ÐÅÏ¢°²È«Öܱ¨-2019ÄêµÚ32ÖÜ

°ä²¼¹¦·ò 2019-08-19

> ±¾Öܰ²È«Ì¬ÊÆ×ÛÊö



2019Äê8ÔÂ12ÈÕÖÁ18ÈÕ¹²ÊÕ¼°²È«·ì϶55¸ö£¬£¬£¬£¬£¬£¬ £¬£¬ÖµµÃ¹Ø×¢µÄÊÇMicrosoft Windows Remote Desktop Services CVE-2019-1181ÄÚ´æ·ÛËé´úÂëÖ´Ðзì϶£»£» £»£»£»£» £»£»Microsoft Bluetooth Driver BR/EDRÃÜԿЭÉÌ·ì϶£»£» £»£»£»£» £»£»Adobe Photoshop CC¶à¸ö¶ÑÒç¶Âí½Å£»£» £»£»£»£» £»£»SAS Web Infrastructure Platform·´ÐòÁл¯Ô¶³Ì´úÂëÖ´Ðзì϶£»£» £»£»£»£» £»£»Apache httpd mod_http2ÄÚ´æÃýÎóÀûÓûؾø·þÎñ·ì϶¡£¡£¡£¡£¡£¡£¡£¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊÇ΢Èí¶à¸ö¹©¸øÉ̵Ä40¶à¸öÇý¶¯·¨Ê½´æÔÚÌáȨ·ì϶£»£» £»£»£»£» £»£»Sweet ChatÒâ±íй¶½ü1000ÍòÓû§µÄÕÕÆ¬¼°Ì¸ÌìÄÚÈÝ£»£» £»£»£»£» £»£»Î¢Èí½¨¸´RDP·þÎñÖеÄÐÂÈ䳿¼¶·ì϶£»£» £»£»£»£» £»£»HTTP/2ÆØ³ö8¸öзì϶£¬£¬£¬£¬£¬£¬ £¬£¬¿ÉÓÃÓÚÌáÒéDoS¹¥»÷£»£» £»£»£»£» £»£»¿¨°Í˹»ùɱÈíÖеķì϶¿ÉÔÊÐí¿çÕ¾µã¸ú×ÙÓû§¡£¡£¡£¡£¡£¡£¡£¡£


ƾ¾ÝÒÔÉÏ×ÛÊö£¬£¬£¬£¬£¬£¬ £¬£¬±¾Öܰ²È«ÍþвΪÖÓ×£¡£¡£¡£¡£¡£¡£¡£



> ³ÁÒª°²È«·ì϶Áбí



1. Microsoft Windows Remote Desktop Services CVE-2019-1181ÄÚ´æ·ÛËé´úÂëÖ´Ðзì϶


Microsoft Windows Remote Desktop Services´æÔÚÄÚ´æ·ÛËé·ì϶£¬£¬£¬£¬£¬£¬ £¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬ £¬£¬Äܹ»ÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2019-1181

2. Microsoft Bluetooth Driver BR/EDRÃÜԿЭÉÌ·ì϶


Microsoft Bluetooth Driver BR/EDRÃÜԿЭÉÌ´æÔÚ°²È«·ì϶£¬£¬£¬£¬£¬£¬ £¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬ £¬£¬½«×î´ó16×Ö½Ú³¤¶ÈµÄÃÜԿЭÉ̽µµ½1×Ö½ÚìØ£¬£¬£¬£¬£¬£¬ £¬£¬¿É»ñÈ¡Ãô¸ÐÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-9506

3. Adobe Photoshop CC¶à¸ö¶ÑÒç¶Âí½Å


Adobe Photoshop CC´¦ÖÃÎļþ´æÔÚ¶ÑÒç¶Âí½Å£¬£¬£¬£¬£¬£¬ £¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÎļþÒªÇ󣬣¬£¬£¬£¬£¬ £¬£¬ÓÕʹÓû§½âÎö£¬£¬£¬£¬£¬£¬ £¬£¬Äܹ»ÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£
https://helpx.adobe.com/security/products/photoshop/apsb19-44.html

4. SAS Web Infrastructure Platform·´ÐòÁл¯Ô¶³Ì´úÂëÖ´Ðзì϶


SAS Web Infrastructure Platform´æÔÚ·´ÐòÁл¯·ì϶£¬£¬£¬£¬£¬£¬ £¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬ £¬£¬Äܹ»ÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£
http://support.sas.com/kb/63/391.html

5. Apache httpd mod_http2ÄÚ´æÃýÎóÀûÓûؾø·þÎñ·ì϶


Apache httpd mod_http2 HTTP/2»á»°´¦ÖôæÔÚÄÚ´æÃýÎóÒýÓ÷ì϶£¬£¬£¬£¬£¬£¬ £¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬ £¬£¬¿É½øÐлؾø·þÎñ¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£
http://httpd.apache.org/security/vulnerabilities_24.html


