I-FreeBSD ilungise ubungozi obuningana obungavumela umsebenzisi wasendaweni ukuthi akhuphule amalungelo akhe ohlelweni:
- β ukuba sengozini kwendlela ye-posix_spawnp enikezwe ku-libc ukuze kudalwe inqubo, kusetshenziswe kabi ngokucacisa inani elikhulu ngokweqile kokuhluka kwemvelo ye-PATH. Ukuba sengozini kungaholela ekubhalweni kwedatha ngale kwemingcele yememori eyabelwe isitaki, futhi kuvumela okuqukethwe kwamabhafa alandelayo ukuthi kubhalwe ngaphezulu ngevelu elilawulwayo.
- β ukuba sengozini kusitaki se-IPv6 esivumela umsebenzisi wasendaweni ukuthi asebenzise ikhodi yakhe ezingeni le-kernel ngokukhohlisa inketho ye-IPV6_2292PKTOPTIONS yesokhethi yenethiwekhi.
- Kuqediwe (CVE-2020-12662, CVE-2020-12663) kuseva ye-DNS efakiwe , okungabangela ukunqatshelwa kwesevisi kude uma ufinyelela iseva elawulwa umhlaseli noma usebenzise iseva ye-DNS njengesikhulisi sethrafikhi lapho wenza ukuhlasela kwe-DDoS.
Ukwengeza, izinkinga ezintathu ezingezona ezokuvikela (i-errata) ezingaholela ekuphahlazekeni kwe-kernel ngenkathi usebenzisa umshayeli sezilungisiwe. (uma ukhipha umyalo we-sas2ircu), amasistimu angaphansi (nokuqondisa kabusha kwe-X11) kanye ne-hypervisor (uma udlula amadivayisi we-PCI).
Source: opennet.ru
