Ukuba sengozini okubalulekile kwe-CVE-2019-12815 ku-ProFTPd

Ukuba sengozini okubalulekile (CVE-2019-12815) kukhonjwe ku-ProFTPd (iseva ye-ftp edumile). Ukusebenza kukuvumela ukuthi ukopishe amafayela ngaphakathi kweseva ngaphandle kokuqinisekisa usebenzisa imiyalo ye-“site cpfr” kanye ne-“site cpto”, okuhlanganisa nakumaseva anokufinyelela okungaziwa.

Ukuba sengozini kubangelwa ukuhlola okungalungile kwemikhawulo yokufinyelela yokufunda nokubhala idatha (Limit READ and Limit WRITE) kumojula ye-mod_copy, esetshenziswa ngokuzenzakalelayo futhi enikwe amandla kumaphakheji e-proftpd ekusatshalalisweni okuningi.

Zonke izinguqulo zamanje kukho konke ukusatshalaliswa ngaphandle kwe-Fedora ziyathinteka. Ukulungiswa okwamanje kutholakala njenge isichibi. Njengesixazululo sesikhashana, kunconywa ukukhubaza i-mod_copy.

Source: linux.org.ru

Engeza amazwana