ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ื– ืื™ืŸ ื“ื™ eBPF ืกืึทื‘ืกื™ืกื˜ืขื ื•ื•ืึธืก ืœืึธื–ืŸ ืงืึธื“ ื“ื•ืจื›ืคื™ืจื•ื ื’ ืื•ื™ืฃ ื“ื™ ืœื™ื ื•ืงืก ืงืขืจืŸ ืžื“ืจื’ื”

ืฆื•ื•ื™ื™ ื ื™ื™ึทืข ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ื– ื–ืขื ืขืŸ ื™ื™ื“ืขื ืึทืคื™ื™ื“ ืื™ืŸ ื“ื™ eBPF ืกืึทื‘ืกื™ืกื˜ืขื, ื•ื•ืึธืก ืึทืœืึทื•ื– ืื™ืจ ืฆื• ืœื•ื™ืคืŸ ื”ืึทื ื“ืœืขืจืก ืื™ืŸ ื“ื™ ืœื™ื ื•ืงืก ืงืขืจืŸ ืื™ืŸ ืึท ืกืคึผืขืฆื™ืขืœ ื•ื•ื™ืจื˜ื•ืึทืœ ืžืึทืฉื™ืŸ ืžื™ื˜ JIT. ื‘ื™ื™ื“ืข ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ื– ืžืึทื›ืŸ ืขืก ืžืขื’ืœืขืš ืฆื• ื•ื™ืกืคื™ืจืŸ ื“ื™ื™ืŸ ืงืึธื“ ืžื™ื˜ ืงืขืจืŸ ืจืขื›ื˜, ืึทืจื•ื™ืก ืคื•ืŸ ืึทืŸ ืืคื’ืขื–ื•ื ื“ืขืจื˜ eBPF ื•ื•ื™ืจื˜ื•ืึทืœ ืžืึทืฉื™ืŸ. ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ื•ื•ืขื’ืŸ ื“ื™ ืคึผืจืึธื‘ืœืขืžืก ืื™ื– ืืจื•ื™ืก ื“ื•ืจืš ื“ื™ Zero Day Initiative ืžืึทื ืฉืึทืคึฟื˜, ื•ื•ืึธืก ืœื•ื™ืคื˜ ื“ื™ Pwn2Own ืคืึทืจืžืขืกื˜, ื‘ืขืฉืึทืก ื•ื•ืึธืก ื“ืขื ื™ืึธืจ ื“ืจื™ื™ ืื ืคืืœืŸ ืื•ื™ืฃ ื•ื‘ื•ื ื˜ื• ืœื™ื ื•ืงืก ื–ืขื ืขืŸ ื“ืขืžืึทื ืกื˜ืจื™ื™ื˜ื™ื“ ืึทื– ื’ืขื•ื•ื™ื™ื ื˜ ื‘ื™ื– ืึทื”ืขืจ ืื•ืžื‘ืึทืงืึทื ื˜ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ื– (ืฆื™ ื“ื™ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ื– ืื™ืŸ eBPF ื–ืขื ืขืŸ ืฉื™ื™ึทื›ื•ืช ืฆื• ื“ื™ ืื ืคืืœืŸ ืื™ื– ื ื™ืฉื˜ ื’ืขืžืืœื“ืŸ) .

