Skip to content

Commit

Permalink
Site updated: 2024-08-26 11:30:08
Browse files Browse the repository at this point in the history
  • Loading branch information
ysy950803 committed Aug 26, 2024
1 parent 5ba13af commit f14dcc9
Show file tree
Hide file tree
Showing 101 changed files with 304 additions and 302 deletions.

Large diffs are not rendered by default.

Large diffs are not rendered by default.

Large diffs are not rendered by default.

Large diffs are not rendered by default.

Original file line number Diff line number Diff line change
Expand Up @@ -204,7 +204,7 @@ <h3 id="Docker安装配置"><a href="#Docker安装配置" class="headerlink" tit
<figure class="highlight bash"><table><tr><td class="gutter"><pre><span class="line">1</span><br></pre></td><td class="code"><pre><span class="line">sudo apt-key fingerprint 0EBFCD88</span><br></pre></td></tr></table></figure>
<p>如果输出:</p>
<blockquote>
<p>pub rsa4096 2017-02-22 [SCEA]<br> 9DC8 5822 9FC7 DD38 854A E2D8 8D81 803C 0EBF CD88<br>uid [ unknown] Docker Release (CE deb) <a href="mailto:&#x64;&#x6f;&#x63;&#107;&#101;&#x72;&#x40;&#100;&#x6f;&#x63;&#107;&#x65;&#114;&#x2e;&#99;&#x6f;&#x6d;">&#x64;&#x6f;&#x63;&#107;&#101;&#x72;&#x40;&#100;&#x6f;&#x63;&#107;&#x65;&#114;&#x2e;&#99;&#x6f;&#x6d;</a><br>sub rsa4096 2017-02-22 [S]</p>
<p>pub rsa4096 2017-02-22 [SCEA]<br> 9DC8 5822 9FC7 DD38 854A E2D8 8D81 803C 0EBF CD88<br>uid [ unknown] Docker Release (CE deb) <a href="mailto:&#x64;&#x6f;&#99;&#107;&#x65;&#x72;&#64;&#x64;&#x6f;&#99;&#107;&#x65;&#x72;&#x2e;&#99;&#x6f;&#109;">&#x64;&#x6f;&#99;&#107;&#x65;&#x72;&#64;&#x64;&#x6f;&#99;&#107;&#x65;&#x72;&#x2e;&#99;&#x6f;&#109;</a><br>sub rsa4096 2017-02-22 [S]</p>
</blockquote>
<p>就没问题。<br>接下来配置稳定版仓库(这里仅示例x86_64 &#x2F; amd64架构的处理器):</p>
<figure class="highlight bash"><table><tr><td class="gutter"><pre><span class="line">1</span><br><span class="line">2</span><br><span class="line">3</span><br><span class="line">4</span><br><span class="line">5</span><br><span class="line">6</span><br></pre></td><td class="code"><pre><span class="line">sudo add-apt-repository \</span><br><span class="line"> <span class="string">&quot;deb [arch=amd64] https://download.docker.com/linux/ubuntu \</span></span><br><span class="line"><span class="string"> <span class="subst">$(lsb_release -cs)</span> \</span></span><br><span class="line"><span class="string"> stable&quot;</span></span><br><span class="line"><span class="comment"># 再更新一下源</span></span><br><span class="line">sudo apt-get update</span><br></pre></td></tr></table></figure>
Expand Down
2 changes: 1 addition & 1 deletion 2020/06/10/浅谈JVM语言之函数式编程/index.html

Large diffs are not rendered by default.

4 changes: 2 additions & 2 deletions 2021/06/18/快速实现Sublime Text的Kotlin高亮/index.html

Large diffs are not rendered by default.

Large diffs are not rendered by default.

