ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ืื™ืŸ ื‘ื™ื˜ื‘ื•ืงืงืขื˜ ืกืขืจื•ื•ื™ืจืขืจ ืœื™ื“ื™ื ื’ ืฆื• ืงืึธื“ ื“ื•ืจื›ืคื™ืจื•ื ื’ ืื•ื™ืฃ ื“ื™ ืกืขืจื•ื•ืขืจ

ื ืงืจื™ื˜ื™ืฉ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ (CVE-2022-43781) ืื™ื– ื™ื™ื“ืขื ืึทืคื™ื™ื“ ืื™ืŸ Bitbucket Server, ืึท ืคึผืขืงืœ ืคึฟืึทืจ ื“ื™ืคึผืœื•ื™ื™ื ื’ ืึท ื•ื•ืขื‘ ืฆื•ื‘ื™ื ื“ ืคึฟืึทืจ ืืจื‘ืขื˜ืŸ ืžื™ื˜ ื’ื™ื˜ ืจื™ืคึผืึทื–ืึทื˜ืึธืจื™ื–, ื•ื•ืึธืก ืึทืœืึทื•ื– ืึท ื•ื•ื™ื™ึทื˜ ืึทื˜ืึทืงืขืจ ืฆื• ื“ืขืจื’ืจื™ื™ื›ืŸ ืงืึธื“ ื“ื•ืจื›ืคื™ืจื•ื ื’ ืื•ื™ืฃ ื“ื™ ืกืขืจื•ื•ืขืจ. ื“ื™ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ืงืขื ืขืŸ ื–ื™ื™ืŸ ืขืงืกืคึผืœื•ื™ื˜ืึทื“ ื“ื•ืจืš ืึท ืึทื ืึธื˜ืขื ื˜ื™ืงื™ื™ื˜ื™ื“ ื‘ืึทื ื™ืฆืขืจ ืื•ื™ื‘ ื–ื™ืš-ืจืขื’ื™ืกื˜ืจืึทืฆื™ืข ืื™ื– ืขืจืœื•ื™ื‘ื˜ ืื•ื™ืฃ ื“ื™ ืกืขืจื•ื•ืขืจ (ื“ื™ "ืึทืœืึทื• ืฆื™ื‘ื•ืจ ืกื™ื’ื ื•ืคึผ" ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ ืื™ื– ืขื ื™ื™ื‘ืึทืœื“). ืึธืคึผืขืจืึทืฆื™ืข ืื™ื– ืื•ื™ืš ืžืขื’ืœืขืš ื“ื•ืจืš ืึท ืึธื˜ืขื ื˜ืึทืงื™ื™ื˜ืึทื“ ื‘ืึทื ื™ืฆืขืจ ื•ื•ืืก ื”ืื˜ ืจืขื›ื˜ ืฆื• ื˜ื•ื™ืฉืŸ ื“ื™ ื ืืžืขืŸ (ื“"ื” ADMIN ืึธื“ืขืจ SYS_ADMIN ืจืขื›ื˜). ืงื™ื™ืŸ ื“ืขื˜ืึทื™ืœืก ื”ืึธื‘ืŸ ืฉื•ื™ืŸ ืฆื•ื’ืขืฉื˜ืขืœื˜, ืึทืœืข ื•ื•ืึธืก ืื™ื– ื‘ืึทื•ื•ื•ืกื˜ ืื™ื– ืึทื– ื“ื™ ืคึผืจืึธื‘ืœืขื ืื™ื– ื’ืขืคึฟื™ืจื˜ ื“ื•ืจืš ื“ื™ ืžืขื’ืœืขื›ืงื™ื™ื˜ ืคื•ืŸ ื‘ืึทืคึฟืขืœ ืกืึทื‘ืกื˜ื™ื˜ื•ืฉืึทืŸ ื“ื•ืจืš ืกื•ื•ื™ื•ื•ืข ื•ื•ืขืจื™ืึทื‘ืึทืœื–.

ื“ื™ ืึทืจื•ื™ืกื’ืขื‘ืŸ ืื™ื– ืืจื•ื™ืก ืื™ืŸ ื“ื™ 7.x ืื•ืŸ 8.x ืฆื•ื•ื™ื™ื’ืŸ, ืื•ืŸ ืื™ื– ืคืึทืจืคืขืกื˜ื™ืงื˜ ืื™ืŸ ื“ื™ Bitbucket Server ืื•ืŸ Bitbucket Data Center ืจื™ืœื™ืกื™ื– 8.5.0, 8.4.2, 7.17.12, 7.21.6, 8.0.5, 8.1.5, 8.3.3, 8.2.4, 7.6.19. ื“ื™ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ืงืขืŸ ื ื™ืฉื˜ ื“ืขืจืฉื™ื™ึทื ืขืŸ ืื™ืŸ ื“ื™ bitbucket.org ื•ื•ืึธืœืงืŸ ื“ื™ื ืกื˜, ืึธื‘ืขืจ ื‘ืœื•ื™ื– ืึทืคืขืงืฅ ืคึผืจืึธื“ื•ืงื˜ืŸ ื•ื•ืึธืก ื–ืขื ืขืŸ ืื™ื ืกื˜ืึทืœื™ืจืŸ ืื•ื™ืฃ ื–ื™ื™ืขืจ ืœืึธืงืึทืœ. ื“ืขืจ ืคึผืจืึธื‘ืœืขื ืื•ื™ืš ืงืขืŸ ื ื™ืฉื˜ ื“ืขืจืฉื™ื™ึทื ืขืŸ ืื•ื™ืฃ ื‘ื™ื˜ื‘ื•ืงืงืขื˜ ืกืขืจื•ื•ื™ืจืขืจ ืื•ืŸ ื“ืึทื˜ืึท ืฆืขื ื˜ืขืจ ืกืขืจื•ื•ืขืจืก, ื•ื•ืึธืก ื ื•ืฆืŸ ื“ื™ PostgreSQL DBMS ืฆื• ืงืจืึธื ื“ืึทื˜ืŸ.

ืžืงื•ืจ: opennet.ru

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’