PCDVD¼Æ¦ì¬ì§Þ°Q½×°Ï
PCDVD¼Æ¦ì¬ì§Þ°Q½×°Ï   µù¥U ±`¨£°ÝÃD ¼Ð°O°Q½×°Ï¬°¤wŪ

¦^¨ì   PCDVD¼Æ¦ì¬ì§Þ°Q½×°Ï > ¨ä¥L¸s²Õ > ¤C¼L¤K¦Þ²§¨¥°ó
±b¤á
±K½X
 

¦^À³
 
¥DÃD¤u¨ã
Axel_K
Elite Member
 
Axel_Kªº¤jÀY·Ó
 

¥[¤J¤é´Á: Sep 2006
±zªº¦í§}: ¤H¸s¤¤
¤å³¹: 4,205
Linux°é¡y¦a¾_¡z¡G¥D¬y压缩¤u¨ãXZ³QÃn¦Z门¡A红´U¡BDebianµ¥发¤½§i­n¨D紧«æ°±¥Î

¥H¤U¤å¦r来¦ÛIT¤§®a报¹D¤Uªº评论¡C

TLDR:

刚读§¹¤F这两½g关¤_ xz-utils ¥]ªº¨Ñ应链§ð击说©ú¡A§ð击ªÌýÍ¥ñ¤F¤T¦~¡A«Üºë±m¡A¥u®t¤@点点´N¥i¥H©¹众¦h Linux 发¦æª©ªº sshd ª`¤J¦Z门¡A¥i¥Î¤_绕过±K钥验证¡A¦ZªG¤£³ô设·Q¡C

·§¬A¡G

§ð击ªÌ JiaT75 (Jia Tan) ¤_ 2021 ¦~ª`册¤F GitHub 账号¡A¤§¦Z积Ìå参ÉO xz 项¥Øªº维护¡A¦}³v渐获¨ú«H¥ô¡A获±o¤Fª½±µ commit ¥N码ªº权§Q¡C
JiaT75 ¦b³Ìªñ¤L个¤ëªº¤@¦¸ commit ¤¤¡A®¨®¨¥[¤J¤F bad-3-corrupt_lzma2.xz ©M good-large_compressed.lzma 两个¬Ý°_来¤H¯bÆÓ®`ªº测试¥Î¤G进¨î数Õu¡AµM¦Ó¦b编译脚¥»¡]ª`1¡^¤¤¡A¦b¯S©w条¥ó¤U会从这两个¤å¥ó¤¤读¨ú内®e对编译结ªG进¦æ­×§ï¡A­P¨Ï编译结ªG©M¤½开ªº·½¥N码¤£¤@­P¡C
¥Ø«eªì¨Bªº¬ã¨s显¥Ü¡Aª`¤Jªº¥N码会¨Ï¥Î glibc ªº IFUNC ¥h Hook OpenSSH ªº RSA_public_decrypt ¨ç数¡A­P¨Ï§ð击ªÌ¥i¥H³q过ÌÛ³y¯S©wªº验证数Õu绕过 RSA 签¦W验证¡C¡]¨ãÊ^细节还¦b¤ÀªR¤¤¡^
¥u­n¬O¦P时¨Ï¥Î¤F liblzma ©M OpenSSH ªºµ{§Ç´N会¨ü¨ì¼v响¡A³Ìª½±µªº¥Ø标´N¬O sshd¡]ª`2¡^¡A¨Ï±o§ð击ªÌ¥i¥HÌÛ³y¯S©w请¨D¡A绕过±K钥验证远µ{访问¡C
¨ü¼v响ªº xz-utils ¥]¤w经³Q¦}¤J Debian testing ¤¤进¦æ测试¡A§ð击ªÌ¦P时¤]¦b尝试¦}¤J fedora ©M ubuntu¡C
©¯运ªº¬O¡Aª`¤Jªº¥N码¦ü¥G¦s¦b¬YÏú Bug¡A导­P¯S©w±¡úG¤U sshd ªº CPU ¥e¥Î飙¤É¡C³Q¤@¦ì¦w¥þ¬ã¨s¤H员ª`·N¨ì¤F¡A顺ÃúN¥Ê发现¤F这个阴谋¦}报§i给 oss-security¡A­P¨Ï¦¹¨Æ败º|¡C
¦pªG¤£¬O¦]为这个 Bug¡A¨º¤\这¤\¦Z门¦³¤£§Cªº·§²v³Q¦}¤J¥D¬y发¦æª©ªº stable ª©¥»¡A®£©È会¬O¤@¥ó«e©Ò¥¼¦³ªº­«¤j¦w¥þ¨Æ¥ó¡C

