Uhlaziyo lweJava SE, MySQL, VirtualBox kunye nezinye iimveliso zeOracle ezinobuthathaka obulungisiweyo

Inkampani ye-Oracle ipapashiwe ukukhutshwa okucwangcisiweyo kohlaziyo kwiimveliso zayo (i-Critical Patch Update), ejolise ekupheliseni iingxaki ezibalulekileyo kunye nobuthathaka. Kuhlaziyo lukaJulayi, iyonke 319 ubuthathaka.

Imiba Java SE 12.0.2, 11.0.4 kunye 8u221 Imiba ye-10 yokhuseleko ilungisiwe. Ubuthathaka obu-9 bunokusetyenziswa kude ngaphandle kokuqinisekiswa. Elona nqanaba liphezulu linikezelweyo lobunzima yi-6.8 (ubuthathaka kwi-libpng). Akukho miba iphezulu okanye ibalulekileyo ichongiwe eya kuvumela umsebenzisi ongagunyaziswanga kwinethiwekhi ukuba achaphazele usetyenziso lweJava SE.

Ukongeza kwimiba yeJava SE, ubuthathaka benziwe esidlangalaleni kwezinye iimveliso zeOracle, kubandakanya:

  • 43 ubuthathaka kwi-MySQL (inqanaba eliphezulu lobunzima 9.8, ebonisa ingxaki ebalulekileyo). Eyona ngxaki iyingozi
    (I-CVE-2019-3822) idityaniswa ne isithinteli siyaphuphuma kwi NTLM header yokwahlulahlula ikhowudi kwilayibrari libcurl, enokusetyenziswa ukuhlasela ukude umncedisi we MySQL ngumsebenzisi ongagunyaziswanga. Phantse zonke ezinye iingxaki zivela kuphela ukuba kukho ukufikelela okuqinisekisiweyo kwi-DBMS. Ukuphela kokuphela kobuthathaka kwiShell: Ulawulo / Iqela le-InnoDB, elinikwe inqanaba lobunzima be-7.5. Imiba iya kulungiswa kukhupho Umncedisi woLuntu we-MySQL 8.0.17, 5.7.27 kunye no-5.6.45.

  • 14 ubuthathaka kwi-VirtualBox, apho i-3 iyingozi kakhulu (i-CVSS Score 8.2 kunye ne-8.8). Ubuthathaka bulungisiwe kuhlaziyo VirtualBox 6.0.10 kunye 5.2.32 (in Phawula into yokuba iingxaki zokhuseleko zisonjululwe ayizange ibhengezwe phambi kokukhululwa). Iinkcukacha azibonelelwanga, kodwa, ngokujonga inqanaba le-CVSS, ubuthathaka obuvumela ukuba ikhowudi iqhutywe kwicala lenkqubo yenginginya ukusuka kwimeko-bume yenkqubo yeendwendwe kuye kwapheliswa;
  • 10 ubuthathaka eSolaris (inqanaba eliphezulu lobunzima 9.1 -
    Ubuthathaka obunxulumene ne-IPv6 kwi-kernel (CVE-2019-5597) ivumela uhlaselo olukude (iinkcukacha azibonelelwanga). Ubuthathaka obubini bukwanomgangatho wobungqongqo obalulekileyo we-8.8 - imiba enokusetyenziswa ekuhlaleni kwiMeko-bume yeDesktop Eqhelekileyo kunye nezinto eziluncedo zabaxumi ze-LDAP. Imiba enenqanaba elibukhali elingaphezulu kwe-7 likwabandakanya ubuthathaka obunokusebenziseka ukude kwi-ICMPv6 kunye nabaphathi be-NFS kwi-Solaris kernel, kunye neengxaki zendawo kwiifayile zefayile kunye ne-Gnuplot.

umthombo: opennet.ru

Yongeza izimvo