{"id":1835,"date":"2025-03-19T13:31:34","date_gmt":"2025-03-19T11:31:34","guid":{"rendered":"https:\/\/techlance.ddns.net\/?p=1835"},"modified":"2025-03-19T13:33:20","modified_gmt":"2025-03-19T11:33:20","slug":"gitlabin-kriittinen-tietoturvapaivitys-versiot-17-9-2-17-8-5-ja-17-7-7","status":"publish","type":"post","link":"https:\/\/techlance.ddns.net\/en\/gitlabin-kriittinen-tietoturvapaivitys-versiot-17-9-2-17-8-5-ja-17-7-7\/","title":{"rendered":"GitLabin kriittinen tietoturvap\u00e4ivitys: versiot 17.9.2, 17.8.5 ja 17.7.7"},"content":{"rendered":"<p>GitLab on julkaissut 12. maaliskuuta 2025 kriittisen tietoturvap\u00e4ivityksen, joka sis\u00e4lt\u00e4\u00e4 t\u00e4rkeit\u00e4 korjauksia ja parannuksia. Julkaistut versiot 17.9.2, 17.8.5 ja 17.7.7 koskevat sek\u00e4 GitLab Community Editionia (CE) ett\u00e4 Enterprise Editionia (EE). Kaikkia itsehallinnoituja GitLab-instansseja suositellaan p\u00e4ivitt\u00e4m\u00e4\u00e4n v\u00e4litt\u00f6m\u00e4sti uusimpaan versioon.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Yhteenveto ja kriittisyysluokitus<\/h2>\n\n\n\n<p>T\u00e4m\u00e4 p\u00e4ivitys on luokiteltu kriittiseksi, sill\u00e4 se sis\u00e4lt\u00e4\u00e4 useita vakavia tietoturvakorjauksia. Exploit-maturiteetti on arvioitu toiminnalliseksi, eli haavoittuvuuksia voidaan mahdollisesti hy\u00f6dynt\u00e4\u00e4 reaalimaailmassa.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Vaikuttavat CVE-haavoittuvuudet:<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>CVE-2025-25291<\/strong><\/li>\n\n\n\n<li><strong>CVE-2025-25292<\/strong><\/li>\n\n\n\n<li><strong>CVE-2025-27407<\/strong><\/li>\n<\/ul>\n\n\n\n<p>N\u00e4m\u00e4 haavoittuvuudet voivat mahdollisesti vaarantaa GitLab-ymp\u00e4rist\u00f6jen tietoturvan, mink\u00e4 vuoksi niiden korjaaminen on ensiarvoisen t\u00e4rke\u00e4\u00e4.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Ratkaisu ja p\u00e4ivitysohjeet<\/h2>\n\n\n\n<p>Virallinen korjaus on saatavilla uusimmissa GitLab-versioissa 17.9.2, 17.8.5 ja 17.7.7. Suosittelemme voimakkaasti, ett\u00e4 kaikki itsehallinnoidut GitLab-j\u00e4rjestelm\u00e4t p\u00e4ivitet\u00e4\u00e4n n\u00e4ihin versioihin mahdollisimman pian.<\/p>\n\n\n\n<p>P\u00e4ivitysohjeet l\u00f6ytyv\u00e4t GitLabin viralliselta verkkosivustolta: <a href=\"https:\/\/about.gitlab.com\/releases\/2025\/03\/12\/patch-release-gitlab-17-9-2-released\/\">GitLab Patch Release 17.9.2<\/a><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Yhteenveto<\/h2>\n\n\n\n<p>GitLabin uusin p\u00e4ivitys sis\u00e4lt\u00e4\u00e4 kriittisi\u00e4 tietoturvakorjauksia, jotka on suositeltavaa ottaa k\u00e4ytt\u00f6\u00f6n v\u00e4litt\u00f6m\u00e4sti. Organisaatioiden, jotka k\u00e4ytt\u00e4v\u00e4t itsehallinnoitua GitLabia, tulisi varmistaa, ett\u00e4 ne p\u00e4ivitt\u00e4v\u00e4t palvelimensa uusimpiin versioihin riskien minimoimiseksi.<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-wp-embed is-provider-techlance wp-block-embed-techlance\"><div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"wp-embedded-content\" data-secret=\"yQ0Fev478N\"><a href=\"https:\/\/techlance.ddns.net\/en\/\">Etusivu<\/a><\/blockquote><iframe class=\"wp-embedded-content\" sandbox=\"allow-scripts\" security=\"restricted\" style=\"position: absolute; visibility: hidden;\" title=\"&#8221;Etusivu&#8221; &#8212; Techlance\" src=\"https:\/\/techlance.ddns.net\/embed\/#?secret=vTin3J3AMW#?secret=yQ0Fev478N\" data-secret=\"yQ0Fev478N\" width=\"500\" height=\"282\" frameborder=\"0\" marginwidth=\"0\" marginheight=\"0\" scrolling=\"no\"><\/iframe>\n<\/div><\/figure>","protected":false},"excerpt":{"rendered":"<p>GitLab on julkaissut 12. maaliskuuta 2025 kriittisen tietoturvap\u00e4ivityksen, joka sis\u00e4lt\u00e4\u00e4 t\u00e4rkeit\u00e4 korjauksia ja parannuksia. Julkaistut versiot 17.9.2, 17.8.5 ja 17.7.7 [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[21,9],"tags":[22,15],"class_list":["post-1835","post","type-post","status-publish","format-standard","hentry","category-data-protection","category-security","tag-data-protection","tag-tietoturva"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts\/1835","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/comments?post=1835"}],"version-history":[{"count":0,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/posts\/1835\/revisions"}],"wp:attachment":[{"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/media?parent=1835"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/categories?post=1835"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/techlance.ddns.net\/en\/wp-json\/wp\/v2\/tags?post=1835"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}