CVE-2020-1301 | Windows SMB v1Ô¶³Ì´úÂëÖ´Ðзì϶¹«¸æ

°ä²¼¹¦·ò 2020-06-10

0x00 ·ì϶¸ÅÊö


CVE   ID

CVE-2020-1301

ʱ    ¼ä

2020-06-10

Àà    ÐÍ

RCE

µÈ    ¼¶

ÖÐΣ

Ô¶³ÌÀûÓÃ

ÊