[RFR] wml://security/2022/dsa-5072.wml

Полина Вдовкина <[email protected]>
Newsgroups gmane.linux.debian.internationalization.russian
Message-ID <CALztyOr0bYgWJwZC=yW-rEc=6qqWhrkBTAQJKoGsriNi_1Y-pA@mail.gmail.com>
$ diff -u
"C:\Users\User\simple-repo\project\english\security\2022\dsa-5072.wml"
"C:\Users\User\simple-repo\project\russian\security\2022\dsa-5072.wml"

---
"C:\\Users\\User\\simple-repo\\project\\english\\security\\2022\\dsa-5072.wml"
    2023-11-12 13:37:44.619481200 +0500

+++
"C:\\Users\\User\\simple-repo\\project\\russian\\security\\2022\\dsa-5072.wml"
    2023-11-28 23:54:17.032256900 +0500

@@ -1,27 +1,29 @@

-<define-tag description>security update</define-tag>

-<define-tag moreinfo>

-<p>Marcel Neumann, Robert Altschaffel, Loris Guba and Dustin Hermann

-discovered that debian-edu-config, a set of configuration files used for

-the Debian Edu blend configured insecure permissions for the user web

-shares (~/public_html), which could result in privilege escalation.</p>

-

-<p>If PHP functionality is needed for the user web shares, please refer

-to
/usr/share/doc/debian-edu-config/README.public_html_with_PHP-CGI+suExec.md</p>

-

-<p>For the oldstable distribution (buster), this problem has been fixed

-in version 2.10.65+deb10u8.</p>

-

-<p>For the stable distribution (bullseye), this problem has been fixed in

-version 2.11.56+deb11u3.</p>

-

-<p>We recommend that you upgrade your debian-edu-config packages.</p>

-

-<p>For the detailed security status of debian-edu-config please refer to

-its security tracker page at:

-<a href="https://security-tracker.debian.org/tracker/debian-edu-config">\

-https://security-tracker.debian.org/tracker/debian-edu-config</a></p>

-</define-tag>

-

-# do not modify the following line

-#include "$(ENGLISHDIR)/security/2022/dsa-5072.data"

-# $Id: $

+#use wml::debian::translation-check
translation="ee04f46c954ffc5bf443850c66d2c35e66852301"

+<define-tag description>обновление системы безопасности</define-tag>

+<define-tag moreinfo>

+<p>Марсель Нойманн, Роберт Альтшаффель, Лорис Губа и Дастин Херманн

+обнаружили, что debian-edu-config, набор конфигурационных файлов,

+используемых для Debian Edu blend, настроил небезопасные разрешения

+для пользовательских веб-ресурсов  (~/public_html), что может привести

+к повышению привилегий.</p>

+

+<p>Если функциональность PHP необходима для пользовательских веб-ресурсов,

+пожалуйста, обратитесь к

+/usr/share/doc/debian-edu-config/README.public_html_with_PHP-CGI+suExec.md</p>

+

+<p>Для старого дистрибутива (buster), эта проблема была исправлена

+в версии 2.10.65+deb10u8.</p>

+

+<p>Для настоящего дистрибутива (bullseye), эта проблема была исправлена

+в версии 2.11.56+deb11u3.</p>

+

+<p>Мы рекомендуем вам обновить ваши пакеты debian-edu-config.</p>

+

+<p>Для получения подробной информации о статусе безопасности
debian-edu-config,

+пожалуйста, обратитесь к его странице отслеживания безопасности:

+<a href="https://security-tracker.debian.org/tracker/debian-edu-config">\

+https://security-tracker.debian.org/tracker/debian-edu-config</a></p>

+</define-tag>

+

+# do not modify the following line

+#include "$(ENGLISHDIR)/security/2022/dsa-5072.data"
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.