Jɔn bɛ Buguw Sɛbɛn? Kɛrɛnkɛrɛnnenya la, Kernel Vulnerabilities 125.000 lajɛ ka ɲɛ | Mewayz Blog Skip to main content
Hacker News

Jɔn bɛ Buguw Sɛbɛn? Kɛrɛnkɛrɛnnenya la, Kernel Vulnerabilities 125.000 lajɛ ka ɲɛ

Kow fɔcogo

11 min read Via pebblebed.com

Mewayz Team

Editorial Team

Hacker News
Waati min na, nizɛri fɛnsɔrɔsiraw bɛ an ka ɲɛnamaya fan bɛɛ lajɛlen sinsin, an ka sistɛmuw kɔnɔko yɛrɛ lakanani, n’o ye baarakɛminɛnw kɔnɔfɛnw ye, o de ye ko bɛɛ la belebele ye. Kɔsa in na, sɛgɛsɛgɛliba dɔ kɛra min ye Linux kernel (Linux kernel) bɔnɛ 125.000 ni kɔ sɛgɛsɛgɛ, o ye yeelen bɔ nin lakanabaliya jugu ninnu bɔyɔrɔ kan, min ɲɔgɔn ma deli ka kɛ fɔlɔ. Nin sɔrɔlenw bɛ lakali gɛlɛn dɔ jira min bɛ tɛmɛ jalaki nɔgɔman kan, ka hakilina nafamaw di jagokɛlaw ma minnu b’u cɛsiri ka fɛɛrɛbɔ jusigilanw jɔ minnu bɛ se ka muɲu ani minnu bɛ lakana. ### Nafa sɔrɔyɔrɔ: Jirali kabakoma Hakilitigiya min bɛ sɔrɔ tuma bɛɛ, o bɛ se k’a jira ko lakana gɛlɛya fanba bɛ don baarakɛlaw fɛ minnu tɛ se kosɛbɛ walima mɔgɔ juguw fɛ. Nka, kunnafoniw bɛ maana wɛrɛ fɔ. Kɛrɛnkɛrɛnnenya la, kernel bugs fanba — 60% ɲɔgɔn — tɛ don kodɔnbaga kuraw fɛ nka u bɛ don kodɔnbaga kɔrɔw fɛ minnu bɛ se kosɛbɛ. Olu ye mɔgɔ kelen-kelenw ye minnu ka faamuyaliba bɛ kernel ka jɔcogo gɛlɛnw na, minnu ka baara ye ka fɛn gɛlɛnw waleya ani ka baarakɛcogo ɲuman ɲɛnabɔ. Dɔnniya yɛrɛ min b’a To u bɛ Se ka kernel (kɛrɛnkɛrɛnnenya la) bonya, o fana b’a To u bɛ fili nɔgɔlenw Kɛ, minnu bɛ nɔba Blà. O paradox b’a jira ko gɛlɛya, a tɛ seko dɛsɛ ye, o de ye lakana jugu fɔlɔ ye. Kokura ni baarakɛcogo ɲuman ɲinini na, hali dɔnnikɛla minnu ka baara ka bon kosɛbɛ, olu bɛ se ka chinks da nizɛri kɛlɛkɛminɛnw kɔnɔ k’a sɔrɔ u ma a dɔn. ### Barikantanya cogoya: Hakililako koɲɛw de bɛ fanga la Ka sɛgɛsɛgɛli kɛ nɔgɔya suguya kɛrɛnkɛrɛnnenw kan, o bɛ gɛlɛya dɔ jira min bɛ to senna ani min bɛ dɔn. Hakilila lakanani tiɲɛniw bɛ ka taa a fɛ ka fanga sɔrɔ kernel lakanani filiw la. Ko minnu bɛ kɛ i n’a fɔ baarakɛcogo kɔfɛ filiw, bufferw falenni, ani dancɛ kɔkan, olu bɛ kɛ sababu ye ka CVE (Common Vulnerabilities and Exposures) fɔlenw bɛɛ lajɛlen yɔrɔba dɔ ye. O filiw bɛ Kɛ ni kernel (kɛrɛnkɛrɛnnenya la) ma hakilijagabɔ-minɛnw ɲɛnabɔ cogo jugu la, o bɛ Se ka Kɛ sababu ye ka binkannikɛlaw Dɛmɛ u ka kodɔn u yɛrɛ sago Kɛ walima ka sistɛmu (sistema) tiɲɛ. O ko ninnu caya bɛ faratiw jira minnu bɛ sɔrɔ porogaramukanw baara la i n’a fɔ C, minnu bɛ kunnafoni-falen-falen barikamaw di nka u bɛ hakilijagabɔ kɛcogo ɲuman doni da a dilabaga kan kɛrɛnkɛrɛnnenya la. Nin sɔrɔ in ye hakilijiginba ye ko porogaramu jɔnjɔnw yɔrɔw, hali n’u fanga ka bon, u bɛ gɛlɛya kɔnɔnakow ta, minnu bɛ kɔlɔsili gɛlɛn de wajibiya. ### Lakanali jiginni: Ɲɛtaa waatibolodalen O sɛgɛsɛgɛli fana ye jateminɛ janyalen dɔ Di, k’a Jira cogo min na kernel ka lakana jɔyɔrɔ jiginna. Fɛn minnu bɛ taa ɲɛ, olu dɔw ye: * **A Surge in Discovery:** Dɔgɔtɔrɔso minnu sɔrɔla, olu hakɛ cayara kosɛbɛ san tan tɛmɛnenw kɔnɔ. O tɛ kode jogo dɔgɔyali jiralan ye hali dɔɔnin; nka, a bɛ lakana dɔnniya bonya jira, otomatiki sɛgɛsɛgɛlikɛminɛn minnu ka ca kosɛbɛ, ani sigidamɔgɔw ka cɛsiriw y’u yɛrɛ di walasa ka filiw sɔrɔ ani k’u labɛn. * **The Patching Paradox:** Hali ni bɔnɛ sɔrɔli hakɛ wulila, waati min bɛ kɛ ka nin ko ninnu ɲɛnabɔ, o dɔgɔyara kosɛbɛ. Da wulilen jɛkulu ka jɛkafɔ misali y’a jira ko a bɛ se ka kɛ sababu ye ka patɔrɔnw labɛn teliya la ani k’u bila sen kan ni gɛlɛya dɔ dɔnna. * **Fɛnɲɛnɛmaw jiginni:** Donanw b’a jira ko cɛsiri hakili la kernel jɛkulu kɔnɔ walasa ka lakana patɔrɔnw bila jɔyɔrɔ fɔlɔ la, tuma caman na, ka tɛmɛn fɛn kuraw yiriwali kan, o bɛ jaabi kɔgɔlen jira bagabagali cogoya la min bɛ ka bonya. > "Dɔnniyaw b'a jira ka jɛya ko gɛlɛya ye lakana jugu ye. Hali baarakɛlaw minnu ka ko dɔn kosɛbɛ, n'u bɛ baara kɛ sistɛmu gɛlɛnbaw kan, olu bɛna fili. O kunba ye ka taabolo dɔw jɔ minnu bɛ o filiw makɔnɔ ani k'u nɔgɔya."(Alimankan na) — Kɛrɛn lakanani ɲininikɛla ### Kɛrɛnkɛrɛnnenya la: Jagokɛyɔrɔ min bɛ se ka muɲu, o jɔli Jagokɛlaw fɛ, nin sɔrɔlen ninnu tɛ kalanko dɔrɔn ye; u ye welekan ye ka ɲɛsin walew ma. Ka i jigi da fɛnw jukɔrɔlafɛnw lakanani dɔrɔn kan, o tɛ bɔli kɛ tugun. Lakanali fɛɛrɛ min bɛ kɛ ka ɲɛ, min bɛ kɛ ni layini ye, o nafa ka bon. O yɔrɔ de la bi baarakɛyɔrɔ dɔ i n’a fɔ **Mewayz** bɛ kɛ ko kɔrɔba ye. Hali n’a tɛ OS kernel yɛrɛ ye, **Mewayz** bɛ sigida labɛnna, min bɛ kɛ ni modulu ye, jago baarakɛcogo jɔli kama. Ni an ye jɛ-ka-baara gɛlɛnw abstrait (abstraction) ani ka taabolo dɔw sigi sen kan, platform (jɔyɔrɔ) min bɛ i n’a fɔ **Mewayz**, o bɛ se ka dɔ bɔ jagokɛla ka porogaramuw ka "binkanni yɔrɔ" la. A b’a to jɛkuluw bɛ se k’u sinsin u nafa kɛrɛnkɛrɛnnen kan k’a sɔrɔ u ma segin ka fɛn dɔw labɛn kokura — ani minnu bɛ se ka kɛ sababu ye ka u labɛn cogo jugu la — jusigilan minnu bɛ se ka tiɲɛ. Kɛrɛn kalan b’an kalan ko filiw tɛ se ka bali sigida gɛlɛnw na; o de kama, muɲuli tɛ dantigɛ ni filiw tɛ yen, nka a bɛ dantigɛ ni se ye k’u ɲɛnabɔ, k’u nɔgɔya, k’u jaabi ka ɲɛ. Baarakɛyɔrɔ sabatilen ni min dilannen don koɲuman, o sugandili ye fɛɛrɛ jɔnjɔn ye o muɲuli jɔli la. Taama min kɛra ka tɛmɛn kernel vulnerabilities 125.000 kan, o laban bɛ maana dɔ jira hadamaden ka hakilitigiya n’a dancɛw kan. A b’a jira ko an ka diɲɛ kɔnɔ min ni ɲɔgɔn cɛsirilen don, lakana ye baara ye min bɛ kɛ ɲɔgɔn fɛ, k’a ta kernel dilabaga kɔrɔ la ka se jagokɛla ɲɛmɔgɔ ma min b’u ka sosiyete ka baarakɛminɛnw sugandi. Bugunw bɛ bɔ yɔrɔ min na, o faamuyali ye fɛɛrɛ fɔlɔ ye walasa ka siniɲɛsigi lakananenba jɔ bɛɛ ye.

