Maawa mashoma apfuura, Canonical atumira chirevo chaanotaura nezve a kukuvadzwa muGhostscript Iyo inokanganisa ese maUbuntu vhezheni ayo achiri kutsigirwa mune yavo yakajairwa hupenyu kutenderera. Parizvino, iwo maBhaibheri ndiUbuntu 19.04 Disco Dingo, Ubuntu 18.04 LTS Bionic Beaver, uye Ubuntu 16.04 LTS Xenial Xerus. Iyo software yakanganisa i "ghostscript - PostScript uye muturikiri wePDF" uye zvigamba zvinogadzirisa huwandu hweCVE hune njodzi.
Izvo zvinokuvadza zvakaonekwa uye zvatogadziriswa ndizvo CVE-2019-14811, CVE-2019-14812, CVE-2019-14813 y CVE-2019-14817, vese vaibatwa se kukurumidza kwepakati. Vese vana vanogovana yakawanda yerondedzero inotsanangura 'ByPass yeSafer Mode nekufumura .forceput in» .pdf_hook_DSC_Creator, setuserparams, setystemparams uye.pdfexectoken zvichiteerana. Iwo mapakeji ekuvandudza ari ghostscript - 9.26 ~ dfsg + 0-0ubuntu7.3 y libgs9 – 9.26~dfsg+0-0ubuntu7.3 paUbuntu 19.04, ghostscript - 9.26 ~ dfsg + 0-0ubuntu0.18.04.11 y libgs9 – 9.26~dfsg+0-0ubuntu0.18.04.11 paUbuntu 18.04 uye ghostscript - 9.26 ~ dfsg + 0-0ubuntu0.16.04.11 y libgs9 – 9.26~dfsg+0-0ubuntu0.16.04.11 paUbuntu 16.04.
Iyo kushushikana muGhostscript yasvika padivi peimwe muCeph
Uku kunetseka muGhostscript hakusi iko chete kwakaburitswa neCanonical nhasi. Nguva pfupi yapfuura akazivisawo zvimwe, mune iyi nyaya mu «ceph - akagovera chengetedzo uye faira system«, Iyo inokanganisa Ubuntu 19.04 uye Ubuntu 18.04. Mhosva inorapwa uye yakatogadziriswa ndiyo CVE-2019-10222 uye tsananguro kumwe kukanganisika kwepakati pekukurumidzira umo ceph inogona kushandiswa kuzvivharira pachayo kana ikatambira zvakanyatsogadzirwa netraffic traffic. Anorwisa ari kure anogona kushandisa chikanganiso ichi kukonzera kuramba basa (DoS). Iwo matinji anoshandiswa mune ino kesi ndiwo ceph - 13.2.6-0ubuntu0.19.04.3 y radosgw - 13.2.6-0ubuntu0.19.04.3 paUbuntu 19.04 uye ceph - 12.2.12-0ubuntu0.18.04.2 y radosgw - 12.2.12-0ubuntu0.18.04.2 paUbuntu 18.04.
Zvese zvigamba zvatovepo sekuvandudzwa, saka kuzvishandisa nekuzvidzivirira kubva kumatambudziko ataurwa muchinyorwa chino zviri nyore sekuvhura Software Gadziridza application kana chero software yepakati uye shandisa zvidzoreso.
Izvo zvakajairwa, isu tinongofanirwa kuchengetedza yedu Ubuntu kunyatsogadziriswa uye hapana chikonzero chekushushikana. Ndatenda neruzivo.