ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงืŸ OpenVPN 2.5.2 ืื•ืŸ 2.4.11 ืžื™ื˜ ืคึฟืึทืจืจื™ื›ื˜ื•ื ื’ืขืŸ ืคึฟืึทืจ ืฉื•ื•ืึทื›ืงื™ื™ื˜ืŸ

ืงืืจืขืงื˜ื™ื•ื•ืข ืžืขืœื“ื•ื ื’ืขืŸ ื–ืขื ืขืŸ ืฆื•ื’ืขื’ืจื™ื™ื˜ ื’ืขื•ื•ืึธืจืŸ OpenVPN 2.5.2 ืื•ืŸ 2.4.11, ื ืคึผืขืงืœ ืคึฟืึทืจ ืฉืึทืคึฟืŸ ื•ื•ื™ืจื˜ื•ืึทืœ ืคึผืจื™ื•ื•ืึทื˜ืข ื ืขื˜ื•ื•ืึธืจืงืก, ื•ื•ืึธืก ืœืึธื–ื˜ ืืฒึทืš ืึธืจื’ืึทื ื™ื–ื™ืจืŸ ืึทืŸ ืขื ืงืจื™ืคึผื˜ืขื“ ืคึฟืึทืจื‘ื™ื ื“ื•ื ื’ ืฆื•ื•ื™ืฉืŸ ืฆื•ื•ื™ื™ ืงืœื™ืขื ื˜ ืžืึทืฉื™ื ืขืŸ ืึธื“ืขืจ ืฆื•ืฉื˜ืขืœืŸ ืึท ืฆืขื ื˜ืจืึทืœื™ื–ื™ืจื˜ืŸ VPN ืกืขืจื•ื•ืขืจ ืคึฟืึทืจ ื“ืขืจ ืกื™ื™ืžืึทืœื˜ื™ื™ื ื™ืึทืก ืึธืคึผืขืจืึทืฆื™ืข ืคึฟื•ืŸ ืขื˜ืœืขื›ืข ืงืœื™ืขื ื˜ืŸ. ืงืึธื“ OpenVPN ืคืึทืจืฉืคึผืจื™ื™ื˜ ืื•ื ื˜ืขืจ ื“ืขืจ GPLv2 ืœื™ืฆืขื ืฅ, ื•ื•ืขืจืŸ ืคืึทืจื˜ื™ืงืข ื‘ื™ื™ื ืขืจื™ ืคึผืึทืงืึทื“ื–ืฉืึทื– ื’ืขื ืขืจื™ืจื˜ ืคึฟืึทืจ Debian, Ubuntu, CentOS, RHEL ืื•ืŸ Windows.

ื“ื™ ื ื™ื™ืข ืื•ื™ืกื’ืื‘ืขืก ืคืืจืจืขื›ื˜ืŸ ื ืฉื•ื•ืื›ืงื™ื™ื˜ (CVE-2020-15078) ื•ื•ืืก ืขืจืœื•ื™ื‘ื˜ ื ื•ื•ื™ื™ื˜ืขืจืŸ ืื˜ืืงื™ืจืขืจ ืฆื• ื‘ื™ื™ื’ื™ื™ืŸ ืื•ื™ื˜ืขื ื˜ื™ืคื™ืงืืฆื™ืข ืื•ืŸ ืฆื•ื˜ืจื™ื˜ ื‘ืื’ืจืขื ืขืฆื•ื ื’ืขืŸ ื›ื“ื™ ืฆื• ืœื™ืขืงืŸ VPN ืกืขื˜ื™ื ื’ืก. ื“ื™ ืคืจืื‘ืœืขื ื‘ืื˜ืจืืคื˜ ื ืืจ ืกืขืจื•ื•ืขืจืก ื•ื•ืืก ื–ืขื ืขืŸ ืงืื ืคื™ื’ื•ืจื™ืจื˜ ืฆื• ื ื™ืฆืŸ ืคืืจืฉืคืขื˜ื™ืงื˜ืข ืื•ื™ื˜ืขื ื˜ื™ืคื™ืงืืฆื™ืข (deferred_auth). ืื•ื ื˜ืขืจ ื’ืขื•ื•ื™ืกืข ืื•ืžืฉื˜ืขื ื“ืŸ, ืงืขืŸ ืืŸ ืื˜ืืงื™ืจืขืจ ืฆื•ื•ื™ื ื’ืขืŸ ื“ืขื ืกืขืจื•ื•ืขืจ ืฆื•ืจื™ืงืฆื•ื’ืขื‘ืŸ ื PUSH_REPLY ืžืขืกืขื“ื–ืฉ ื•ื•ืืก ืื ื˜ื”ืืœื˜ ื“ื™ ืกืขื˜ื™ื ื’ืก. ื•ื•ืคึผืŸ ืื™ื™ื“ืขืจ ืฉื™ืงืŸ ื“ื™ AUTH_FAILED ืžืขืกืขื“ื–ืฉ. ื•ื•ืขืŸ ืงืืžื‘ื™ื ื™ืจื˜ ืžื™ื˜ืŸ "--auth-gen-token" ืคืืจืืžืขื˜ืขืจ ืื“ืขืจ ื ื‘ืื ื™ืฆืขืจ'ืก ืื™ื™ื’ืขื ืขื ื˜ืื•ืงืขืŸ-ื‘ืื–ื™ืจื˜ืŸ ืื•ื™ื˜ืขื ื˜ื™ืคื™ืงืืฆื™ืข ืกื›ืขืžืข, ืงืขืŸ ื“ื™ ืฉื•ื•ืื›ืงื™ื™ื˜ ืคื™ืจืŸ ืฆื• VPN ืฆื•ื˜ืจื™ื˜ ื ื™ืฆื ื“ื™ื’ ื ื ื™ืฉื˜-ืคื•ื ืงืฆื™ืื ืขืœืŸ ืืงืื•ื ื˜.

