Ho ba kotsing ho vhost-net e lumellang ho itšehla thajana ho feta lits'ebetsong tse thehiloeng ho QEMU-KVM

Senotswe tlhahisoleseding mabapi le bofokodi (CVE-2019-14835), e leng se u lumellang hore u fetele ka nģ'ane ho tsamaiso ea baeti KVM (qemu-kvm) 'me u tsamaise khoutu ea hau ka lehlakoreng la tikoloho ea moeti ho latela moelelo oa kernel ea Linux. Kotsi e rehiloe lebitso la V-gHost. Bothata bo lumella tsamaiso ea moeti ho etsa maemo bakeng sa ho phalla ha buffer ho vhost-net kernel module (network backend for virtio), e etsoang ka lehlakoreng la tikoloho ea moeti. Tlhaselo e ka etsoa ke mohlaseli ea nang le monyetla oa ho kena tsamaisong ea baeti nakong ea ts'ebetso ea ho falla ha mochini.

Ho Lokisa Bothata kenyelelitsoe e kenyellelitsoe ho Linux 5.3 kernel. E le mekhoa ea ho thibela ho ba kotsing, o ka thibela ho falla ha litsamaiso tsa baeti kapa oa tima mojule oa vhost-net (eketsa "blacklist vhost-net" ho /etc/modprobe.d/blacklist.conf). Bothata bo hlaha ho qala ho Linux kernel 2.6.34. Bofokoli bo lokisitsoe Botho и Fedora, empa e ntse e sa lokisoe ho Debian, Arch Linux, sebelisa и RHEL.

Source: opennet.ru

Eketsa ka tlhaloso