28 changes: 14 additions & 14 deletions 2023/02/14/Android系统无限重启漏洞/index.html
Original file line number Diff line number Diff line change
Expand Up @@ -261,7 +261,7 @@ <h3 id="What-to-expect"><a href="#What-to-expect" class="headerlink" title="What
</ol>
<hr>
<h3 id="Comments"><a href="#Comments" class="headerlink" title="Comments"></a>Comments</h3><blockquote>
<p><a href="mailto:&#121;&#115;&#x79;&#57;&#x35;&#48;&#56;&#x30;&#x33;&#64;&#103;&#x6d;&#x61;&#105;&#x6c;&#46;&#x63;&#111;&#109;">&#121;&#115;&#x79;&#57;&#x35;&#48;&#56;&#x30;&#x33;&#64;&#103;&#x6d;&#x61;&#105;&#x6c;&#46;&#x63;&#111;&#109;</a></p>
<p><a href="mailto:&#121;&#115;&#121;&#57;&#x35;&#x30;&#x38;&#x30;&#51;&#x40;&#x67;&#109;&#x61;&#105;&#x6c;&#x2e;&#99;&#111;&#109;">&#121;&#115;&#121;&#57;&#x35;&#x30;&#x38;&#x30;&#51;&#x40;&#x67;&#109;&#x61;&#105;&#x6c;&#x2e;&#99;&#111;&#109;</a></p>
</blockquote>
<p>I have some suggestions as solutions:</p>
<ol>
Expand All @@ -270,9 +270,9 @@ <h3 id="Comments"><a href="#Comments" class="headerlink" title="Comments"></a>Co
<li>Don’t throw an exception for system processes when reaching the maximum limit of alarms, then we can delete the alarm with the longest duration before set a new alarm.</li>
</ol>
<blockquote>
<p><a href="mailto:&#x6a;&#x61;&#46;&#x2e;&#x2e;&#64;&#x67;&#x6f;&#111;&#103;&#108;&#x65;&#46;&#x63;&#x6f;&#109;">&#x6a;&#x61;&#46;&#x2e;&#x2e;&#64;&#x67;&#x6f;&#111;&#103;&#108;&#x65;&#46;&#x63;&#x6f;&#109;</a></p>
<p><a href="mailto:&#106;&#97;&#x2e;&#x2e;&#46;&#64;&#x67;&#111;&#111;&#x67;&#x6c;&#101;&#x2e;&#x63;&#111;&#109;">&#106;&#97;&#x2e;&#x2e;&#46;&#64;&#x67;&#111;&#111;&#x67;&#x6c;&#101;&#x2e;&#x63;&#111;&#109;</a></p>
</blockquote>
<p>Assigned to <a href="mailto:&#x61;&#115;&#x2e;&#46;&#46;&#64;&#103;&#x6f;&#x6f;&#x67;&#108;&#x65;&#46;&#x63;&#x6f;&#109;">&#x61;&#115;&#x2e;&#46;&#46;&#64;&#103;&#x6f;&#x6f;&#x67;&#108;&#x65;&#46;&#x63;&#x6f;&#109;</a>.<br>Thank you for submitting this report. We’ve filed an internal report for the Android engineering team to investigate further (specified by the Android ID label). Please follow coordinated disclosure practices, such as keeping this report confidential until we have had time to assess your issue, and if necessary, release an update for Android devices.</p>
<p>Assigned to <a href="mailto:&#97;&#115;&#46;&#x2e;&#x2e;&#64;&#x67;&#111;&#111;&#x67;&#108;&#x65;&#x2e;&#x63;&#111;&#109;">&#97;&#115;&#46;&#x2e;&#x2e;&#64;&#x67;&#111;&#111;&#x67;&#108;&#x65;&#x2e;&#x63;&#111;&#109;</a>.<br>Thank you for submitting this report. We’ve filed an internal report for the Android engineering team to investigate further (specified by the Android ID label). Please follow coordinated disclosure practices, such as keeping this report confidential until we have had time to assess your issue, and if necessary, release an update for Android devices.</p>
<p>PLEASE TAKE THE FOLLOWING ACTIONS NOW, if you have not already:</p>
<ol>
<li>Sign the Google Contributor License Agreement (1).</li>
Expand All @@ -292,7 +292,7 @@ <h3 id="Comments"><a href="#Comments" class="headerlink" title="Comments"></a>Co
<p>Thank you,<br>Android Security Team</p>
