Ç徲ͨ¸æ
-
AG¹«Ë¾¿Æ¼¼ÍþвÇ鱨Ô±¨£¨2020Äê9Ô£©
2020-09-29
9Ô£¬AG¹«Ë¾¿Æ¼¼ÍþвÇ鱨ÖÐÐÄ£¨NTI£©Ðû²¼Á˶à¸öÎó²îºÍÍþвÊÂÎñͨ¸æ£¬ÆäÖУ¬Linux ÄÚºËȨÏÞÌáÉýÎó²î£¨CVE-2020-14386£©ÒÔ¼°WebSphere XML ÍⲿʵÌå×¢Èë(XXE)Îó²î£¨CVE-2020-4643£©Ó°Ïì½Ï´ó¡£Ç°ÕßÓÉÓÚnet packet af_packet c ÔÚ´¦Öóͷ£AF_PACKET ʱ±£´æÕûÊýÒç³ö£¬µ¼Ö¿ɾÙÐÐÔ½½çд´Ó¶øÊµÏÖȨÏÞÌáÉý£¬¹¥»÷Õß¿ÉÒÔʹÓôËÎó²î´Ó·ÇÌØÈ¨Àú³Ì»ñµÃϵͳroot ȨÏÞ£»ºóÕßÓÉÓÚWAS δ׼ȷ´¦Öóͷ£XML Êý¾Ý£¬¹¥»÷Õß¿ÉÒÔʹÓà ´ËÎó²îÔ¶³Ì»ñÈ¡·þÎñ
¸ü¶à -
AG¹«Ë¾¿Æ¼¼ÍþвÇ鱨Öܱ¨£¨2020 09 21-2020 09 27£©
¸ü¶à -
¿ËÈÕ£¬IBM¹Ù·½Ðû²¼Í¨¸æÐÞ¸´ÁËWebSphere Application Server£¨WAS£©ÖеÄÒ»¸öXMLÍⲿʵÌå×¢È루XXE£©Îó²î£¨CVE-2020-4643£©
¸ü¶à -
Ò» Îó²î¸ÅÊö¿ËÈÕ£¬AG¹«Ë¾¿Æ¼¼¼à²â·¢Ã÷Linuxkernel±£´æÒ»¸öȨÏÞÌáÉýÎó²î£¨CVE-2020-14386£©£¬ÓÉÓÚnet packet af_packet cÔÚ´¦Öóͷ£AF_PACKETʱ±£´æÕûÊýÒç³ö£¬µ¼Ö¿ɾÙÐÐÔ½½çд´Ó¶øÊµÏÖȨÏÞÌáÉý£¬¹¥»÷Õß¿ÉÒÔʹÓôËÎó²î´Ó·ÇÌØÈ¨Àú³Ì»ñµÃϵͳrootȨÏÞ¡£Ê¹ÓÃÁËLinuxKernelµÄopenshift docker kubernetesµÈÐéÄ⻯²úÆ·¿ÉÄÜ»áÊܵ½¸ÃÎó²îÓ°Ï죬µ¼ÖÂÐéÄ⻯ÌÓÒÝ£¬ÇëÏà¹ØÓû§½ÓÄɲ½·¥¾ÙÐзÀ»¤¡£²Î¿¼Á´½Ó£ºhttps: www openwall com lists oss-s
¸ü¶à -
AG¹«Ë¾¿Æ¼¼ÍþвÇ鱨Öܱ¨£¨2020 09 14-2020 09 20£©
¸ü¶à -
¿ËÈÕ¼à²âµ½£¬Yii Framework 2 ÔÚÆä 9ÔÂ14 ÈÕÐû²¼µÄ¸üÐÂÈÕÖ¾ÖÐÐû²¼ÁËÒ»¸ö·´ÐòÁл¯Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î(CVE-2020-15148)¡£
¸ü¶à








