Ç徲ͨ¸æ
-
Ò»¡¢ Íþвͨ¸æ? Microsoft Exchange ServerÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡¾Ðû²¼Ê±¼ä¡¿2020-02-26 20:00:00 GMT¡¾¸ÅÊö¡¿±±¾©Ê±¼ä2ÔÂ12ÈÕ£¬Î¢ÈíÔÚÐû²¼2ÔÂÇå¾²¸üв¹¶¡Öн«Ó°ÏìMicrosoft Exchange ServerµÄÎó²îCVE-2020-0688½ç˵ΪÄÚ´æËð»µÎó²î¡£2ÔÂ26ÈÕÓÐÇå¾²Ñо¿Ô±¹ûÕæÁ˸ÃÎó²îϸ½Ú£¬»ñÈ¡µ½ÓÊÏäÕË»§È¨Ï޵Ĺ¥»÷ÕßÏò·þÎñÆ÷·¢ËÍÈ«ÐĽṹµÄÇëÇ󣬿ÉÔÚ·þÎñÆ÷¶ËʵÏÖÔ¶³Ì´úÂëÖ´ÐУ¬Î¢Èí¹Ù·½Ò²½«Ö®Ç°ÃüÃûµÄÄÚ´æËð»µÎó²îÖØÃüÃûΪԶ³Ì´úÂëÖ´ÐÐ
¸ü¶à -
×ÛÊöÔÚ΢ÈíÐû²¼µÄ2Ô·ÝÇå¾²¸üÐÂÖаüÀ¨Ò»¸öÖ÷Òª¼¶±ðµÄ²¹¶¡£¬ÓÃÓÚÐÞ¸´±£´æÓÚ Microsoft Exchange ServerÖеÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-0688£©¡£¸ÃÎó²îÓ°ÏìËùÓÐÊÜÖ§³ÖµÄMicrosoft Exchange Server¡£ÏÖÔÚÒÑÓиÃÎó²îµÄÏêϸÆÊÎöºÍʹÓÃÑÝʾ£¬Ïê¼ûÒÔϲο¼Á´½Ó¡£Îó²îÔµ¹ÊÔÓÉÊÇExchange·þÎñÆ÷ÔÚ×°ÖÃʱûÓÐ׼ȷ½¨ÉèΨһµÄ¼ÓÃÜÃÜÔ¿¡£µ¼Ö¾ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔÓÕÆÄ¿µÄ·þÎñÆ÷·´ÐòÁл¯¶ñÒ⽨ÉèµÄÊý¾Ý£¬À´µÖ´ïÔÚÄ¿µÄ·þÎñÆ÷ÉÏÒÔ SYSTE
¸ü¶à -
×ÛÊöÍâµØÊ±¼ä2ÔÂ24ÈÕ£¬À´×ÔÇå¾²¹«Ë¾QualysµÄÑо¿Ö°Ô±ÔÚ¹ûÕæÓʼþ×éÖÐÐû²¼ÁËOpenSMTPD Öб£´æµÄÒ»¸öÔ¶³ÌÏÂÁîÖ´ÐÐÎó²îCVE-2020-8794¡£OpenSMTPD £¨Ò²³ÆÎªOpenBSD SMTP·þÎñÆ÷£©ÊÇ OpenBSD ÏîÄ¿µÄÒ»²¿·Ö£¬Ò»¸öÃâ·ÑµÄ·þÎñÆ÷¶ËSMTPÐÒéʵÏÖ£¬Í¨¹ýRFC5321½ç˵¡£CVE-2020-8794 ÊÇÒ»¸öÔ½½ç¶ÁÈ¡Îó²î£¬¿É±»Ô¶³ÌʹÓã¬ÀֳɵÄʹÓÿɵ¼Ö¹¥»÷ÕßÒÔ root Éí·ÝÖ´ÐÐ×¢Èëµ½ envelope ÎļþÖеÄí§ÒâÏÂÁî¡£¾ÝÑо¿Ö°Ô±ÌåÏÖ£¬ËûÃÇÕë¶Ô´ËÎó²î¿ª
¸ü¶à -
×ÛÊöÍâµØÊ±¼ä 2ÔÂ24ÈÕ£¬Google Õë¶Ô×ÀÃæ°æChromeä¯ÀÀÆ÷Ðû²¼¸üÐÂÒÔ½â¾ö¶à¸öÎó²î£¬ÆäÖаüÀ¨Òѱ»·¢Ã÷ÔÚҰʹÓõĸßΣÎó²îCVE-2020-6418¡£CVE-2020-6418ÊDZ£´æÓÚV8ÖеÄÀàÐÍ»ìÏýÎó²î£¬V8ÊÇGoogle ChromeµÄ¿ªÔ´JavaScriptºÍWebAssemblyÒýÇæ¡£¸ÃÎó²îÓÉ GoogleÍþвÆÊÎöС×éµÄClement Lecigne·¢Ã÷²¢Éϱ¨¡£²Î¿¼Á´½Ó£ºhttps: chromereleases googleblog com 2020 02 stable-channel-update-for-desktop_24 htmlÊÜÓ°Ïì²úÆ·°æ±¾Google
¸ü¶à -
¡¾Íþвͨ¸æ¡¿Vmware vRealize Operations for Horizon AdapterÔ¶³Ì´úÂëÖ´ÐÐÎó²î(CVE-2020-3943)
2020-02-24
×ÛÊöVmware ¿ËÈÕÐû²¼µÄͨ¸æÖÐÐû²¼ÁËÒ»¸ö±£´æÓÚ vRealize Operationsfor Horizon Adapter ÖеÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î(CVE-2020-3943)¡£CVSS V3 ÆÀ·Ö 9 0 £¬¹Ù·½¶¨¼¶ÎªÑÏÖØ¡£Îó²îÔµ¹ÊÔÓÉÊÇvRealize Operations for Horizon Adapter ʹÓÃÁËûÓÐÇå¾²ÉèÖõÄJMX RMI·þÎñ¡£µ¼ÖÂδ¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß¿ÉÒÔͨ¹ýÍøÂç»á¼ûÔÚvRealize OperationsÖÐÖ´ÐÐí§Òâ´úÂë¡£²Î¿¼Á´½Ó£ºhttps: www vmware com security advisories VMSA-202
¸ü¶à -
×ÛÊöÔÚjackson-databind ÖÐ×îз¢Ã÷µÄ·´ÐòÁл¯ gadget ҲͬÑùÓ°ÏìÁËfastjson£¬¾AG¹«Ë¾¿Æ¼¼Ñо¿Ö°Ô±ÑéÖ¤¸´ÏÖ£¬¸ÃÎó²îÓ°Ïì×îеÄfastjson 1 2 62 °æ±¾£¬Ê¹ÓøÃÎó²î¿Éµ¼ÖÂÊܺ¦»úеÉϵÄÔ¶³Ì´úÂëÖ´ÐС£¿ªÆôÁËautoType¹¦Ð§µÄÓû§»áÊÜ´ËÎó²îÓ°Ï죨autoType¹¦Ð§Ä¬ÈϹرգ©¡£fastjsonÊǰ¢Àï°Í°ÍµÄ¿ªÔ´JSONÆÊÎö¿â£¬Ëü¿ÉÒÔÆÊÎöJSONÃûÌõÄ×Ö·û´®£¬Ö§³Ö½«Java BeanÐòÁл¯ÎªJSON×Ö·û´®£¬Ò²¿ÉÒÔ´ÓJSON×Ö·û´®·´ÐòÁл¯µ½JavaBean£¬ÓÉÓÚ¾ßÓÐ
¸ü¶à