<p>(1) Contributor license agreement: <a target="_blank" rel="noopener" href="https://cla.developers.google.com/clas">https://cla.developers.google.com/clas</a><br>(2) Android Security Acknowledgements: <a target="_blank" rel="noopener" href="https://source.android.com/security/overview/acknowledgements">https://source.android.com/security/overview/acknowledgements</a><br>(3) Android severity guidelines: <a target="_blank" rel="noopener" href="https://source.android.com/security/overview/updates-resources.html">https://source.android.com/security/overview/updates-resources.html</a></p>
<blockquote>
<p><a href="mailto:&#121;&#115;&#121;&#x39;&#x35;&#48;&#x38;&#x30;&#51;&#64;&#103;&#109;&#97;&#105;&#108;&#46;&#x63;&#111;&#109;">&#121;&#115;&#121;&#x39;&#x35;&#48;&#x38;&#x30;&#51;&#64;&#103;&#109;&#97;&#105;&#108;&#46;&#x63;&#111;&#109;</a></p>
<p><a href="mailto:&#x79;&#x73;&#x79;&#x39;&#x35;&#48;&#x38;&#x30;&#51;&#64;&#x67;&#x6d;&#x61;&#x69;&#x6c;&#46;&#99;&#x6f;&#109;">&#x79;&#x73;&#x79;&#x39;&#x35;&#48;&#x38;&#x30;&#51;&#64;&#x67;&#x6d;&#x61;&#x69;&#x6c;&#46;&#99;&#x6f;&#109;</a></p>
</blockquote>
<p>Thank you for your reply. ACTIONS DONE:</p>
<ol>
Expand All @@ -301,47 +301,47 @@ <h3 id="Comments"><a href="#Comments" class="headerlink" title="Comments"></a>Co
<li>The PoC is an Android Studio Project including source code and APK. Please download the attachment.</li>
</ol>
<blockquote>
<p><a href="mailto:&#106;&#97;&#x2e;&#46;&#x2e;&#64;&#103;&#111;&#x6f;&#x67;&#x6c;&#101;&#x2e;&#99;&#111;&#x6d;">&#106;&#97;&#x2e;&#46;&#x2e;&#64;&#103;&#111;&#x6f;&#x67;&#x6c;&#101;&#x2e;&#99;&#111;&#x6d;</a></p>
<p><a href="mailto:&#x6a;&#x61;&#x2e;&#x2e;&#46;&#x40;&#x67;&#111;&#x6f;&#x67;&#x6c;&#101;&#46;&#x63;&#111;&#x6d;">&#x6a;&#x61;&#x2e;&#x2e;&#46;&#x40;&#x67;&#111;&#x6f;&#x67;&#x6c;&#101;&#46;&#x63;&#111;&#x6d;</a></p>
</blockquote>
<p>Hello,</p>
<p>Thank you for the additional information as well as your acknowledgement. We will be following our standard investigation and remediation process with this report and ask for your continued confidentiality while we work on this issue.</p>
<p>Thank you,<br>Android Security Team</p>
<blockquote>
<p><a href="mailto:&#101;&#106;&#x2e;&#x2e;&#x2e;&#64;&#x67;&#111;&#x6f;&#x67;&#108;&#101;&#x2e;&#99;&#x6f;&#x6d;">&#101;&#106;&#x2e;&#x2e;&#x2e;&#64;&#x67;&#111;&#x6f;&#x67;&#108;&#101;&#x2e;&#99;&#x6f;&#x6d;</a></p>
<p><a href="mailto:&#x65;&#106;&#46;&#46;&#46;&#64;&#103;&#x6f;&#x6f;&#103;&#108;&#101;&#46;&#x63;&#x6f;&#109;">&#x65;&#106;&#46;&#46;&#46;&#64;&#103;&#x6f;&#x6f;&#103;&#108;&#101;&#46;&#x63;&#x6f;&#109;</a></p>
</blockquote>
<p>Hello,</p>
<p>The Android security team has conducted an initial severity assessment on this report. Based on our published severity assessment matrix (1) it was rated as High severity. This issue has been assigned to the appropriate team for remediation, and we’re targeting a fix for release in an upcoming Android Security Bulletin. We will provide an update on remediation status as it becomes available. We ask for your continued confidentiality as we proceed with our standard investigation and remediation process.</p>
<p>Thank you,<br>Android Security Team<br>(1) Severity Matrix: <a target="_blank" rel="noopener" href="https://source.android.com/security/overview/updates-resources#severity">https://source.android.com/security/overview/updates-resources#severity</a></p>
