¡¾Ç徲ͨ¸æ¡¿WebSphere Application Server¸ßΣԶ³Ì´úÂëÖ´ÐÐÎó²î CVE-2020-4450
2020-07-30
×ÛÊö
±±¾©Ê±¼ä2020Äê6ÔÂ5ÈÕ£¬IBM¹Ù·½Ðû²¼Í¨¸æÐÞ¸´ÁËWebSphere Application Server£¨WAS£©ÖеÄÒ»¸ö¸ßΣԶ³Ì´úÂëÖ´ÐÐÎó²î£¬Îó²îÐÎòΪIIOPÐÒéÉϵķ´ÐòÁл¯Îó²î£¬·ÖÅɱàºÅCVE-2020-4450£¬Îó²îÆÀ·ÖΪ9.8·Ö£¬Îó²îΣº¦½Ï¸ß£¬Ó°ÏìÃæ½Ï´ó¡£
CVE-2020-4450ÓÉAG¹«Ë¾¿Æ¼¼Çå¾²Ñо¿ÍŶӱ¨¸æ¸øIBM£¬Î´¾ÈÏÖ¤µÄ¹¥»÷Õß¿ÉÒÔͨ¹ýIIOPÐÒéÔ¶³Ì¹¥»÷WAS·þÎñÆ÷£¬ÔÚÄ¿µÄ·þÎñ¶ËÖ´ÐÐí§Òâ´úÂ룬»ñȡϵͳȨÏÞ£¬½ø¶ø½ÓÊÜ·þÎñÆ÷¡£
ʹÓÃÀÖ³ÉʾÀýÈçÏ£º

¼øÓÚ½üÆÚÓиÃÎó²îµÄÏêϸÆÊÎö·ºÆð£¬²¢ÇÒÎó²îÓ°Ïì½Ï´ó£¬½¨ÒéÓû§¾¡¿ì½ÓÄÉÏìÓ¦²½·¥¾ÙÐзÀ»¤¡£
²Î¿¼Á´½Ó£º
https://www.ibm.com/support/pages/node/6220276
ÊÜÓ°Ïì²úÆ·°æ±¾
WebSphere Application Server 9.0.x
WebSphere Application Server 8.5.x
×¢£ºWebSphere Application Server V7.0 ºÍ V8.0¹Ù·½ÒÑ×èֹά»¤¡£
½â¾ö¼Æ»®
¹Ù·½ÒѾÐû²¼ÁËа汾ÐÞ¸´ÁËÉÏÊöÎó²î£¬ÊÜÓ°ÏìµÄÓû§Ç뾡¿ìÉý¼¶¾ÙÐзÀ»¤¡£
- WebSphere Application Server 9.0.x£º¸üÐÂÇå¾²²¹¶¡PH25074
- WebSphere Application Server 8.5.x£º¸üÐÂÇå¾²²¹¶¡PH25074
Óû§¿ÉÒÔͨ¹ýIBM Installation Manager ¾ÙÐÐÏÂÔØºÍ×°Öò¹¶¡»òǰÍù¹Ù·½µØµãÊÖ¶¯ÏÂÔØ²¹¶¡²¢×°Ö㬵صãhttps://www.ibm.com/support/pages/node/6220276
¸ü¶àÐÅÏ¢¿ÉÒÔÉó²éAG¹«Ë¾¿Æ¼¼´ËǰÐû²¼µÄÏà¹ØÎó²îͨ¸æ£º
https://mp.weixin.qq.com/s/sNHUtZXH58Ya77cG7noIpg
Éù Ã÷
±¾Ç徲ͨ¸æ½öÓÃÀ´ÐÎò¿ÉÄܱ£´æµÄÇå¾²ÎÊÌ⣬AG¹«Ë¾¿Æ¼¼²»Îª´ËÇ徲ͨ¸æÌṩÈκΰü¹Ü»òÔÊÐí¡£ÓÉÓÚÈö²¥¡¢Ê¹ÓôËÇ徲ͨ¸æËùÌṩµÄÐÅÏ¢¶øÔì³ÉµÄÈκÎÖ±½Ó»òÕß¼ä½ÓµÄЧ¹û¼°Ëðʧ£¬¾ùÓÉʹÓÃÕß×Ô¼ºÈÏÕæ£¬AG¹«Ë¾¿Æ¼¼ÒÔ¼°Ç徲ͨ¸æ×÷Õß²»Îª´Ë¼ç¸ºÈκÎÔðÈΡ£AG¹«Ë¾¿Æ¼¼ÓµÓжԴËÇ徲ͨ¸æµÄÐÞ¸ÄÏ¢ÕùÊÍȨ¡£ÈçÓû×ªÔØ»òÈö²¥´ËÇ徲ͨ¸æ£¬±ØÐè°ü¹Ü´ËÇ徲ͨ¸æµÄÍêÕûÐÔ£¬°üÀ¨°æÈ¨ÉùÃ÷µÈËùÓÐÄÚÈÝ¡£Î´¾AG¹«Ë¾¿Æ¼¼ÔÊÐí£¬²»µÃí§ÒâÐ޸ĻòÕßÔö¼õ´ËÇ徲ͨ¸æÄÚÈÝ£¬²»µÃÒÔÈκη½·¨½«ÆäÓÃÓÚÉÌҵĿµÄ¡£
¹ØÓÚAG¹«Ë¾¿Æ¼¼
AG¹«Ë¾£¨¼ò³ÆAG¹«Ë¾¿Æ¼¼£©½¨ÉèÓÚ2000Äê4Ô£¬×ܲ¿Î»ÓÚ±±¾©¡£ÔÚº£ÄÚÍâÉèÓÐ30¶à¸ö·ÖÖ§»ú¹¹£¬ÎªÕþ¸®¡¢ÔËÓªÉÌ¡¢½ðÈÚ¡¢ÄÜÔ´¡¢»¥ÁªÍøÒÔ¼°½ÌÓý¡¢Ò½ÁƵÈÐÐÒµÓû§£¬Ìṩ¾ßÓн¹µã¾ºÕùÁ¦µÄÇå¾²²úÆ·¼°½â¾ö¼Æ»®£¬×ÊÖú¿Í»§ÊµÏÖÓªÒµµÄÇ徲˳³©ÔËÐС£
»ùÓÚ¶àÄêµÄÇå¾²¹¥·ÀÑо¿£¬AG¹«Ë¾¿Æ¼¼ÔÚÍøÂç¼°ÖÕ¶ËÇå¾²¡¢»¥ÁªÍø»ù´¡Çå¾²¡¢ºÏ¹æ¼°Çå¾²ÖÎÀíµÈÁìÓò£¬Îª¿Í»§ÌṩÈëÇÖ¼ì²â/·À»¤¡¢¿¹¾Ü¾ø·þÎñ¹¥»÷¡¢Ô¶³ÌÇå¾²ÆÀ¹ÀÒÔ¼°WebÇå¾²·À»¤µÈ²úÆ·ÒÔ¼°×¨ÒµÇå¾²·þÎñ¡£
AG¹«Ë¾ÓÚ2014Äê1ÔÂ29ÈÕÆðÔÚÉîÛÚ֤ȯÉúÒâËù´´Òµ°åÉÏÊУ¬¹ÉƱ¼ò³Æ£ºAG¹«Ë¾¿Æ¼¼£¬¹ÉƱ´úÂ룺300369¡£

AG¹«Ë¾ÔÆ







