Ç徲ͨ¸æ
-
Ò» Îó²î¸ÅÊö¿ËÈÕ£¬Apache¹Ù·½Ðû²¼Ç徲ͨ¸æ£¬ÐÞ¸´ÁËÒ»¸öApacheKylinµÄÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î£¨CVE-2020-1956£©¡£ÔÚKylinÖб£´æÒ»Ð©restfulAPI£¬¿ÉÒÔ½«²Ù×÷ϵͳÏÂÁîÓëÓû§ÊäÈëµÄ×Ö·û¹´Í¨½ÓÆðÀ´£¬ÓÉÓÚδ¶ÔÓû§ÊäÈëÄÚÈÝ×öºÏÀíУÑ飬µ¼Ö¹¥»÷Õß¿ÉÒÔÔÚδÂÄÀúÖ¤µÄÇéÐÎÏÂÖ´ÐÐí§ÒâϵͳÏÂÁî¡£ÏÖÔÚÎó²îPoCÒѹûÕæ£¬ÇëÏà¹ØÓû§ÊµÊ±½ÓÄɲ½·¥¾ÙÐзÀ»¤¡£ApacheKylinÊÇApacheÈí¼þ»ù½ð»áµÄÒ»¿î¿ªÔ´µÄ¡¢ÂþÑÜʽµÄÆÊÎöÐÍÊý¾Ý¿ÍÕ»£¬Ö÷ÒªÌṩHadoop SparkÖ®
¸ü¶à -
Ò» Îó²î¸ÅÊö5ÔÂ28ÈÕ£¬AG¹«Ë¾¿Æ¼¼¼à²âµ½ÓÐÐÂÎųÆFastjsonÔÚ1 2 68¼°ÒÔϰ汾Öб£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¸ÃÎó²î¿ÉÈÆ¹ýautoType¿ª¹ØµÄÏÞÖÆ£¬´Ó¶ø·´ÐòÁл¯ÓÐÇ徲Σº¦µÄÀ࣬¹¥»÷ÕßʹÓøÃÎó²î¿ÉʵÏÖÔÚÄ¿µÄ»úеÉϵÄÔ¶³Ì´úÂëÖ´ÐС£FastjsonÊǰ¢Àï°Í°ÍµÄ¿ªÔ´JSONÆÊÎö¿â£¬Ëü¿ÉÒÔÆÊÎöJSONÃûÌõÄ×Ö·û´®£¬Ö§³Ö½«JavaBeanÐòÁл¯ÎªJSON×Ö·û´®£¬Ò²¿ÉÒÔ´ÓJSON×Ö·û´®·´ÐòÁл¯µ½JavaBean¡£ÓÉÓÚ¾ßÓÐÖ´ÐÐЧÂʸߵÄÌØµã£¬Ó¦ÓùæÄ£ÆÕ±é¡£ÇëÏà¹ØÓû§¾¡¿ì²É
¸ü¶à -
Ò»¡¢Íþвͨ¸ælApache Tomcat Session·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐÐÎó²î¡¾Ðû²¼Ê±¼ä¡¿2020-05-2111:00:00 GMT¡¾¸ÅÊö¡¿±±¾©Ê±¼ä5ÔÂ20ÈÕ£¬Apache¹Ù·½Ðû²¼Ç徲ͨ¸æÐÞ¸´ÁËApache Tomcat Session·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-9484£©£¬ÈôÊÇʹÓÃÁËTomcatµÄsession³¤ÆÚ»¯¹¦Ð§£¬²»Çå¾²µÄÉèÖý«µ¼Ö¹¥»÷Õß¿ÉÒÔ·¢ËͶñÒâÇëÇóÖ´ÐÐí§Òâ´úÂë¡£¡¾Á´½Ó¡¿http: blog nsfocus net apache-tomcat-cve-2020-9484-0521 ¶þ¡¢ÈÈÃÅ×ÊѶ1 SecureCRTÄÚ´æ
