Áú8¹ú¼Êµç×Óƽ̨

long8-Áú8(¹ú¼Ê)Ψһ¹Ù·½ÍøÕ¾ Ê×Ò³long8-Áú8(¹ú¼Ê)Ψһ¹Ù·½ÍøÕ¾Çå¾²·þÎñlong8-Áú8(¹ú¼Ê)Ψһ¹Ù·½ÍøÕ¾Ç徲ͨ¸æ long8-Áú8(¹ú¼Ê)Ψһ¹Ù·½ÍøÕ¾
ÕýÎÄ

¹ØÓÚsudoÍâµØÌáȨÎó²î(CVE-2021-3156)µÄÇ徲ͨ¸æ

Ðû²¼Ê±¼ä£º2021-01-27 09:01   ä¯ÀÀ´ÎÊý£º7350

1ÔÂ27ÈÕ £¬LinuxÇå¾²¹¤¾ßsudo±»Åû¶±£´æÑÏÖصĶÑÒç³öÎó²î(CVE-2021-3156) £¬Ó°ÏìÖÚ¶àLinuxµÄ¿¯Ðа汾 £¬Çëʵʱ¶ÔÎó²î¾ÙÐÐÐÞ¸´¡£

¡¾Îó²îÐÎò¡¿

SudoÊÇLinux/UnixϵͳÉϳ£ÓõŤ¾ß £¬¹ÜÀíÔ±¿Éͨ¹ýËü·ÖÅɸøͨË×Óû§ËùÐèµÄ¹ÜÀíȨÏÞ £¬ÏÕЩËùÓеÄLinux¼°Unixϵͳ¶¼×°ÖÃÓгÌÐò¡£´Ë»ùÓڶѵĻº³åÇøÒç³öÎó²îÒÑÒþ²ØÊ®ÄêÖ®¾Ã £¬Ê¹ÓôËÎó²î £¬·ÇÌØȨµÄÍâµØͨË×Óû§¿ÉÒÔÔÚÖ÷»úÉÏ»ñµÃrootÌØȨ¡£Ïà¹ØÑо¿Ö°Ô±ÒѾ­ÔÚUbuntu 20.04£¨Sudo 1.8.31£©¡¢Debian 10£¨Sudo 1.8.27£©¡¢Fedora 33£¨Sudo 1.9.2£©µÈϵͳÉÏÑéÖ¤Îó²î±£´æ £¬²¢Ê¹ÓÃÎó²î»ñµÃÁËÍêÕûµÄrootÓû§ÌØȨ¡£

¡¾Îó²îÓ°Ïì°æ±¾¡¿

Sudo1.8.2µ½ 1.8.31p2°æ±¾

Sudo1.9.0µ½1.9.5p1°æ±¾

ºìñ×Ó¹ÙÍøÏÔʾRed Hat Enterprise Linux£¨CentOS£©6¡¢7¡¢8°æ±¾¾ù±£´æÎó²î¡£

¡¾Îó²î¼ì²â¡¿

ÒÔ·ÇrootÕË»§µÇ¼ϵͳÔËÐÐÈçÏÂÏÂÁsudoedit -s /

ÊÜÓ°ÏìµÄϵͳÆô¶¯³ÌÐò»áÌáÐÑÒÔÏ¿ªÍ·µÄ¹ýʧ×÷ΪÏìÓ¦£ºsudoedit:


1.png


×°Öò¹¶¡ºóÆô¶¯»áÌáÐÑÒÔÏ¿ªÍ·µÄ¹ýʧ×÷ΪÏìÓ¦£ºusage:


2.png



¡¾ÐÞ¸´¼Æ»®¡¿

ÏÂÔØÉý¼¶sudoÈí¼þ°ü £¬ÏÂÔØÁ´½ÓΪ£º

sudoÈí¼þ°üÏÂÔصØÖ·

https://www.sudo.ws/dist/

l CentOS ϵͳ

CentOS 6¹Ù·½ÒÑ×èÖ¹¸üР£»

CentOS 7Éý¼¶µ½sudo-1.8.23-10.el7_9.1¼°ÒÔÉÏ°æ±¾ £»

CentOS 8Éý¼¶µ½sudo-1.8.29-6.el8_3.1¼°ÒÔÉϸü¸ß°æ±¾¡£

¡¾×¢¡¿RHEL(CentOS)ϵͳ¿ÉÒÔͨ¹ýyum update sudoÉý¼¶ £¬×°Öò¹¶¡Ç°Çë×öºÃ±¸·ÝÊÂÇé £¬²¢ÔÚ²âÊÔÇéÐÎÉϲâÊÔͨ¹ý¡£

l Ubuntuϵͳ

Ubuntu 20.04 LTSÉý¼¶µ½sudo-1.8.31-1ubuntu1.2»òsudo-ldap-1.8.31-1ubuntu1.2°æ±¾ £» 

Ubuntu 18.04 LTSÉý¼¶µ½sudo-1.8.21p2-3ubuntu1.4»òsudo-ldap-1.8.21p2-3ubuntu1.4 £»

Ubuntu 16.04 LTSÉý¼¶µ½sudo-1.8.16-0ubuntu1.10»òsudo-ldap- 1.8.16-0ubuntu1.10¡£

¡¾²Î¿¼×ÊÁÏ¡¿

https://access.redhat.com/security/cve/CVE-2021-3156

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3156


Áú8¹ú¼Êµç×Óƽ̨ °æȨËùÓÐ  ÁªÏµ: hxzhb@heidun.net ÃöICP±¸06011901ºÅ ? 1999-2024 Fujian Strait Information Corporation. All Rights Reserved.
long8-Áú8(¹ú¼Ê)Ψһ¹Ù·½ÍøÕ¾

·µ»Ø¶¥²¿

ÍøÕ¾µØͼ