<blockquote>
<p><a href="mailto:&#121;&#115;&#x79;&#x39;&#x35;&#x30;&#56;&#x30;&#x33;&#64;&#103;&#109;&#x61;&#x69;&#108;&#46;&#x63;&#x6f;&#109;">&#121;&#115;&#x79;&#x39;&#x35;&#x30;&#56;&#x30;&#x33;&#64;&#103;&#109;&#x61;&#x69;&#108;&#46;&#x63;&#x6f;&#109;</a></p>
<p><a href="mailto:&#x79;&#x73;&#121;&#x39;&#53;&#48;&#x38;&#48;&#x33;&#x40;&#103;&#109;&#97;&#105;&#x6c;&#x2e;&#99;&#x6f;&#x6d;">&#x79;&#x73;&#121;&#x39;&#53;&#48;&#x38;&#48;&#x33;&#x40;&#103;&#109;&#97;&#105;&#x6c;&#x2e;&#99;&#x6f;&#x6d;</a></p>
</blockquote>
<p>Thanks for your efforts!</p>
<p>I will continue to follow this issue and support you in any way I can.</p>
<blockquote>
<p><a href="mailto:&#121;&#115;&#121;&#57;&#53;&#x30;&#x38;&#48;&#x33;&#x40;&#x67;&#109;&#x61;&#x69;&#x6c;&#x2e;&#x63;&#111;&#109;">&#121;&#115;&#121;&#57;&#53;&#x30;&#x38;&#48;&#x33;&#x40;&#x67;&#109;&#x61;&#x69;&#x6c;&#x2e;&#x63;&#111;&#109;</a></p>
<p><a href="mailto:&#121;&#115;&#x79;&#57;&#x35;&#x30;&#56;&#x30;&#51;&#x40;&#x67;&#x6d;&#97;&#x69;&#108;&#46;&#99;&#x6f;&#109;">&#121;&#115;&#x79;&#57;&#x35;&#x30;&#56;&#x30;&#51;&#x40;&#x67;&#x6d;&#97;&#x69;&#108;&#46;&#99;&#x6f;&#109;</a></p>
</blockquote>
<p>Hello! How is the progress?</p>
<blockquote>
<p><a href="mailto:&#x6a;&#97;&#x2e;&#46;&#46;&#64;&#x67;&#111;&#111;&#x67;&#x6c;&#101;&#46;&#99;&#x6f;&#x6d;">&#x6a;&#97;&#x2e;&#46;&#46;&#64;&#x67;&#111;&#111;&#x67;&#x6c;&#101;&#46;&#99;&#x6f;&#x6d;</a></p>
<p><a href="mailto:&#x6a;&#x61;&#x2e;&#x2e;&#x2e;&#64;&#x67;&#x6f;&#x6f;&#x67;&#108;&#101;&#x2e;&#x63;&#x6f;&#109;">&#x6a;&#x61;&#x2e;&#x2e;&#x2e;&#64;&#x67;&#x6f;&#x6f;&#x67;&#108;&#101;&#x2e;&#x63;&#x6f;&#109;</a></p>
</blockquote>
<p>Hello,</p>
<p>Thank you for following up! This issue has been fixed and is targeted for release in an upcoming Android Security Bulletin. It will be reviewed for both a CVE and reward eligibility under Android Security Rewards Program rules closer to that time (1). Further details will be provided here when available.</p>
<p>Thank you,<br>Android Security Team</p>
<p>(1) <a target="_blank" rel="noopener" href="https://www.google.com/about/appsecurity/android-rewards/">https://www.google.com/about/appsecurity/android-rewards/</a></p>
<blockquote>
<p><a href="mailto:&#x61;&#110;&#x2e;&#x2e;&#x2e;&#64;&#103;&#x6f;&#x6f;&#103;&#x6c;&#101;&#x2e;&#99;&#x6f;&#x6d;">&#x61;&#110;&#x2e;&#x2e;&#x2e;&#64;&#103;&#x6f;&#x6f;&#103;&#x6c;&#101;&#x2e;&#99;&#x6f;&#x6d;</a></p>
<p><a href="mailto:&#x61;&#x6e;&#46;&#46;&#46;&#64;&#x67;&#111;&#x6f;&#103;&#x6c;&#x65;&#46;&#99;&#111;&#x6d;">&#x61;&#x6e;&#46;&#46;&#46;&#64;&#x67;&#111;&#x6f;&#103;&#x6c;&#x65;&#46;&#99;&#111;&#x6d;</a></p>
</blockquote>
<p>Congratulations! The rewards committee decided to reward you USD $5,000 for reporting this High severity vulnerability. We are paying for the bug report and proof of concept.</p>
<p>To collect the reward, if you haven’t already, please complete the Android Contributor License Agreement for Individuals, so we can use your test code:<br><a target="_blank" rel="noopener" href="https://cla.developers.google.com/clas">https://cla.developers.google.com/clas</a></p>
