8827Ì«Ñô¼¯ÍÅADLab£º²©Í¨Wi-FiÇý¶¯¶à¸ö°²È«·ì϶ÖÒ¸æ
°ä²¼¹¦·ò 2019-04-21²©Í¨ÊÇÈ«ÇòÎÞÏßÉ豸µÄÖØÒª¹©¸øÉÌÖ®Ò»£¬£¬£¬£¬£¬£¬²©Í¨µÄ43ϵÁеÄwifiоƬ±»¿í·ºÀûÓÃÓÚÖÇÄÜÊÖ»ú¡¢±Ê¼Ç±¾µçÄÔ¡¢ÖÇÄܵçÊÓºÍÎïÁªÍøÉ豸¡£¡£¡£¡£¡£¡£¡£¡£½üÈÕ£¬£¬£¬£¬£¬£¬US-CERT°ä²¼Á˶à¸ö²©Í¨wi-FiоƬÇý¶¯µÄ°²È«Ô¤¾¯£¨CVE-2019-9500¡¢CVE-2019-9501¡¢CVE-2019-9502¡¢CVE-2019-9503£©¡£¡£¡£¡£¡£¡£¡£¡£
²©Í¨WIFIоƬ43xxxÇý¶¯·¨Ê½¼¯·ÖΪ¿ªÔ´ºÍרÓÐÁ½Àà¡£¡£¡£¡£¡£¡£¡£¡£
|
¿ªÔ´ |
b43£¨Linux£© brcmsmac£¨SoftMAC / Linux£© brcmfmac£¨FullMAC / Linux£© bcmdhd£¨FullMAC / Android£© |
|
רÓÐ |
broadcom-sta(wl) ( SoftMAC && FullMAC / Linux) |
ͼ1 ²©Í¨Ð¾Æ¬Çý¶¯¼°ÀûÓÃϵͳ
·ì϶·ÖÎö
brcmfmacÇý¶¯Á½¸ö·ì϶£¨CVE-2019-9503¡¢CVE-2019-9500£©
²©Í¨Wi-FiоƬÓëÖ÷»úµÄÊäÈëÊä³ö½Ó¿ÚѡȡUSB£¬£¬£¬£¬£¬£¬SDIOºÍPCIeÈýÖÖBus×ÜÏß·½Ê½¡£¡£¡£¡£¡£¡£¡£¡£ÔÚÈí¼þ²ãÃæ£¬£¬£¬£¬£¬£¬Çý¶¯ºÍÖ÷»úµÄÊý¾ÝͨѶÓÐÁ½ÖÖ·½Ê½£¬£¬£¬£¬£¬£¬Ò»ÖÖÊÇIOCTRL£¬£¬£¬£¬£¬£¬Ò»ÖÖÊÇEventÊÂÎñ֪ͨ¡£¡£¡£¡£¡£¡£¡£¡£Wi-FiоƬʹÓù̼þÊÂÎñÀ´Í¨ÖªÖ÷»ú·ÖÆçµÄÊÂÎñ£ºÉ¨ÃèÁ˾֡¢¹ØÁª/½â³ý¹ØÁª¡¢Éí·ÝÑéÖ¤µÈ¡£¡£¡£¡£¡£¡£¡£¡£
CVE-2019-9503
ͼ2 is_wlc_event_frameº¯ÊýÎÊÌâʾÒâ
CVE-2019-9500
ͼ3 brcmf_wowl_nd_resultsº¯ÊýÎÊÌâʾÒâ
²©Í¨wlÇý¶¯ÖÐÁ½¸ö·ì϶£¨CVE-2019-9501¡¢ CVE-2019-9502£©
ͼ4 wlÇý¶¯·ì϶ʾÒâͼ
CVE-2019-9501
APÏòStation·¢Ë͵ÄEAPOL M3ÐÂÎÅÖУ¬£¬£¬£¬£¬£¬ÈôÊÇvendor information×ֶγ¤¶È´óÓÚ32×Ö½Úʱ£¬£¬£¬£¬£¬£¬½«»áÔÚwlc_wpa_sup_eapolº¯Êý´¥·¢¶ÑÒç¶Âí½Å¡£¡£¡£¡£¡£¡£¡£¡£
CVE-2019-9502
ÊÜÓ°Ïì²úÆ·
²©Í¨¹«Ë¾
²©Í¨¹«Ë¾Ã»ÓÐÌṩÊÜÓ°Ïì²úÆ·ÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£
Synology¹«Ë¾
Synology¹«Ë¾µÄRT1900ac²úÆ·ÊÜÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¡£¸Ã·ì϶ÔÚRT1900ac²úÆ·ÖÐĬÈϲ»±»´¥·¢£¬£¬£¬£¬£¬£¬µ±²úÆ·Äܹ»ÓÉÖÎÀíÔ±ÅäÖÃÆôÓÃijÏîÅäÖÃʱ£¬£¬£¬£¬£¬£¬²Å»áÊÜÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¡£Òò¶ø£¬£¬£¬£¬£¬£¬Synology¹«Ë¾ÒÔΪRT1900acÖи÷ì϶Óп϶¨µÄ¾ÖÏÞÐÔ£¬£¬£¬£¬£¬£¬Ö»ÓÐÔÚÌØ¶¨µÄÇé¿öÏÂÄÜÁ¦´¥·¢¡£¡£¡£¡£¡£¡£¡£¡£
Apple¹«Ë¾
½â¾ö¹æ»®
Apple¹«Ë¾µÄbrcmfmacÇý¶¯µÄ·ì϶Òѽ¨¸´£¬£¬£¬£¬£¬£¬Óû§Äܹ»¸üÐÂÓйصIJ¹¶¡£¡£¡£¡£¡£¡£¡£¡£¬£¬£¬£¬£¬£¬ÊµÏÖ½¨¸´¹¤×÷¡£¡£¡£¡£¡£¡£¡£¡£
²©Í¨¹«Ë¾½¨¸´ÁËLinuxÄÚºËbrcmfmacÇý¶¯ÖеÄCVE-2019-9503¼°CVE-2019-9500Á½¸ö·ì϶£¬£¬£¬£¬£¬£¬Óû§Äܹ»¸üÐÂÓйصIJ¹¶¡£¡£¡£¡£¡£¡£¡£¡£¬£¬£¬£¬£¬£¬ÊµÏÖ½¨¸´¹¤×÷¡£¡£¡£¡£¡£¡£¡£¡£
ʹÓÿÉÐŵÄWI-FIÍøÂ磬£¬£¬£¬£¬£¬³ö¸ñÊDz»ÒªÔÚ¹«¹²³¡ËùÏνӲ»°²È«µÄwifiÈȵ㡣¡£¡£¡£¡£¡£¡£¡£
²Î¿¼Á´½Ó
2.https://kb.cert.org/vuls/id/166939/
3.https://support.apple.com/en-us/HT209600
4.https://www.synology.cn/zh-cn/security/advisory/Synology_SA_19_18
5.https://git.kernel.org/linus/a4176ec356c73a46c07c181c6d04039fafa34a9f
6.https://git.kernel.org/linus/1b5e2423164b3670e8bc9174e4762d297990deff


¾©¹«Íø°²±¸11010802024551ºÅ