ืฆื•ื•ื™ืฉืŸ ื“ื™ ื ื™ืฉื˜-ื–ื™ื›ืขืจื”ื™ื™ื˜ ืขื ื“ืขืจื•ื ื’ืขืŸ, ื•ื•ืขืจื˜ ื“ื™ ืื•ื™ืกื’ืื‘ืข ืคื•ืŸ โ€‹โ€‹ืื™ื ืคืืจืžืืฆื™ืข ื•ื•ืขื’ืŸ ื“ื™ TLS ืฆื™ืคืขืจืŸ ื•ื•ืืก ื–ืขื ืขืŸ ืžืกื›ื™ื ื’ืขื•ื•ืขืŸ ืคืืจ ื‘ืื ื•ืฅ ื“ื•ืจืš ื“ืขื ืงืœื™ืขื ื˜ ืคืืจื‘ืจื™ื™ื˜ืขืจื˜ ืื•ืŸ ืกืขืจื•ื•ืขืจื“ืึธืก ื ืขืžื˜ ืึทืจืฒึทืŸ ืจื™ื›ื˜ื™ืงืข ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ื•ื•ืขื’ืŸ TLS 1.3 ืื•ืŸ EC ืกืขืจื˜ื™ืคึฟื™ืงืึทื˜ ืฉื˜ื™ืฆืข. ื“ืขืจืฆื•, ื“ื™ CRL ื˜ืขืงืข ืžื™ื˜ ื“ืขืจ ืจืฉื™ืžื” ืคึฟื•ืŸ ืึธืคึผื’ืขืจื•ืคืขื ืข ืกืขืจื˜ื™ืคึฟื™ืงืึทื˜ืŸ ืื™ื– ื’ืขื•ื•ืขืŸ ืคึฟืขืœื ื“ื™ืง ื‘ืขืชืŸ ืกื˜ืึทืจื˜ืึทืคึผ. OpenVPN ื•ื•ืขืจื˜ ืื™ืฆื˜ ื‘ืื”ืื ื“ืœื˜ ื•ื•ื™ ืึท ื˜ืขื•ืช ื•ื•ืึธืก ืจืขื–ื•ืœื˜ื™ืจื˜ ืื™ืŸ ื˜ืขืจืžืึทื ื™ื™ืฉืึทืŸ.

ืžืงื•ืจ: opennet.ru

ืงื•ื™ืคืŸ ืคืึทืจืœืึธื–ืœืขืš ื”ืึธืกื˜ื™ื ื’ ืคึฟืึทืจ ื–ื™ื™ื˜ืœืขืš ืžื™ื˜ DDoS ืฉื•ืฅ, VPS VDS ืกืขืจื•ื•ืขืจืก ๐Ÿ”ฅ ืงื•ื™ืคื˜ ืคืึทืจืœืขืกืœืขื›ืข ื•ื•ืขื‘ื–ื™ื™ื˜ืœ ื”ืึธืกื˜ื™ื ื’ ืžื™ื˜ DDoS ืฉื•ืฅ, VPS VDS ืกืขืจื•ื•ืขืจืก | ProHoster