漏洞信息详情
Linux kernel 路径遍历漏洞
漏洞简介
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。
Linux kernel through 5.10.8 存在路径遍历漏洞,攻击者可利用该漏洞通过READDIRPLUS遍历文件系统的其他部分。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=51b2ee7d006a736a9126e8111d1f24e4fd0afaa6
参考网址
来源:FEDORA
链接:https://lists.fedoraproject.org/archives/list/[email protected]/message/5SGB7TNDVQEOJ7NVTGX56UWHDNQM5TRC/
来源:MLIST
链接:https://lists.debian.org/debian-lts-announce/2021/03/msg00010.html
来源:MISC
链接:https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=51b2ee7d006a736a9126e8111d1f24e4fd0afaa6
来源:MISC
链接:https://patchwork.kernel.org/project/linux-nfs/patch/[email protected]/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/161810/Ubuntu-Security-Notice-USN-4876-1.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0837
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.1250
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0717
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/162166/Ubuntu-Security-Notice-USN-4910-1.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0920
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Linux-kernel-directory-traversal-via-fs-nfsd-nfs3xdr-c-34415
受影响实体
暂无
补丁
- Linux kernel 路径遍历漏洞的修复措施<!--2021-1-19-->
还没有评论,来说两句吧...