aw ka jago ɲɛnabɔ ni Mewayz ye

Mewayz bɛ na ni jago modulu 207 ye kɛnɛ kelen kan — CRM , fatura, poroze ɲɛnabɔli , ani fɛn wɛrɛw . Aw ka fara baarakɛla 138.000+ kan minnu y’u ka baarakɛcogo nɔgɔya.

A daminɛ hɔrɔnya bi →
ye
ye

Ɲininkali minnu bɛ kɛ tuma caman na

Linux kernel 125.000 sɛgɛsɛgɛli la, sɔrɔba jumɛnw kɛra ?

Kalan in y’a jira ko numanbolow ka gɛlɛyaw yɔrɔba dɔ bɛ bɔ kode dɛmɛni taabolo yɛrɛ la, ni baarakɛlaw bɛ lakana filiw don tuma dɔw la k’a sɔrɔ u bɛ buguw labɛn walima ka fɛnw fara a kan. Ɲininikalaw y’a Sɔrɔ ko 30% ɲɔgɔnna bε Bɔ «labɛnw» la minnu ye gɛlɛya kuraw Dabɔ, o b’a Jira ko kode lakananen marali ka gɛlɛn. Sɛgɛsɛgɛli in ye misaliw fana jira, minnu b’a jira ko gɛlɛyaw bɛ jɛnsɛn cogo min na kernel subsystems (kɛrɛnkɛrɛnnenya la, kɛrɛnkɛrɛnnenya la, minɛnw bolibagaw ni rezow kode la. Nin kunnafonidilan in bɛ sɔsɔli kɛ hakilina in na ko kode kɔrɔw bɛ se ka tiɲɛ kosɛbɛ u danma, k’a jira ko kɔsa in na farali bɛ se ka kɛ gɛlɛya ye o cogo kelen na.