¥t¥~从¤@¨Ç细节¯à¬Ý¥X来§ð击ªÌ«D±`¥Î¤ß¡G

§ð击ªÌ抢¦b ubuntu beta freeze ªº¤L¤Ñ«e¤~尝试让·sª©¥»¦}¤J¡A¥H´Á±æú£¤Ö¦b测试´Á间³Q发现ªº时间¡C
xz-utils 项¥Øªº­ì维护ªÌ Lasse Collin (Larhzu)¡A¦³þÓ©w´Á进¦æ internet breaks ªº习惯¡A¦Ó¥B³Ìªñ¥¿¦b进¦æ¡A导­P这¨Ç变动¥L¦}没¦³ review ªºÉó会¡A§Y¨Ï¨ì现¦b¤]没¯à联¨t¤W¥L¥»¤H¡C这¥i¯à¤]¬O§ð击ªÌ选©w xz-utils 项¥Øªº­ì¦]¤§¤@¡C
§ó¦hªº细节还¦b³Q¤ÀªR¤¤¡A¥Ø«e GitHub ¤w经关°±¤F¾ã个 xz 项¥Ø¡C

ª`1¡G仓库¤¤ªºÌÛ«Ø脚¥»没¦³问题¡A¦ý¬O随·sª©¥»发¥¬ªº·½¥N码¥´¥]¡]tarball¡^¤¤ªºÌÛ«Ø脚¥»¤¤²K¥[¤F对¦Z门ªº§Q¥Î¡C这导­Pª½±µ¨Ï¥Î·½¥N码¥]ªº¥Î户Ì۫ؤF带¦³¦Z门ªºµ{§Ç¡C

ª`2¡GÕu¨ä¥L来·½¡A¨ü¼v响ªº sshd ¬O Debian ©M Ubuntu µ¥¨t统经过­×§ï¦Z¤ä«ù systemd notification ªºª©¥»¡Cxz ¬O systemd ªº¨Ì赖¡A¤£¬O sshd ªºª½±µ¨Ì赖¡C


https://twitter.com/Blankwonder/sta...921956615877110
     
      
ÂÂ 2024-03-31, 10:07 AM #1
¦^À³®É¤Þ¥Î¦¹¤å³¹
Axel_KÂ÷½u¤¤  
³¥¤f¶©¥v
Elite Member
 
³¥¤f¶©¥vªº¤jÀY·Ó
 

¥[¤J¤é´Á: Mar 2001
±zªº¦í§}: Rivia
¤å³¹: 6,968
macos ªº homebrew ¬Q¤Ñ¬O¥Î­°¯Å xz ªº¤è¦¡³B²z³o­Ó°ÝÃD
¬ù 15 ¦~«e¡Axz ¶}©l§@¬°¦U¤jµo¦æª©®M¥óªº¹w³]À£ÁY®æ¦¡
³Ìªñ³o´X¦~¤w¸gºCºC§ï¬° zstd ¤F
 
__________________
Folding@home with GPGPU¶°¤¤°Q½×¦ê

Unix Review: ArchLinux¡´Sabayon¡´OpenSolaris 2008.5¡´Ubuntu 8.10
AVs Review: GDTC¡´AntiVir SS¡´ESS¡´KIS 09¡´NIS 09¡´Norton 360 V3

I Always Get What I Want.
ÂÂ 2024-03-31, 10:23 AM #2
¦^À³®É¤Þ¥Î¦¹¤å³¹
³¥¤f¶©¥vÂ÷½u¤¤  
sparc10
Power Member
 
sparc10ªº¤jÀY·Ó
 

¥[¤J¤é´Á: Jun 2003
±zªº¦í§}: CC BY-NC-ND 4.0±ÂÅv
¤å³¹: 680
Everything I Know About the Xz Backdoor
https://boehs.org/node/everything-i...the-xz-backdoor
ÂÂ 2024-03-31, 10:30 AM #3
¦^À³®É¤Þ¥Î¦¹¤å³¹
sparc10Â÷½u¤¤  
anderson1127
Golden Member
 

¥[¤J¤é´Á: Jan 2002
¤å³¹: 3,993
§Ú­ì¥ý¬O¥ÎFedora , «á¨Ó´NºCºC§ï¦¨CentOS , ¬Q¤Ñ¬Ý¨ì«á´N»°¦£¬Ý¤@¤Uxzªºª©¥»
ÁÙ¦n,§Ú¬O 5.2.xªºª©¥» , ¤£¬O5.6 ....
__________________
±z·Q¶R·sµwºÐ¶Ü? ÁʶR«e½Ð°È¥²°Ñ¦Ò³o½g¤å³¹,¬O§Úªº¹ê»Ú¸gÅç

ÁÙ·QÅý²Î¤@ÁȧAªº¿ú¶Ü¡H²Î¤@¶°¹Î¦¨­û(¯à¨£«×°ªªº)¡G
¬P¤Ú§J¡B®a¼ÖºÖ¡B7-11¡BµL¦L¨}«~¡B¶Â¿ß¦v«æ«K¡B¸t®R¦h³ù¡B¨Á«æ¦Ê³f¡B
±d¬O¬ü¡B³Õ«È¨Ó¡B¹Ú®É¥N¡BMister Donut ¡BCold Stone ¡BÀt¥Ò¸U¡B
ºû¤O33%ªÑÅv¡B¥ú¬u31%ªÑÅv¡BSmile³tÁÚ¼Ö¡B¬õ¤ß»¶´Ô¡B¥x¥_Âà¹B¯¸(²Î¤@¥ø·~BOT)

²Î¤@LP33½¦Ån¦³Àô«O¸p¦­¤w¦CºÞªº¤@¯ÅºÞ¨î«~: DNOP¶ì¤Æ¾¯
ÂÂ 2024-03-31, 11:03 AM #4
¦^À³®É¤Þ¥Î¦¹¤å³¹
anderson1127Â÷½u¤¤  
oversky.
Junior Member
 

¥[¤J¤é´Á: Feb 2013
¤å³¹: 718
¤Þ¥Î:
§@ªÌsparc10
Everything I Know About the Xz Backdoor
https://boehs.org/node/everything-i...the-xz-backdoor


¤Þ¥Î:
libarchive should also be considered compromised until proven otherwise.


³o­Ó win 11 ¤]¦³¥Î¡C

https://technews.tw/2023/05/24/windows-11-rar/
¤Þ¥Î:
·L³n Windows 11 §@·~¨t²Î²×©ó¥[¤J tar¡B7-zip¡Brar¡Bgz ©M¨ä¥L¨Ï¥Î libarchive ¶}·½±M®×ªºÀ£ÁY®æ¦¡¡C
ÂÂ 2024-03-31, 11:18 AM #5
¦^À³®É¤Þ¥Î¦¹¤å³¹
oversky.Â÷½u¤¤  
sparc10
Power Member
 
sparc10ªº¤jÀY·Ó
 

¥[¤J¤é´Á: Jun 2003
±zªº¦í§}: CC BY-NC-ND 4.0±ÂÅv
¤å³¹: 680
ª¾¦W开·½软¥ó·tÂäì马¡H´¦ÅS»W谋长达2¦~¥bªº¸o恶¡I
#¤ì马 #XZ #·L软 #¶Â«È #¯f¬r #«Â胁 #¨Ñ应链§ë¬r #linux #Github
https://www.youtube.com/watch?v=8QI...J_Zjitw&index=5
ÂÂ 2024-05-05, 02:35 PM #6
¦^À³®É¤Þ¥Î¦¹¤å³¹
sparc10Â÷½u¤¤  
blueck
Major Member
 
blueckªº¤jÀY·Ó
 

¥[¤J¤é´Á: Dec 2010
¤å³¹: 254
¬Ý¤F¤@¤U¨S¦³²z¸Ñ¥¦«ç»ò°µ¨ì

¦³¬d¨ì³o­Ó
https://www.stigviewer.com/stig/vmw...finding/V-39285

sshd compression ¹w³]­È¬O delayed¡A¤]´N¬O»{ÃÒ«á¤~·|±Ò¥ÎÀ£ÁY
ÂÂ 2024-05-06, 11:11 PM #7
¦^À³®É¤Þ¥Î¦¹¤å³¹
blueck²{¦b¦b½u¤W  


¦^À³


POPIN
¥DÃD¤u¨ã

µoªí¤å³¹³W«h
±z¤£¥i¥Hµo°_·s¥DÃD
±z¤£¥i¥H¦^À³¥DÃD
±z¤£¥i¥H¤W¶Çªþ¥[ÀÉ®×
±z¤£¥i¥H½s¿è±zªº¤å³¹

vB ¥N½X¥´¶}
[IMG]¥N½X¥´¶}
HTML¥N½XÃö³¬



©Ò¦³ªº®É¶¡§¡¬°GMT +8¡C ²{¦bªº®É¶¡¬O09:53 AM.


vBulletin Version 3.0.1
powered_by_vbulletin 2024¡C