Ukukhishwa kwesithwebuli sezokuphepha senethiwekhi ye-Nmap 7.93, esinikezelwe kuminyaka engama-25 yephrojekthi

Ukukhishwa kwesithwebuli sokuphepha senethiwekhi i-Nmap 7.93 kuyatholakala, eklanyelwe ukwenza ukuhlolwa kwenethiwekhi nokuhlonza izinsiza zenethiwekhi ezisebenzayo. Udaba lwashicilelwa ngonyaka wama-25 wephrojekthi. Kuyaphawuleka ukuthi phakathi neminyaka le phrojekthi iye yashintsha isuka ekubeni isithwebuli sechweba, esanyatheliswa ngo-1997 kumagazini i-Phrack, yaba uhlelo lokusebenza olusebenza ngokugcwele lokuhlaziya ukuphepha kwenethiwekhi nokuhlonza izinhlelo zokusebenza zeseva ezisetshenzisiwe. Ukukhishwa kufaka phakathi ukulungiswa nokuthuthukiswa okuhloselwe ukuthuthukisa ukuzinza nokubhekana nezinkinga ezaziwayo ngaphambi kokuqhubekela phambili negatsha elisha elikhulu le-Nmap 8.

Izinguquko eziyinhloko:

  • Umtapo wezincwadi we-Npcap, osetshenziselwa ukuthwebula nokufaka amaphakethe esikhundleni seplathifomu ye-Windows, uthuthukisiwe waba yinguqulo engu-1.71. Umtapo wolwazi wakhiwe iphrojekthi ye-Nmap esikhundleni se-WinPcap, eyakhiwe kusetshenziswa i-Windows API NDIS 6 LWF yesimanje futhi ibonisa ukusebenza okuphezulu, ukuphepha nokwethembeka.
  • Isakhiwo esine-OpenSSL 3.0 sinikiwe, kusulwe izingcingo emisebenzini eyehlisiwe egatsheni elisha.
  • Amalabhulali libssh2 1.10.0, zlib 1.2.12, Lua 5.3.6, libpcap 1.10.1 abuyekeziwe.
  • Ku-NSE (Nmap Scripting Engine), ekuvumela ukuthi usebenzise izikripthi ukuze wenze ngokuzenzakalelayo izenzo ezihlukahlukene nge-Nmap, okuhlukile kanye nokuphathwa komcimbi kuthuthukisiwe, futhi ukubuyiselwa kwamasokhethi e-pcap angasetshenzisiwe sekulungisiwe.
  • Amandla emibhalo ye-NSE i-dhcp-discover/broadcast-dhcp-discover anwetshiwe (ukusetha i-ID yeklayenti kuvunyelwe), i-oracle-tns-version (ukutholwa kokukhishwa kwe-Oracle 19c+ kungeziwe), i-redis-info (izinkinga ngokuboniswa ulwazi olungalungile mayelana nokuxhuma kanye nama-cluster node axazululiwe) .
  • Imininingo egciniwe yesiginesha ibuyekeziwe ukuze kuhlonzwe izinhlelo zenethiwekhi namasistimu okusebenza. Kufakwe izihlonzi eziphelelwe yisikhathi ze-CPE (Ukubalwa Kwenkundla Evamile) kumasevisi e-IIS.
  • Izinkinga zokunquma imininingwane yomzila kunkundla yeFreeBSD sezixazululiwe.
  • I-Ncat yengeze usekelo lwama-proxies e-SOCKS5 abuyisela ikheli elibophayo ngendlela yegama lomethuleli kunekheli le-IPv4/IPv6.
  • Inkinga yokuhlonza izixhumanisi zenethiwekhi ku-Linux ezingenawo ama-IPv4 kernels ahlotshaniswayo isixazululiwe.

Source: opennet.ru

Engeza amazwana