Jɔn de bɛ kernel bɔnɛ fanba la ka kɛɲɛ ni ɲininiw ye ?

ɲiniw b' a jira ko kunkanbaaraw tɛ kɛ kulu fitinin dɔ cɛ . O nɔ na, ​​dɛsɛw bɛ bɔ dɛmɛbaga caman na, k’a ta yiriwalikɛla kɔrɔw la ka se dɛmɛbaga kuraw ma. Nka, o sɛgɛsɛgɛli y’a jira ko sigida fitinin dɔw minnu bɛ mara ekipu kɛrɛnkɛrɛnnenw fɛ, olu ye bɔnɛ hakɛ caman jira. O b’a jira ko jɛkulu ka kow — i n’a fɔ seginnkanni taabolo, sɛbɛnw cogoya, ani jɛkulu ka baara caya — jɔyɔrɔ ka bon. A ka di kosɛbɛ, hali baarakɛlaw minnu bɛ se kosɛbɛ, n’u ka san tan caman ye kernel dɛmɛni tariku ye, olu sɔrɔla ka dɛmɛ don bɔnɛw la, k’u sinsin a kan ko dɔnniya dɔrɔn tɛ lakana filiw bali.

Nin ɲinini in bɛ na ni mun ye baarakɛda lakanabagaw la ?

Baarakɛlaw ka lakana baarakɛlaw fɛ , nin sɔrɔlen ninnu b' a jira ko lakana taabolo layɛrɛw nafa ka bon . Jɛkuluw tɛ se k’u jigi da feerekɛlaw ka patɔrɔnw dɔrɔn kan; u ka kan ka boli waati lakanani fɛɛrɛw waleya i n’a fɔ Mewayz minnu bɛ kɛwale juguw kɔlɔsi kernel nivo la. Kunnafoni ninnu b’a jira ko laadalakow ɲɛnabɔli, n’o sinsinnen bɛ CVE dɔntaw kan, o bɛ se ka fili bagabagali minnu bɛ ka bɔ kɛnɛ kan. Baarakɛdabaw ka kan ka fɛɛrɛw bila jɔyɔrɔ fɔlɔ la minnu bɛ yecogo di sistɛmu-dakun baaraw ma ani minnu bɛ se ka tile zeru nafabɔliw dɔn sani patɔrɔnw ka sɔrɔ, kɛrɛnkɛrɛnnenya la ka baara kɛ ni bagabagali dɔnni modulu kɔrɔlenw ye minnu bɛ sɔrɔ baarakɛminɛnw fɛ i n’a fɔ Mewayz.

jɛkuluw bɛ se k' u yɛrɛ tanga cogo di numanfɛla gɛlɛyaw ma ka da nin sɔrɔlen ninnu kan ?

Jɛkuluw ka kan ka fɛɛrɛ caman ta : fɔlɔ, ka patɔrɔnw ɲɛnabɔli kololi gɛlɛn mara ni kernel lakanani kurayali waleyali ye teliya la. Filanan, ka boli waati lakanani waleya min bɛ kernel baarakɛcogo kɔlɔsi baara sikɛtaw kama. Sabanan, aw ye furaw jateminɛ i n’a fɔ Mewayz minnu bɛ bagabagali dɔnni modulu kɛrɛnkɛrɛnnen 207 di minnu dabɔra kɛrɛnkɛrɛnnenya la walasa ka binkanniw dɔn minnu bɛ kɛ numan fɛ. Jɛkuluw ka kan ka

Try Mewayz Free

All-in-one platform for CRM, invoicing, projects, HR & more. No credit card required.

Start managing your business smarter today

Join 6,203+ businesses. Free forever plan · No credit card required.

Ready to put this into practice?

Join 6,203+ businesses using Mewayz. Free forever plan — no credit card required.

Start Free Trial →

Ready to take action?

Start your free Mewayz trial today

All-in-one business platform. No credit card required.

Start Free →

14-day free trial · No credit card · Cancel anytime