  • CVE-2021-3490 - ื“ื™ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ืื™ื– ื’ืขืคึฟื™ืจื˜ ื“ื•ืจืš ืึท ืคืขืœืŸ ืคื•ืŸ 32-ื‘ื™ืกืœ ืึทื•ื˜-ืคื•ืŸ-ื‘ืึทื•ื ื“ ืงืึธื ื˜ืจืึธืœื™ืจื•ื ื’ ื•ื•ืขืŸ ืื™ืจ ื“ื•ืจื›ืคื™ืจืŸ ื‘ื™ื˜ื•ื•ื™ื™ื– AND, OR ืื•ืŸ XOR ืึทืคึผืขืจื™ื™ืฉืึทื ื– ืื™ืŸ eBPF ALU32. ืึท ืึทื˜ืึทืงืขืจ ืงืขื ืขืŸ ื ื•ืฆืŸ ื“ืขื ื˜ืขื•ืช ืฆื• ืœื™ื™ืขื ืขืŸ ืื•ืŸ ืฉืจื™ื™ึทื‘ืŸ ื“ืึทื˜ืŸ ืึทืจื•ื™ืก ื“ื™ ื’ืจืขื ืขืฅ ืคื•ืŸ ื“ื™ ืึทืœืึทืงื™ื™ื˜ื™ื“ ื‘ืึทืคืขืจ. ื“ืขืจ ืคึผืจืึธื‘ืœืขื ืžื™ื˜ XOR ืึทืคึผืขืจื™ื™ืฉืึทื ื– ืื™ื– ืกื˜ืึทืจื˜ื™ื ื’ ืคื•ืŸ ืงืขืจืŸ ื•ื•ืขืจืกื™ืข 5.7-rc1, ืื•ืŸ AND ืื•ืŸ OR - ืกื˜ืึทืจื˜ื™ื ื’ ืคื•ืŸ 5.10-rc1.
  • CVE-2021-3489 - ื“ื™ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ืื™ื– ื’ืขืคึฟื™ืจื˜ ื“ื•ืจืš ืึท ื˜ืขื•ืช ืื™ืŸ ื“ื™ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ ื“ื™ ืจื™ื ื’ ื‘ืึทืคืขืจ ืื•ืŸ ืื™ื– ืจืขื›ื˜ ืฆื• ื“ืขื ืคืึทืงื˜ ืึทื– ื“ื™ bpf_ringbuf_reserve ืคื•ื ืงืฆื™ืข ื”ืื˜ ื ื™ืฉื˜ ืงืึธื ื˜ืจืึธืœื™ืจืŸ ื“ื™ ืžืขื’ืœืขื›ืงื™ื™ื˜ ืึทื– ื“ื™ ื’ืจื™ื™ืก ืคื•ืŸ ื“ื™ ืึทืœืึทืงื™ื™ื˜ื™ื“ ื–ื›ึผืจื•ืŸ ื’ืขื’ื ื˜ ืงืขืŸ ื–ื™ื™ืŸ ื•ื•ื™ื™ื ื™ืงืขืจ ื•ื•ื™ ื“ื™ ืคืึทืงื˜ื™ืฉ ื’ืจื™ื™ืก ืคื•ืŸ ื“ื™ ืจื™ื ื’ื‘ื•ืฃ. ื“ืขืจ ืคึผืจืึธื‘ืœืขื ืื™ื– ืืจื•ื™ืก ื–ื™ื ื˜ ืžืขืœื“ื•ื ื’ 5.8-rc1.

ื“ื™ ืกื˜ืึทื˜ื•ืก ืคื•ืŸ ืคึผืึทื˜ื˜ืฉื™ื ื’ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ื– ืื™ืŸ ื“ื™ืกื˜ืจื™ื‘ื™ื•ืฉืึทื ื– ืงืขื ืขืŸ ื–ื™ื™ืŸ ื˜ืจืึทืงื˜ ืื•ื™ืฃ ื“ื™ ื‘ืœืขื˜ืขืจ: Ubuntu, Debian, RHEL, Fedora, SUSE, Arch). ืคื™ืงืกื™ื– ื–ืขื ืขืŸ ืื•ื™ืš ื‘ื ื™ืžืฆื ื•ื•ื™ ืคึผืึทื˜ืฉืึทื– (CVE-2021-3489, CVE-2021-3490). ืฆื™ ื“ื™ ืึทืจื•ื™ืกื’ืขื‘ืŸ ืงืขื ืขืŸ ื–ื™ื™ืŸ ืขืงืกืคึผืœื•ื™ื˜ืึทื“ ื“ืขืคึผืขื ื“ืก ืื•ื™ืฃ ืฆื™ ื“ื™ eBPF ืกื™ืกื˜ืขื ืจื•ืคืŸ ืื™ื– ืฆื•ื˜ืจื™ื˜ืœืขืš ืฆื• ื“ืขืจ ื‘ืึทื ื™ืฆืขืจ. ืคึฟืึทืจ ื‘ื™ื™ึทืฉืคึผื™ืœ, ืื™ืŸ ื“ื™ ืคืขืœื™ืงื™ื™ึทื˜ ืงืึทื ืคื™ื’ื™ืขืจื™ื™ืฉืึทืŸ ืื™ืŸ RHEL, ืขืงืกืคึผืœื•ื™ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ ื“ื™ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ืจื™ืงื•ื•ื™ื™ืขืจื– ื“ืขืจ ื‘ืึทื ื™ืฆืขืจ ืฆื• ื”ืึธื‘ืŸ CAP_SYS_ADMIN ืจืขื›ื˜.

