×îÐÂAdobe Flash 0day·ì϶¹¥»÷³öÏÖ £¬GA»Æ½ð¼×APT²úÆ·ÎÞÐèÉý¼¶¼´¿É¼ì²â

°ä²¼¹¦·ò 2018-06-09
6ÔÂ7ÈÕ £¬Adobe°ä²¼°²È«²¼¸æ £¬½¨¸´ÁËFlash PlayerµÄ¶à¸ö°²È«·ì϶¡£ÆäÖÐÖµµÃ¹Ø×¢µÄÊÇCVE-2018-5002 £¬¸Ã·ì϶ºÍһ·×îеÄÕë¶Ô°¢À­²®Óï¹ú¶ÈµÄAPT¹¥»÷ÓйØ¡£ÊÂÎñÅû¶ºó £¬GA»Æ½ð¼×½ð¾¦°²È«×êÑÐÍŶÓѸ¿ì¶ÔÆä×ö³öÏìÓ¦¡£¾­¹ý²âÊÔ £¬GA»Æ½ð¼×APT²úÆ·ÎÞÐèÉý¼¶ £¬¼´¿É¶Ô¸ÃÀàÑù±¾½øÐмì²â¡£

¡ô·ì϶ӰÏì°æ±¾¡ô

Adobe Flash Player Desktop Runtime 29.0.0.171 ¼°¸üÔç°æ±¾

Adobe Flash Player for Google Chrome 29.0.0.171 ¼°¸üÔç°æ±¾

Adobe Flash Player for Microsoft Edge and Internet Explorer 11 29.0.0.171 ¼°¸üÔç°æ±¾

¡ô¼òÒª·ÖÎö¡ô

Ñù±¾ÎļþÃûΪbasic_salary.xlsx £¬¼´¡±»ù´¡¹¤×Ê¡± £¬´ÓÆäÎĵµÄÚÈÝÒ²Äܹ»¿´³öÓëÑù±¾ÃûÏàÇкÏ¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾
 
ÎĵµÆô¶¯ºó £¬ÆäÄÚǶµÄFlash¶ÔÏó»á×Ô¶¯¼ÓÔØÔ¶³ÌFlashÎļþ £¬¸ÃÔ¶³ÌFlashÎļþ½âÃܺóÄܹ»µÃµ½ÕæÕý´¥·¢CVE-2018-5002·ì϶µÄSWFÎļþ £¬Ò»µ©´¥·¢·ì϶ £¬SWF2±ã»áÏÂÔØ¶ñÒâShellcodeÔËÐС£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

 
·ì϶´¥·¢µÄÔ­ÒòÖØÒªÓÉÓÚFlashδÄÜÕýÈ·´¦ÖÃÔ̺¬ÌØÊâ×Ö½ÚÂëÐòÁеÄSWFÎļþ £¬Í¨¹ýÅú¸ÄSWFÎļþµÄ×Ö½ÚÂëÄܹ»´¥·¢Õ»Ô½½ç¶Áд·ì϶¡£

¡ô½â¾ö¹æ»®¡ô

1¡¢ Adobe¹Ù·½ÒѾ­°ä²¼°²È«²¼¸æ£¨²¼¸æID£ºAPSB18-19£© £¬¿É½Ó¼ûÒÔϹٷ½Á´½Ó £¬»ñÈ¡¶ÔӦƽ̨µÄFlash¸üз¨Ê½¡£

https://helpx.adobe.com/security/products/flash-player/apsb18-19.html

2¡¢GA»Æ½ð¼×Ììãٸ߼¶³ÖÐøÐÔÍþв¼ì²âϵͳÎÞÐèÉý¼¶¼´¿É¼ì²â¸Ã¹¥»÷¡£

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