[ad_1]
Drupal issued two safety advisories warning of a vulnerabilities affecting a number of variations of Drupal that might enable an attacker to entry delicate info.
There are two vulnerabilities at the moment affecting Drupal. One is rated as a excessive severity important vulnerability.
Vulnerability in Third Occasion Library
Drupal makes use of a 3rd get together templating engine referred to as Twig.
Based on Drupal documentation:
“When your internet web page renders, the Twig engine takes the template and converts it right into a ‘compiled’ PHP template which is saved in a protected listing…”
The Twig library is utilized by Drupal for templating but additionally for a course of referred to as sanitization, which is a approach to forestall malicious recordsdata from being uploaded.
Twig describes the vulnerabilities as one that enables an attacker to make use of the filesystem loader to entry delicate recordsdata.
Drupal warns:
“A number of vulnerabilities are doable if an untrusted person has entry to write down Twig code, together with potential unauthorized learn entry to non-public recordsdata, the contents of
different recordsdata on the server, or database credentials.”
This vulnerability impacts customers of Drupal 9.3 and 9.4.
Really helpful Course of Motion for Mitigating Vulnerability
Customers of Drupal 9.3 are advisable to replace to model 9.3.22.
Customers of Drupal 9.4 are suggested to replace to model 9.4.7.
Average Vulnerability
Drupal additionally warned of an Entry Bypass vulnerability that’s rated as average affecting publishers that use the S3 File System module for Drupal 7.x.
An entry bypass vulnerability is one wherein an attacker is ready to bypass authentication obstacles and entry to an software and delicate recordsdata that they need to not
in any other case have entry to.
The vulnerability is described as:
“The module doesn’t sufficiently forestall file entry throughout a number of filesystem schemes saved in the identical bucket.”
The advisory notes that this vulnerability is mitigated by a number of steps that should be taken earlier than an attacker can acquire entry.
The advisory explains:
“This vulnerability is mitigated by the truth that an attacker should get hold of a way to entry arbitrary file paths, the location should have public or personal takeover enabled, and the file metadata cache should be ignored.”
Really helpful Course of Motion
Drupal customers who use the S3 File System module for Drupal 7.x are suggested to improve to S3 File System 7.x-2.14 with a purpose to patch the vulnerability.
Citations
Drupal core – Important – A number of vulnerabilities – SA-CORE-2022-016
S3 File System – Reasonably important – Entry bypass – SA-CONTRIB-2022-057
Featured picture by Shutterstock/Andrey_Popov
window.addEventListener( 'load', function() { setTimeout(function(){ striggerEvent( 'load2' ); }, 2000); });
window.addEventListener( 'load2', function() {
if( sopp != 'yes' && addtl_consent != '1~' && !ss_u ){
!function(f,b,e,v,n,t,s) {if(f.fbq)return;n=f.fbq=function(){n.callMethod? n.callMethod.apply(n,arguments):n.queue.push(arguments)}; if(!f._fbq)f._fbq=n;n.push=n;n.loaded=!0;n.version='2.0'; n.queue=[];t=b.createElement(e);t.async=!0; t.src=v;s=b.getElementsByTagName(e)[0]; s.parentNode.insertBefore(t,s)}(window,document,'script', 'https://connect.facebook.net/en_US/fbevents.js');
if( typeof sopp !== "undefined" && sopp === 'yes' ){ fbq('dataProcessingOptions', ['LDU'], 1, 1000); }else{ fbq('dataProcessingOptions', []); }
fbq('init', '1321385257908563');
fbq('track', 'PageView');
fbq('trackSingle', '1321385257908563', 'ViewContent', { content_name: 'drupal-critical-vulnerability', content_category: 'drupal news' }); } });
[ad_2]
