Apache Solr JMX·þÎñÔ¶³Ì´úÂëÖ´ÐÐÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2019-11-19Îó²î±àºÅºÍ¼¶±ð
CVE±àºÅ£ºCVE-2019-12409£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
Ó°Ïì°æ±¾
ÊÜÓ°ÏìµÄ°æ±¾
Linux°æµÄSolr 8.1.1ÖÁ8.2.0°æ±¾¡£
Îó²î¸ÅÊö
Apache SolrÊÇÃÀ¹ú°¢ÅÁÆæ£¨Apache£©Èí¼þ»ù½ð»áµÄÒ»¿î»ùÓÚLucene£¨Ò»¿îÈ«ÎÄËÑË÷ÒýÇæ£©µÄËÑË÷·þÎñÆ÷¡£Í¬Ê±¶ÔÆä¾ÙÐÐÁËÀ©Õ¹£¬ÌṩÁ˱ÈLucene¸üΪ¸»ºñµÄÅÌÎÊÓïÑÔ£¬Í¬Ê±ÊµÏÖÁË¿ÉÉèÖᢿÉÀ©Õ¹²¢¶ÔÅÌÎÊÐÔÄܾÙÐÐÁËÓÅ»¯£¬²¢ÇÒÌṩÁËÒ»¸öÍêÉÆµÄ¹¦Ð§ÖÎÀí½çÃæ£¬ÊÇÒ»¿îºÜÊÇÓÅÒìµÄÈ«ÎÄËÑË÷ÒýÇæ¡£
Apache SolrµÄ8.1.1ºÍ8.2.0°æ±¾µÄ×Ô´øÉèÖÃÎļþsolr.in.shÖб£´æ²»Çå¾²µÄÑ¡ÏîENABLE_REMOTE_JMX_OPTS="true"¡£ÈôÊÇÊܺ¦ÕßʹÓÃÁ˸ÃĬÈÏÉèÖã¬Ôò»áÔÚĬÈ϶˿Ú18983¿ª·ÅJMX·þÎñ£¬ÇÒĬÈÏ먦ÆôÈÏÖ¤¡£Èκοɻá¼û´Ë¶Ë¿ÚµÄ¹¥»÷Õß¿ÉʹÓôËÎó²îÏòÊÜÓ°Ïì·þÎñÌᳫ¹¥»÷£¬Ö´ÐÐí§Òâ´úÂë¡£
Îó²îÑéÖ¤
EXP: https://github.com/mogwailabs/mjet
ÐÞ¸´½¨Òé
Éý¼¶Solrµ½8.3.0°æ±¾£ºhttps://lucene.apache.org/solr/downloads.html¡£
ÔÝʱÐÞ¸´½¨Ò飺
1¡¢¹Ø±Õ18983¶Ë¿Ú¶ÔÍ⿪·Å£»
2¡¢ÈçÐè¶ÔÍ⿪·Å£¬Îñ±ØÉèÖÃJMX admin roleÇ¿¿ÚÁ
3¡¢ÉèÖÃsolr.in.shÖÐµÄ ENABLE_REMOTE_JMX_OPTS=false, È»ºóÖØÆôsolr¡£
²Î¿¼Á´½Ó
http://lucene.apache.org/solr/news.html


¾©¹«Íø°²±¸11010802024551ºÅ