ืกืขืคึผืขืจืึทื˜ืœื™, ืžื™ืจ ืงืขื ืขืŸ ื˜ืึธืŸ ืืŸ ืื ื“ืขืจ ื•ื•ืึทืœื ืขืจืึทื‘ื™ืœื™ื˜ื™ ืื™ืŸ ื“ื™ ืœื™ื ื•ืงืก ืงืขืจืŸ - CVE-2021-32606, ื•ื•ืึธืก ืึทืœืึทื•ื– ืึท ื”ื™ื’ืข ื‘ืึทื ื™ืฆืขืจ ืฆื• ื›ืึทืคึผืŸ ื–ื™ื™ืขืจ ืคึผืจื™ื•ื•ื™ืœืึทื“ื–ืฉืึทื– ืฆื• ื“ืขืจ ื•ื•ืึธืจืฆืœ ืžื“ืจื’ื”. ื“ืขืจ ืคึผืจืึธื‘ืœืขื ืื™ื– ืงืขื ื˜ื™ืง ื–ื™ื ื˜ ืœื™ื ื•ืงืก ืงืขืจืŸ 5.11 ืื•ืŸ ืื™ื– ื’ืขืคึฟื™ืจื˜ ื“ื•ืจืš ืึท ืจืึทืกืข ืฆื•ืฉื˜ืึทื ื“ ืื™ืŸ ื“ื™ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ ื“ื™ CAN ISOTP ืคึผืจืึธื˜ืึธืงืึธืœ, ื•ื•ืึธืก ืžืื›ื˜ ืขืก ืžืขื’ืœืขืš ืฆื• ื˜ื•ื™ืฉืŸ ื“ื™ ื›ืึธืœืขืœ ื‘ื™ื™ื ื“ื™ื ื’ ืคึผืึทืจืึทืžืขื˜ืขืจืก ืจืขื›ื˜ ืฆื• ื“ืขืจ ืคืขืœืŸ ืคื•ืŸ ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ ื“ื™ ื’ืขื”ืขืจื™ืง ืœืึทืงืก ืื™ืŸ ื“ื™ isotp_setsockopt () ืคึฟื•ื ืงืฆื™ืข. ื•ื•ืขืŸ ืคึผืจืึทืกืขืกื™ื ื’ ื“ื™ CAN_ISOTP_SF_BROADCAST ืคืึธืŸ.

ื ืึธืš ื“ื™ ISOTP ื›ืึธืœืขืœ ืื™ื– ืคืืจืžืื›ื˜, ื“ื™ ื‘ื™ื™ื ื“ื™ื ื’ ืฆื• ื“ื™ ื‘ืึทืงื•ืžืขืจ ื›ืึธืœืขืœ ื‘ืœื™ื™ื‘ื˜ ืื™ืŸ ื•ื•ื™ืจืงื•ื ื’, ื•ื•ืึธืก ืงืขื ืขืŸ ืคืึธืจื–ืขืฆืŸ ืฆื• ื ื•ืฆืŸ ื“ื™ ืกื˜ืจืึทืงื˜ืฉืขืจื– ืคึฟืึทืจื‘ื•ื ื“ืŸ ืžื™ื˜ ื“ื™ ื›ืึธืœืขืœ ื ืึธืš ื“ื™ ื–ื™ืงืึธืจืŸ ืคึฟืึทืจื‘ื•ื ื“ืŸ ืžื™ื˜ ื–ื™ื™ ืื™ื– ื‘ืืคืจื™ื™ื˜ (ื ื•ืฆืŸ-ื ืึธืš-ืคืจื™ื™ ืจืขื›ื˜ ืฆื• ื“ืขืจ ืจื•ืฃ ืฆื• ืึท isotp_sock ืกื˜ืจื•ืงื˜ื•ืจ ื•ื•ืึธืก ืื™ื– ืฉื•ื™ืŸ ื‘ืืคืจื™ื™ื˜ ื•ื•ืขืŸ isotp_rcv () ืื™ื– ื’ืขืจื•ืคืŸ). ื“ื•ืจืš ื“ืึทื˜ืŸ ืžืึทื ื™ืคึผื™ืึทืœื™ื™ืฉืึทืŸ, ืื™ืจ ืงืขื ืขืŸ ืึธื•ื•ื•ืขืจืจื™ื™ื“ ื“ื™ ื˜ื™ื™ึทื˜ืœ ืฆื• ื“ื™ sk_error_report () ืคึฟื•ื ืงืฆื™ืข ืื•ืŸ ื•ื™ืกืคื™ืจืŸ ื“ื™ื™ืŸ ืงืึธื“ ืื•ื™ืฃ ื“ื™ ืงืขืจืŸ ืžื“ืจื’ื”.

ืžืงื•ืจ: opennet.ru

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’