Kotsi ho mokhanni oa vhost-net ho tsoa ho Linux kernel

Ho mokhanni oa vhost-net, o netefatsang ts'ebetso ea virtio net ka lehlakoreng la tikoloho ea moamoheli, tsebahatsoa tlokotsi (CVE-2020-10942), e lumellang mosebelisi oa lehae ho qala kernel stack e khaphatsehang ka ho romella ioctl e hlophisitsoeng ka ho khetheha (VHOST_NET_SET_BACKEND) ho sesebelisoa sa /dev/vhost-net. Bothata bo bakoa ke khaello ea netefatso e nepahetseng ea likahare tsa lebala la sk_family ho get_raw_socket() khoutu ea ts'ebetso.

Ho ea ka lintlha tsa pele, ho ba kotsing ho ka sebelisoa ho etsa tlhaselo ea DoS ea sebakeng seo ka ho baka ho senyeha ha kernel (ha ho na tlhahisoleseding e mabapi le tšebeliso ea li-stack overflows tse bakoang ke ho ba kotsing ea ho hlophisa ts'ebetso ea khoutu).
Ho ba tlokotsing felisitsoe ho ntlafatso ea Linux kernel 5.5.8. Bakeng sa lipehelo, u ka latela ho lokolloa ha lintlafatso tsa sephutheloana maqepheng Debian, Botho, RHEL, SUSE/openSUSE, Fedora, Arch.

Source: opennet.ru

Eketsa ka tlhaloso