ICanonical ikhiphe isichibi sokulungisa se-Ubuntu 18.04 Kernel

Ilogo ye-Canonical

Zimbalwa izinsuku ezedlule ICanonical ikhiphe isichibi sokuphepha esilungisa izindaba zokuphepha ne-Ubuntu 18.04 LTS kernel, ethinta Ubuntu nakho konke okuphuma kukho okufana Kubuntu, Lubuntu, Ubuntu GNOME, Ubuntu Budgie, Ubuntu Kylin, kanye Ubuntu Studio, kanye nezinye izinhlelo ezivela eceleni ezisebenzisa Ubuntu njengesisekelo.

Lokhu kuba sengozini kufaka ukugcwala kwe-buffer futhi kuchichima kuphume emingceleni , lapho umhlaseli esebenzisa isithombe se-EXT4 esakhelwe ukwenza ikhodi engaqondakali noma ukwehluleka kwesistimu ngokwenqaba insiza.

Mayelana nalesi sibuyekezo

Kulesi sichibi Sezihlanganisiwe izingqinamba zezokuphepha eziyi-11 ezixazululwe kulokhu kukhishwa kokuvuselelwa kwe-kernel.

Phakathi kwazo sinokukhubazeka okungu-7 kufakiwe (I-CVE-2018-10876, i-CVE-2018-10877, i-CVE-2018-10878, i-CVE-2018-10879, i-CVE-2018-10880, i-CVE- 2018- 10882 ne-CVE-2018-10883).

Eziyisikhombisa zokulungiswa bhekisa kuhlelo lwe-ext4 lwesistimu yefayela le-Linux kernel zitholwe ngumcwaningi wezokuphepha uWen Xu.

Abaphenyi bathi:

La maphutha anwebela umsebenzisi ngemuva kokukhishwa futhi anciphise i-gout-of-limit bhala izindaba zokuchichima.

Ukuba sengozini kungavumela ukwenziwa kwekhodi ngokungafanele noma kungavimba uhlelo ekunqatsheni ukuhlaselwa kwensizakalo ngokuxhaphaza isithombe esenziwe ngobuciko se-ext4.

Lowo mfanekiso ungabekwa ohlelweni olusengozini.

Izinkinga ngokubona okuhle ziyaqhubeka

Lesi siqephu esikhishwe i-Linux Kernel sibuye sixazulule isimo somjaho esichazwe ku-CVE-2018-14625 itholakale ekusetshenzisweni kwe-VS kernel kwekheli le-vsock

Okungaholela esimweni sokungasetshenziswanga esivumela umhlaseli wendawo ukuthi abe nakho konke abakudingayo ukuveza imininingwane ebucayi kumshini obonakalayo wezivakashi.

Ezinye izinkinga zokuphepha ezixazululwe ngalesi sichibi yilezi I-CVE-2018-16882 ne-CVE-2018-19407 ethinta ukwenziwa kwe-KVM (Kernel-based Virtual Machine), etholwe nguCFIR Cohen noWei Wu.

Zombili lezi zinkinga zithinta ukusetshenziswa komshini okususelwa ku-kernel, okungenziwa kumshini obonakalayo wezivakashi.

Umhlaseli wendawo uzuza amalungelo okuphatha kumsingathi noma ubangela ukuthi isistimu iphahlazeke.

Ngaphezu kwalokho ukuvuselelwa kokuphepha ilungisa ukuba sengozini okubili kuGoogle Project Zero (CVE-2018-17972 ne-CVE-2018-18281) ekusetshenzisweni kwe-Linux kernel kohlelo lwefayela le-procfs kanye nekholi yohlelo mremap (), engadala abahlaseli bendawo ukuthi badalule imininingwane yozwela ebucayi noma basebenzise ikhodi enonya engaqondakali.

i-canonical-logo

Ca

Ukuvuselelwa kokuphepha kukhuluma ngobungozi obubili ekusetshenzisweni kwe-Linux kernel kohlelo lwefayela le-procfs kanye nekholi yohlelo mremap () itholwe nguJann Horn weGoogle Project Zero, engavumela abahlaseli bendawo ukuthi baveze imininingwane ebucayi noma benze ikhodi engafanele.

Isibuyekezo sokuphepha siphinde silungise inkinga i-CVE-2018-9516 etholwe kusixhumi esibonakalayo se-Linux kernel HID debug subsystem.

Le interface inesibopho sokuthola ukusebenza okungalungile kokuhlolwa komkhawulo ngaphansi kwezimo ezithile, ukuvumela umhlaseli ngokufinyelela kuzinsiza zokususa iphutha ukuze athole amalungelo angeziwe noma ukwenqatshwa kwensiza.

Isikhathi sokuvuselela yebo noma yebo

Njenganoma yisiphi isisombululo esikhishiwe, kubalulekile ukusisebenzisa ezinhlelweni zethu, ngakho-ke kunconywa kakhulu ukuthi uvuselele uhlelo lube yiqiniso.

NjengeCanonical imema bonke abasebenzisi be-Ubuntu 18.04 LTS (IBionic Beaver) ukuvuselela ukufaka kwakho ngokushesha ku-Linux kernel 4.15.0-44.47.

Ngenkathi i-Ubuntu 18.04.1 LTS noma abasebenzisi bakamuva abasebenzisa i-Linux 4.18 kernel chungechunge kufanele bathuthukele enguqulweni engu-4.18.0-14.15 ~ 18.04.1.

Ungayibuyekeza kanjani?

Ukuvuselela uhlelo, vele uvule ukuphela bese wenza imiyalo elandelayo kuyo:

sudo apt update

sudo apt full-upgrade

Ekupheleni kokulanda nokufakwa kwezibuyekezo, kunconywa ukuthi ikhompyutha iqalwe kabusha, lapho kuzosetshenziswa khona zonke izinguquko ezintsha ekuqaleni kohlelo.


Shiya umbono wakho

Ikheli lakho le ngeke ishicilelwe. Ezidingekayo ibhalwe nge *

*

*

  1. Ubhekele imininingwane: Miguel Ángel Gatón
  2. Inhloso yedatha: Lawula Ugaxekile, ukuphathwa kwamazwana.
  3. Ukusemthethweni: Imvume yakho
  4. Ukuxhumana kwemininingwane: Imininingwane ngeke idluliselwe kubantu besithathu ngaphandle kwesibopho esisemthethweni.
  5. Isitoreji sedatha: Idatabase ebanjwe yi-Occentus Networks (EU)
  6. Amalungelo: Nganoma yisiphi isikhathi ungakhawulela, uthole futhi ususe imininingwane yakho.