最近收到了服务器有漏洞的通知,提示:RHSA-2021:0742: screen安全更新,主要影响是参数注入或修改拒绝服务漏洞,接下来为大家介绍一下screen修复安全更新的解决方法,有需要的小伙伴可以参考一下:
1、漏洞提示:
RHSA-2021:0742: screen 安全更新2、漏洞描述:
漏洞编号 漏洞公告 漏洞描述 CVE-2021-26937gnu screen <= 4.8.0 参数注入或修改拒绝服务漏洞
encoding.c in GNU Screen through 4.8.0 allows remote attackers to cause a denial of service (invalid write access and application crash) or possibly have unspecified other impact via a crafted UTF-8 character sequence.
3、影响说明:
软件:screen 4.1.0-0.26.20120314git3c2946.el7 命中:screen version less than 0:4.1.0-0.27.20120314git3c2946.el7_9 路径:/etc/pam.d/screen4、解决方法:
yum update screen5、重启验证:
reboot6、参考链接:
(1)、http://www.openwall.com/lists/oss-security/2021/02/09/8
(2)、https://ftp.gnu.org/gnu/screen/
(3)、https://lists.debian.org/debian-lts-announce/2021/02/msg00031.html
(4)、https://lists.fedoraproject.org/archives/list/package-announce@lists.fedorapr…
(5)、https://lists.fedoraproject.org/archives/list/package-announce@lists.fedorapr…
(6)、https://lists.gnu.org/archive/html/screen-devel/2021-02/msg00000.html
(7)、https://www.debian.org/security/2021/dsa-4861
(8)、https://www.openwall.com/lists/oss-security/2021/02/09/3
暂无评论内容