Umphathi wephakheji we-APT ubuyekeza 2.9.20

I-APT 2.9.20 (Ithuluzi Lephakheji Elithuthukisiwe) selikhishwe. Igatsha le-2.9.x liyahlolwa futhi lisetshenziselwa ukuthuthukisa ukusebenza kwenguqulo yesikhathi esizayo eqinile ye-APT 3.0, okuthi uma isizinzile, ihlanganiswe ku Debian Ukuhlolwa futhi kuzofakwa ekukhishweni okukhulu okulandelayo Debian, futhi kuzongezwa futhi kudathabheyisi yephakheji Ubuntu.

Izinguquko kusukela esimemezelweni sokugcina:

  • I-APT 2.9.16: Kulungiswe ukuhlehla okwavela ngemva kokushintsha izindlela zokusebenza nezitolo ezibalulekile kunguqulo 2.9.15 futhi kwabangela ukunganeliseki ngomnakekeli we-dpkg ngenxa yokuyekiswa komsebenzi kwamanye amaqoqo.
  • I-APT 2.9.17:
    • Isixhumi esibonakalayo esingabonakali sokusebenza ngama-hashe sethuliwe, sisetshenziswe njengengxenye yomsebenzi wokuqeda ukubopha okuqinile kumtapo wolwazi owodwa we-cryptographic.
    • Kulungiswe inkinga ku-algorithm yokuqhathanisa yenguqulo evele lapho kusetshenziswa inketho "--no-strict-pinning".
    • Uma ubonisa imilayezo yokuxilonga, izinga lokususa iphutha liyanakwa.
    • Okukhulunyiwe kwensiza ye-apt-key kusuliwe.

      Umhlahlandlela ongeziwe wokuthi ungayilungisa kanjani imithombo ngokuphephile kukhasi le-apt-secure man.

    • I-gpgv ibuyele ekuhlanganiseni bonke okhiye ngesikhathi sokusebenza. Njengoba ifayela elinesitolo sokhiye owabiwe litholakala ohlelweni lwefayela le-tmpfs, okuqukethwe kwalo okungaphushelwa ekwahlukaniseni okushintshiwe, le ndlela ingaholela ekwenyukeni kokuguga nokuklebhuka kumadrayivu e-SSD asuselwa kumemori ye-Flash. Umbhali wezindaba uncoma ukuthi kusetshenziswe isiteshi esingaziwa (fifo), isiphetho saso esikude esingadluliselwa kwenye inqubo njengefayela “/proc/ /fd/<handle>", noma njengekhasi lememori, elifinyeleleka ngokufanayo njengefayela.
    • Ukwenziwa kabusha okuncane kwenziwe: umsebenzi ohlukile wenzelwe ukuhlola isiginesha yefayela.
  • I-APT 2.9.18:
    • Kusetshenziswe ukuphegina okuzenzakalelayo kokuphuma kwemiyalo ethi “bonisa”, “inqubomgomo”, “uhlu”, “sesha” kanye nethi “showsrc”, esebenza ngesitayela se-git futhi inikwe amandla ngohlelo Olunambambili::apt::Ipheyija. Uhlelo lokusebenza lokuhlukanisa ikhasi lichazwa ngokuhlukahluka kwemvelo kwe-PAGER.
    • Ulwazi olungeziwe lokuphina iphakethe olutholwe ezinkambini ze-APT-Pin, APT-Candidate kanye ne-APT-Release kuya ekukhishweni komyalo othi "apt show -full".
    • Ukuba sengozini kulungisiwe okubangele ukuthi umyalo "we-apt show" ufunde endaweni yememori ngaphandle kwebhafa enikeziwe.
  • I-APT 2.9.19:
    • Kwengezwe i-crypto backend yelabhulali ye-OpenSSL, ethathe indawo ye-GnuTLS ne-Gcrypt.
    • Kwengezwe amandla okusebenzisa insiza ye-sqv kusukela kuphrojekthi ye-Sequoia ukuze kuqinisekiswe amasiginesha edijithali esikhundleni sokushayela i-gpgv. Ekhodini yokubopha ngenhla kwe-sqv, lapho usebenza ngokhiye, ukusetshenziswa okungabazekayo kwamafayela esikhashana kuyaqhubeka.
    • Kuze kube ngu-2026, ukusetshenziswa kwamasiginesha azisayinele ngokusekelwe ku-algorithm ye-SHA-1 kuvunyelwe.
  • I-APT 2.9.20: Kwengezwe isincomo esisemthethweni sokuqamba amafayela kokuthi /etc/apt/sources.list.d/ njengokuthi "$(dpkg-vendor -query Vendor | tr AZ az).sources" - igama lomthengisi wamanje ngofeleba abancane .

Source: opennet.ru

Thenga ukusingathwa okuthembekile kwamasayithi anokuvikelwa kwe-DDoS, amaseva e-VPS VDS 🔥 Thenga ukusingathwa kwewebhusayithi okuthembekile ngokuvikelwa kwe-DDoS, amaseva e-VPS VDS | ProHoster