> ³ÁÒª°²È«ÊÂÎñ×ÛÊö



1¡¢Î¢Èí¶à¸ö¹©¸øÉ̵Ä40¶à¸öÇý¶¯·¨Ê½´æÔÚÌáȨ·ì϶


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


Eclypsium×êÑÐÈËÔ±Åû¶³¬¹ý20¼Ò΢Èí¹©¸øÉÌÌṩµÄ40¶à¸öWindowsÇý¶¯·¨Ê½´æÔÚÌáȨ·ì϶£¬£¬£¬£¬£¬£¬ £¬£¬¿ÉÄܻᱻºÚ¿ÍÀûÓᣡ£¡£¡£¡£¡£¡£¡£ÊÜÓ°ÏìµÄ³§ÉÌÔ̺¬³ÛÃûBIOS³§É̼°¸÷´óÓ²¼þ¹©¸øÉÌ£¬£¬£¬£¬£¬£¬ £¬£¬ÀýÈ绪˶¡¢¶«Ö¥¡¢Intel¡¢¼¼¼Î¡¢Nvidia¡¢»ªÎªµÈ¡£¡£¡£¡£¡£¡£¡£¡£ÓÉÓÚÕâЩÇý¶¯¶¼¾­¹ýÁË΢ÈíÈÏÖ¤£¬£¬£¬£¬£¬£¬ £¬£¬Òò¶ø¶ñÒⷨʽÄܹ»ÀûÓÃËüÃÇ´ÓÓû§¿Õ¼ä£¨Ring3£©ÌáȨÖÁÄÚºËȨÏÞ£¨Ring0£©¡£¡£¡£¡£¡£¡£¡£¡£Eclypsium°µÊ¾ÕâЩÇý¶¯Ó°ÏìÁËËùÓа汾µÄWindows£¬£¬£¬£¬£¬£¬ £¬£¬ÕâÒâζ×ÅÖÁÉÙÊý°ÙÍòÓû§Ãæ¶Ô·çÏÕ¡£¡£¡£¡£¡£¡£¡£¡£IntelºÍ»ªÎªµÈÒѾ­°ä²¼ÁËÓйؽ¨¸´²¹¶¡¡£¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/over-40-windows-hardware-drivers-vulnerable-to-privilege-escalation/

2¡¢Sweet ChatÒâ±íй¶½ü1000ÍòÓû§µÄÕÕÆ¬¼°Ì¸ÌìÄÚÈÝ


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


°²È«×êÑÐÔ±Darryl Burke·¢ÏÖ̸ÌìÀûÓÃSweet ChatµÄÒ»¸ö²»°²È«µÄ·þÎñÆ÷¶³öÁ˳¬¹ý1000ÍòÓû§µÄÃô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬£¬ £¬£¬ÕâЩÐÅÏ¢Ô̺¬ÊµÊ±Ì¸ÌìÄÚÈÝÒÔ¼°¸öÈËÕÕÆ¬µÈ¡£¡£¡£¡£¡£¡£¡£¡£Burke°µÊ¾ÈκÎÕ¼ÓÐMQTT¹¥»÷¹¤¾ßµÄÈ˶¼Äܹ»ÔÚÏ߲鿴ÕâЩÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±ÓÚ7ÔÂ21ÈÕ֪ͨÁ˸ù«Ë¾£¬£¬£¬£¬£¬£¬ £¬£¬µ«¸Ã¹«Ë¾Ö±ÖÁ8ÔÂ12ÈղŶԸ÷þÎñÆ÷½øÐÐÁËһʱ½¨¸´¡£¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://blog.burke-consulting.net/sweet-chat/

