Uhlaziyo lweJava SE, MySQL, VirtualBox kunye nezinye iimveliso zeOracle ezinobuthathaka obulungisiweyo

Inkampani ye-Oracle ipapashiwe ukukhutshwa okucwangcisiweyo kohlaziyo kwiimveliso zabo (i-Critical Patch Update), ejoliswe ekupheliseni iingxaki ezinzima kunye nobuthathaka. Kuhlaziyo lukaJanuwari, imali isusiwe 397 ubuthathaka.

Imiba Java SE 14.0.1, 11.0.7 kunye 8u251 isusiwe 15 imiba yokhuseleko. Bonke ubuthathaka bunokusetyenziswa kude ngaphandle kokuqinisekiswa. Elona nqanaba liphezulu lobunzima yi-8.3, enikezelwe kwiingxaki kwiilayibrari (CVE-2020-2803, CVE-2020-2805). Ubuthathaka obubini (kwi-libxslt kunye ne-JSSE) banamanqanaba obunzima be-8.1 kunye ne-7.5.

Ukongeza kwimiba yeJava SE, ubuthathaka benziwe esidlangalaleni kwezinye iimveliso zeOracle, kubandakanya:

  • 35 ubuthathaka kwiseva yeMySQL kunye
    Ubuthathaka obu-2 ekuphunyezweni komthengi we-MySQL (C API). Inqanaba eliphezulu lobunzima be-9.8 linikezelwe kwi-CVE-2019-5482, ebonakala xa ihlanganiswe nenkxaso ye-cURL. Imiba ilungisiwe kukhupho Umncedisi woLuntu we-MySQL 8.0.20, 5.7.30 kunye no-5.6.49.

  • 19 ubuthathaka, apho iingxaki ze-7 zinenqanaba elibalulekileyo lengozi (CVSS enkulu kune-8). Oku kubandakanya ukulungisa ubuthathaka obusetyenziswa kuhlaselo olubonakaliswe kukhuphiswano Pwn2Yenziwe ngo-2020 kunye nokuvumela, ngokukhohlisa kwicala lenkqubo yeendwendwe, ukufumana ufikelelo kwindlela yokusingatha kwaye wenze ikhowudi enamalungelo e-hypervisor. Ubuthathaka bulungisiwe kuhlaziyo VirtualBox 6.1.6, 6.0.20 kunye 5.2.40.
  • 6 ubuthathaka eSolaris. Ubuninzi benqanaba lengozi ye-8.8 - iqhutywe ekuhlaleni ingxaki KwiMeko-bume yeDesktop Eqhelekileyo, ivumela umsebenzisi ongenalungelo ukuba aphumeze ikhowudi ngamalungelo engcambu. Imiba nayo ilungisiwe kwimodyuli yekernel ephumeza iSMB protocol, kwiWhodo, nakumyalelo we-svcbundle SMF. Imiba ilungisiwe kuhlaziyo lwayizolo I-Solaris 11.4 SRU 20.

umthombo: opennet.ru

Yongeza izimvo