, libtermcap, libcurses) le tšebeletso ea fc-fabric, mefuta e ntlafalitsoeng ea liphutheloana.
    ibus 1.5.19, NTP 4.2.8p12,
    Firefox 60.6.0esr
    TLAMA 9.11.6
    OpenSSL 1.0.2r,
    MySQL 5.6.43 & 5.7.25,
    libxml2 2.9.9,
    libxslt 1.1.33,
    Wireshark 2.6.7
    nurses 6.1.0.20190105,
    Apache httpd 2.4.38,
    5.22.

Source: opennet.ru

Eketsa ka tlhaloso