¸ü¶à -
Ò» Îó²î¸ÅÊö±±¾©Ê±¼ä5ÔÂ20ÈÕ£¬Apache¹Ù·½Ðû²¼Ç徲ͨ¸æÐÞ¸´ÁËApacheTomcatSession·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-9484£©£¬ÈôÊÇʹÓÃÁËTomcatµÄsession³¤ÆÚ»¯¹¦Ð§£¬²»Çå¾²µÄÉèÖý«µ¼Ö¹¥»÷Õß¿ÉÒÔ·¢ËͶñÒâÇëÇóÖ´ÐÐí§Òâ´úÂ룬½¨ÒéÏà¹ØÓû§½ÓÄɲ½·¥¾ÙÐзÀ»¤¡£ÀÖ³ÉʹÓôËÎó²îÐèҪͬʱ֪×ãÒÔÏÂ4¸öÌõ¼þ£º1£©¹¥»÷ÕßÄܹ»¿ØÖÆ·þÎñÆ÷ÉÏÎļþµÄÄÚÈݺÍÎļþÃû³Æ£»2£©·þÎñÆ÷PersistenceManagerÉèÖÃÖÐʹÓÃÁËFileStore£»3£©PersistenceManage
¸ü¶à -
AG¹«Ë¾ÍþвÇ鱨Öܱ¨£¨20200511~20200517£©
2020-05-18
Ò»¡¢Íþвͨ¸æÎ¢Èí2020Äê5ÔÂÇå¾²¸üжà¸ö²úÆ·¸ßΣÎó²î¡¾Ðû²¼Ê±¼ä¡¿2020-05-13 10:00:00 GMT¡¾¸ÅÊö¡¿±±¾©Ê±¼ä5ÔÂ13ÈÕ£¬Î¢ÈíÐû²¼5ÔÂÇå¾²¸üв¹¶¡£¬ÐÞ¸´ÁË111¸öÇå¾²ÎÊÌâ£¬Éæ¼°Microsoft Windows¡¢InternetExplorer¡¢MicrosoftEdge¡¢ NET Framework¡¢MicrosoftOffice¡¢Visual StudioµÈÆÕ±éʹÓõIJúÆ·£¬ÆäÖаüÀ¨ÌØÈ¨ÌáÉýºÍÔ¶³Ì´úÂëÖ´ÐеȸßΣÎó²îÀàÐÍ¡£ ±¾ÔÂ΢ÈíÔ¶ȸüÐÂÐÞ¸´µÄÎó²îÖУ¬ÑÏÖØË®Æ½ÎªÒªº¦£¨Critical£©µÄÎó²î¹²ÓÐ16
¸ü¶à -
Ò» Îó²î¸ÅÊö±±¾©Ê±¼ä5ÔÂ13ÈÕ£¬Î¢ÈíÐû²¼5ÔÂÇå¾²¸üв¹¶¡£¬ÐÞ¸´ÁË111¸öÇå¾²ÎÊÌâ£¬Éæ¼°Microsoft Windows¡¢InternetExplorer¡¢MicrosoftEdge¡¢ NET Framework¡¢MicrosoftOffice¡¢Visual StudioµÈÆÕ±éʹÓõIJúÆ·£¬ÆäÖаüÀ¨ÌØÈ¨ÌáÉýºÍÔ¶³Ì´úÂëÖ´ÐеȸßΣÎó²îÀàÐÍ¡£±¾ÔÂ΢ÈíÔ¶ȸüÐÂÐÞ¸´µÄÎó²îÖУ¬ÑÏÖØË®Æ½ÎªÒªº¦£¨Critical£©µÄÎó²î¹²ÓÐ16¸ö£¬Ö÷Òª£¨Important£©Îó²îÓÐ95¸ö¡£ÆäÖÐWin32kÌØÈ¨ÌáÉý£¨CVE-2020-1054£©Îó²îPoCµÄÒѹûÕæ
¸ü¶à