<p>You will receive an email with details on the next steps to collect the reward.</p>
<p>Thank you for your contributions to the safety and security of the Android ecosystem.</p>
<p>Best Regards,<br>Android Security Team</p>
<blockquote>
<p><a href="mailto:&#121;&#115;&#x79;&#57;&#53;&#48;&#x38;&#48;&#51;&#x40;&#103;&#x6d;&#x61;&#x69;&#108;&#46;&#99;&#x6f;&#x6d;">&#121;&#115;&#x79;&#57;&#53;&#48;&#x38;&#48;&#51;&#x40;&#103;&#x6d;&#x61;&#x69;&#108;&#46;&#99;&#x6f;&#x6d;</a></p>
<p><a href="mailto:&#x79;&#x73;&#x79;&#57;&#x35;&#48;&#56;&#48;&#51;&#64;&#x67;&#x6d;&#x61;&#x69;&#x6c;&#x2e;&#99;&#111;&#x6d;">&#x79;&#x73;&#x79;&#57;&#x35;&#48;&#56;&#48;&#51;&#64;&#x67;&#x6d;&#x61;&#x69;&#x6c;&#x2e;&#99;&#111;&#x6d;</a></p>
</blockquote>
<p>Thank you for your hard work, I am honored to contribute to the Google ecosystem.</p>
<blockquote>
<p><a href="mailto:&#x6a;&#x61;&#46;&#x2e;&#x2e;&#x40;&#x67;&#x6f;&#x6f;&#103;&#108;&#x65;&#46;&#99;&#111;&#x6d;">&#x6a;&#x61;&#46;&#x2e;&#x2e;&#x40;&#x67;&#x6f;&#x6f;&#103;&#108;&#x65;&#46;&#99;&#111;&#x6d;</a></p>
<p><a href="mailto:&#x6a;&#x61;&#x2e;&#46;&#46;&#64;&#103;&#111;&#111;&#103;&#108;&#x65;&#x2e;&#99;&#111;&#109;">&#x6a;&#x61;&#x2e;&#46;&#46;&#64;&#103;&#111;&#111;&#103;&#108;&#x65;&#x2e;&#99;&#111;&#109;</a></p>
</blockquote>
<p>Hello,</p>
<p>We will be releasing a patch for this issue in an upcoming bulletin. It will first be released to partners, then to the public the following month.</p>
Expand All @@ -352,11 +352,11 @@ <h3 id="Comments"><a href="#Comments" class="headerlink" title="Comments"></a>Co
<p>Thanks,<br>Android Security Team</p>
<p>(1) <a target="_blank" rel="noopener" href="https://cla.developers.google.com/clas">https://cla.developers.google.com/clas</a><br>(2) <a target="_blank" rel="noopener" href="https://source.android.com/security/overview/acknowledgements">https://source.android.com/security/overview/acknowledgements</a></p>
<blockquote>
<p><a href="mailto:&#x79;&#115;&#121;&#x39;&#x35;&#x30;&#x38;&#x30;&#x33;&#64;&#x67;&#x6d;&#97;&#x69;&#x6c;&#x2e;&#99;&#111;&#109;">&#x79;&#115;&#121;&#x39;&#x35;&#x30;&#x38;&#x30;&#x33;&#64;&#x67;&#x6d;&#97;&#x69;&#x6c;&#x2e;&#99;&#111;&#109;</a></p>
<p><a href="mailto:&#121;&#x73;&#x79;&#x39;&#53;&#x30;&#56;&#48;&#x33;&#x40;&#x67;&#x6d;&#97;&#x69;&#108;&#46;&#99;&#x6f;&#109;">&#121;&#x73;&#x79;&#x39;&#53;&#x30;&#56;&#48;&#x33;&#x40;&#x67;&#x6d;&#97;&#x69;&#108;&#46;&#99;&#x6f;&#109;</a></p>
</blockquote>
<p>Thanks for your work. Where can I see the fix code?</p>
<blockquote>
<p><a href="mailto:&#106;&#x61;&#46;&#46;&#46;&#64;&#x67;&#x6f;&#111;&#x67;&#x6c;&#101;&#x2e;&#99;&#111;&#x6d;">&#106;&#x61;&#46;&#46;&#46;&#64;&#x67;&#x6f;&#111;&#x67;&#x6c;&#101;&#x2e;&#99;&#111;&#x6d;</a></p>
<p><a href="mailto:&#x6a;&#97;&#x2e;&#x2e;&#46;&#x40;&#x67;&#x6f;&#x6f;&#x67;&#108;&#x65;&#46;&#99;&#111;&#109;">&#x6a;&#97;&#x2e;&#x2e;&#46;&#x40;&#x67;&#x6f;&#x6f;&#x67;&#108;&#x65;&#46;&#99;&#111;&#109;</a></p>
</blockquote>
<p>Hello,</p>
<p>This is targeted to be released in the November bulletin. Thank you for your continued engagement with the Android VRP!</p>
Expand Down
Loading

0 comments on commit f14dcc9

Please sign in to comment.