ื ื™ื™ึทืข ื•ื•ืขืจืกื™ืขืก ืคื•ืŸ Samba 4.14.4, 4.13.8 ืื•ืŸ 4.12.15 ืžื™ื˜ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ืคืึทืจืจื™ื›ื˜ืŸ

ืงืขืจืขืงื˜ื™ื•ื• ืจื™ืœื™ืกื™ื– ืคื•ืŸ ื“ื™ Samba ืคึผืขืงืœ 4.14.4, 4.13.8 ืื•ืŸ 4.12.15 ื”ืึธื‘ืŸ ืฉื•ื™ืŸ ืฆื•ื’ืขื’ืจื™ื™ื˜ ืฆื• ืขืœื™ืžื™ื ื™ืจืŸ ื“ื™ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ (CVE-2021-20254), ื•ื•ืึธืก ืื™ืŸ ืจื•ื‘ึฟ ืงืึทืกืขืก ืงืขื ืขืŸ ืคื™ืจืŸ ืฆื• ื“ื™ ืงืจืึทืš ืคื•ืŸ ื“ื™ smbd ืคึผืจืึธืฆืขืก, ืึธื‘ืขืจ ืื™ืŸ ื“ื™ ืขืจื’ืกื˜. ืคืึทืœ ืกืฆืขื ืึทืจ ื“ื™ ืžืขื’ืœืขื›ืงื™ื™ื˜ ืคื•ืŸ ืึทื ืึธื˜ืขืจื™ื™ื–ื“ ืึทืงืกืขืก ืฆื• ื˜ืขืงืขืก ืื•ืŸ ื“ื™ืœื™ื˜ื™ื ื’ ื˜ืขืงืขืก ืื•ื™ืฃ ืึท ื ืขืฅ ืฆืขื˜ื™ื™ืœื•ื ื’ ื“ื•ืจืš ืึท ืึทื ืคึผืจื™ื•ื•ื™ืœืึทื“ื–ืฉื“ ื‘ืึทื ื™ืฆืขืจ.

ื“ื™ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ืื™ื– ืจืขื›ื˜ ืฆื• ืึท ื˜ืขื•ืช ืื™ืŸ ื“ื™ sids_to_unixids () ืคึฟื•ื ืงืฆื™ืข ื•ื•ืึธืก ื’ืขืคึฟื™ืจื˜ ื“ืึทื˜ืŸ ืฆื• ืœื™ื™ืขื ืขืŸ ืคึฟื•ืŸ ืึท ื’ืขื’ื ื˜ ืึทืจื•ื™ืก ื“ื™ ื‘ืึทืคืขืจ ื’ืจืขื ืขืฅ ื•ื•ืขืŸ ืงืึทื ื•ื•ืขืจื˜ื™ื ื’ SIDs (Windows Security Identifier) โ€‹โ€‹ืฆื• GID (Unix Group ID). ื“ืขืจ ืคึผืจืึธื‘ืœืขื ืึทืงืขืจื– ื•ื•ืขืŸ ืึท ื ืขื’ืึทื˜ื™ื•ื• ืขืœืขืžืขื ื˜ ืื™ื– ืžื•ืกื™ืฃ ืฆื• ื“ื™ SID ืฆื• GID ืžืึทืคึผื™ื ื’ ืงืึทืฉ. Samba ื“ืขื•ื•ืขืœืึธืคึผืขืจืก ื–ืขื ืขืŸ ื ื™ืฉื˜ ื‘ื™ื›ื•ืœืช ืฆื• ื™ื“ืขื ื˜ื™ืคื™ืฆื™ืจืŸ ืคืึทืจืœืึธื–ืœืขืš ืื•ืŸ ืจื™ืคึผื™ื˜ืึทื‘ืึทืœ ื˜ื ืึธื™ื ืคึฟืึทืจ ื“ื™ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ืฆื• ืคึผืึทืกื™ืจืŸ, ืึธื‘ืขืจ ื“ืขืจ ืคืึธืจืฉืขืจ ื•ื•ืึธืก ื™ื™ื“ืขื ืึทืคื™ื™ื“ ื“ื™ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ื’ืœื•ื™ื‘ื˜ ืึทื– ื“ื™ ืคึผืจืึธื‘ืœืขื ืงืขื ืขืŸ ื–ื™ื™ืŸ ืขืงืกืคึผืœื•ื™ื˜ืึทื“ ืฆื• ื•ื™ืกืžืขืงืŸ ื˜ืขืงืขืก ืื•ื™ืฃ ืึท ื˜ืขืงืข ืกืขืจื•ื•ืขืจ ืึธืŸ ื’ืขื”ืขืจื™ืง ืจืขื›ื˜ ืฆื• ื“ื•ืจื›ืคื™ืจืŸ ื“ืขื ืึธืคึผืขืจืึทืฆื™ืข.

ืžืงื•ืจ: opennet.ru

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’