FasterXML Jackson-databindÔ¶³Ì´úÂëÖ´Ðзì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-07-23

·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-12384£¬Î£ÏÕ¼¶±ð£ºÖÐΣ£¬CVSS·ÖÖµ£º5.9 


Ó°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾


FasterXML jackson-databind 2.0.0 ¨C 2.9.9


·ì϶¸ÅÊö


FasterXML JacksonÊÇÃÀ¹úFasterXML¹«Ë¾µÄÒ»¿îºÏÓÃÓÚJavaµÄÊý¾Ý´¦Öù¤¾ß¡£Jackson-databindÊÇÆäÖеÄÒ»¸ö¾ßº±¼û¾Ý°ó¶¨Ö°ÄܵÄ×é¼þ¡£


Jackson-databind¿ÉÄÜÔÊÐí¹¥»÷Õßͨ¹ýÀûÓÃÎÞ·¨×èÖ¹logback-coreÀà½øÐжà̬·´ÐòÁл¯¶ø²úÉú¸÷ÀàÓ°Ï졣ƾ¾ÝÀàõè¾¶ÄÚÈÝ£¬Äܹ»Ôì³ÉÔ¶³Ì´úÂëÖ´ÐС£


·ì϶ÑéÖ¤


POC£ºhttps://blog.doyensec.com/2019/07/22/jackson-gadgets.html¡£


½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬²¹¶¡»ñÈ¡Á´½Ó£ºhttps://github.com/FasterXML/jackson-databind/commit/c9ef4a10d6f6633cf470d6a469514b68fa2be234¡£ 


»º½â´ëÊ©£º


´Ë·ì϶ÒÀÀµÓÚÀûÓ÷¨Ê½µÄClassPathÖдæÔÚµÄlogback-core(ch.qos.logback.core)¡£ÖÕ³¡Ê¹ÓôæÔÚlogback-coreµÄjackson-databindÀûÓ÷¨Ê½¿ÉÔ¤·À´Ë·ì϶µÄÓ°Ïì¡£


²Î¿¼Á´½Ó


http://www.cnnvd.org.cn/web/xxk/ldxqById.tag?CNNVD=CNNVD-201906-867