LinuxÓʼþ´«ÊäÊðÀíExim»º³åÇøÒç³öÎó²î (CVE-2018-6789)
2018-03-08
LinuxµÄÓʼþ´«ÊäÊðÀíExim±»ÆØ³ö±£´æÒ»¸öÎó²î£¨CVE-2018-6789£©¡£¸ÃÎó²îÔ´ÓÚbase64½âÂ뺯ÊýÖеÄÒ»¸ö»º³åÇøÒç³öÎÊÌ⡣ͨÀýÏÂbase64±àÂëºóµÄ×Ö·û´®µÄ³¤¶ÈΪ4µÄ±¶Êý£¬¿ÉÊÇÓпÉÄÜÔÚ´«Êä»òÕß¶ñÒâ½á¹¹µÄÇéÐÎϵ¼Ö³¤¶È²»Îª4µÄ±¶Êý£¬ÖÂʹ³¤¶ÈÅÌËã¹ýʧ¡£Í¨¹ý¸ÃÎó²î£¬¹¥»÷Õß¿ÉÒÔÈÆ¹ý·À»¤»úÖÆÔÚÊÜÓ°ÏìµÄÓ¦ÓóÌÐòÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂë¡£Èô¹¥»÷ʵÑéʧ°ÜÈԿɵ¼Ö¾ܾø·þÎñÌõ¼þ¡£
AG¹«Ë¾¿Æ¼¼ÍþвÇ鱨ÖÐÐÄ£¨NTI£©ÏÔʾȫÇòEximÓÃÁ¿Áè¼Ý°ÙÍò¼¶£¬¸ÃÎó²îÓ°ÏìExim¿¯ÐÐÒÔÀ´ËùÓа汾£¬½¨ÒéÊÜÓ°ÏìµÄÓû§Á¬Ã¦Éý¼¶¾ÙÐзÀ»¤¡£

http://www.openwall.com/lists/oss-security/2018/02/07/2
https://www.exim.org/static/doc/security/CVE-2018-6789.txt
https://devco.re/blog/2018/03/06/exim-off-by-one-RCE-exploiting-CVE-2018-6789-en/
ÊÜÓ°ÏìµÄ°æ±¾
Exim versions < 4.90.1
Exim version 4.90.1
EximÒѾÐû²¼ÁËа汾4.90.1ÐÞ¸´ÁËÉÏÊöÎó²î£¬AG¹«Ë¾¿Æ¼¼½¨ÒéÊÜÓ°ÏìµÄÓû§Á¬Ã¦Éý¼¶ÖÁ×îа汾¾ÙÐзÀ»¤¡£
¹Ù·½ÐÞ¸´´úÂëÈçÏ£¬Óû§Ò²¿ÉÒÔ×ÔÐÐÐ޸ĴúÂëÖØÐ±àÒëÀ´ÐÞ¸´¸ÃÎó²î¡£

²Î¿¼Á´½Ó£º
https://github.com/Exim/exim/commit/cf3cd306062a08969c41a1cdd32c6855f1abecf1
Éù Ã÷
±¾Ç徲ͨ¸æ½öÓÃÀ´ÐÎò¿ÉÄܱ£´æµÄÇå¾²ÎÊÌ⣬AG¹«Ë¾¿Æ¼¼²»Îª´ËÇ徲ͨ¸æÌṩÈκΰü¹Ü»òÔÊÐí¡£ÓÉÓÚÈö²¥¡¢Ê¹ÓôËÇ徲ͨ¸æËùÌṩµÄÐÅÏ¢¶øÔì³ÉµÄÈκÎÖ±½Ó»òÕß¼ä½ÓµÄЧ¹û¼°Ëðʧ£¬¾ùÓÉʹÓÃÕß×Ô¼ºÈÏÕæ£¬AG¹«Ë¾¿Æ¼¼ÒÔ¼°Ç徲ͨ¸æ×÷Õß²»Îª´Ë¼ç¸ºÈκÎÔðÈΡ£AG¹«Ë¾¿Æ¼¼ÓµÓжԴËÇ徲ͨ¸æµÄÐÞ¸ÄÏ¢ÕùÊÍȨ¡£ÈçÓû×ªÔØ»òÈö²¥´ËÇ徲ͨ¸æ£¬±ØÐè°ü¹Ü´ËÇ徲ͨ¸æµÄÍêÕûÐÔ£¬°üÀ¨°æÈ¨ÉùÃ÷µÈËùÓÐÄÚÈÝ¡£Î´¾AG¹«Ë¾¿Æ¼¼ÔÊÐí£¬²»µÃí§ÒâÐ޸ĻòÕßÔö¼õ´ËÇ徲ͨ¸æÄÚÈÝ£¬²»µÃÒÔÈκη½·¨½«ÆäÓÃÓÚÉÌҵĿµÄ¡£

AG¹«Ë¾ÔÆ