3¡¢Î¢Èí½¨¸´RDP·þÎñÖеÄÐÂÈ䳿¼¶·ì϶


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


΢ÈíÔÚ8Ô·ݵÄWindows°²È«¸üÐÂÖн¨¸´ÁË94¸ö·ì϶£¬£¬£¬£¬£¬£¬ £¬£¬ÆäÖÐÔ̺¬4¸öеÄRDPÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2019-1181¡¢CVE-2019-1182¡¢CVE-2019-1222¡¢CVE-2019-1226£©¡£¡£¡£¡£¡£¡£¡£¡£ÆäÖÐCVE-2019-1181ºÍCVE-2019-1182Óë5ÔÂ·ÝÆØ³öµÄBlueKeep·ì϶£¨CVE-2019-0708£©ÀàËÆ£¬£¬£¬£¬£¬£¬ £¬£¬¿ÉʵÏÖÈ䳿»¯¹¥»÷£¬£¬£¬£¬£¬£¬ £¬£¬ÊÜÓ°ÏìµÄϵͳ°æ±¾Ô̺¬win 7 SP1¡¢win 8.1¡¢win 10ÒÔ¼°windows server 2008 R2 SP1¡¢2012¡¢2012 R2¡¢2016¼°2019µÈ¡£¡£¡£¡£¡£¡£¡£¡£XP¡¢windows server 2003¼°2008²»ÊÜÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°ÉÐδ·¢ÏÖÕâЩ·ì϶ÔÚÒ°±í±»ÀûÓ㬣¬£¬£¬£¬£¬ £¬£¬µ«Î¢ÈíÇ¿ÁÒ½¨ÒéÓû§¾¡¿ì¸üн¨¸´²¹¶¡¡£¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/microsoft-fixes-critical-windows-10-wormable-remote-desktop-flaws/

4¡¢HTTP/2ÆØ³ö8¸öзì϶£¬£¬£¬£¬£¬£¬ £¬£¬¿ÉÓÃÓÚÌáÒéDoS¹¥»÷


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


×êÑÐÈËÔ±Åû¶HTTP/2ºÍ̸ʵÏÖÖеÄ8¸öзì϶£¬£¬£¬£¬£¬£¬ £¬£¬¹¥»÷Õß¿ÉÀûÓÃÕâЩ·ì϶Ïò佨²¹µÄ·þÎñÆ÷ÌáÒ黨¾ø·þÎñ¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£ÕâЩ·ì϶£¨CVE-2019-9511~CVE-2019-9518£©ÊÇÓÉNetflix×êÑÐÔ±Jonathan LooneyÒÔ¼°Google×êÑÐÔ±Piotr Sikora·¢Ïֵ쬣¬£¬£¬£¬£¬ £¬£¬¿ÉÓÃÓÚ´¥·¢·þÎñÆ÷µÄ×ÊÔ´ºÄ¾¡£¬£¬£¬£¬£¬£¬ £¬£¬µ«²»ÄÜÓÃÓÚÈëÇÖ·þÎñÆ÷¡£¡£¡£¡£¡£¡£¡£¡£Æ¾¾ÝCERT°ä²¼µÄ²¼¸æ£¬£¬£¬£¬£¬£¬ £¬£¬ÊÜÓ°ÏìµÄ³§ÉÌÔ̺¬NGINX¡¢Apache¡¢H2O¡¢Nghttp2¡¢Microsoft(IIS)¡¢Cloudflare¡¢Akamai¡¢Apple(SwiftNIO)¡¢Amazon¡¢Facebook(Proxygen)¡¢Node.jsÒÔ¼°Envoy proxy£¬£¬£¬£¬£¬£¬ £¬£¬´óÎÞÊý³§É̶¼ÒѾ­°ä²¼Á˽¨¸´²¹¶¡¡£¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2019/08/http2-dos-vulnerability.html

5¡¢¿¨°Í˹»ùɱÈíÖеķì϶¿ÉÔÊÐí¿çÕ¾µã¸ú×ÙÓû§

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


°²È«×êÑÐÔ±Ronald Eikenberg·¢ÏÖ¿¨°Í˹»ùµÄɱ¶¾Èí¼þ´æÔÚÒ»¸ö·ì϶£¨CVE-2019-8286£©£¬£¬£¬£¬£¬£¬ £¬£¬¿ÉÔÊÐí¶ñÒâÕ¾µã»òµÚÈý·½·þÎñ¿çÕ¾µã¸ú×ÙÓû§¡£¡£¡£¡£¡£¡£¡£¡£¸Ã·ì϶´æÔÚÓÚÒ»¸öÃûΪKaspersky URL AdvisorµÄ꿅წÃèÄ£¿£¿ £¿£¿£¿£¿ £¿£¿éÖУ¬£¬£¬£¬£¬£¬ £¬£¬¸ÃÄ£¿£¿ £¿£¿£¿£¿ £¿£¿éÔÚÓû§ä¯ÀÀµÄÍøÒ³ÖÐ×¢ÈëUUIDÀ´ÏóÕ÷Óû§£¬£¬£¬£¬£¬£¬ £¬£¬µ«¶ñÒâÍøÕ¾¿É»ñÈ¡¸ÃUUID²¢¸ú×ÙÓû§¡£¡£¡£¡£¡£¡£¡£¡£ÔÚ½Óµ½»ã±¨ºó£¬£¬£¬£¬£¬£¬ £¬£¬¿¨°Í˹»ù½«¸ÃUUID¸ü¸ÄΪһ¸ö³£Á¿¡£¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2019/08/kaspersky-antivirus-online-tracking.html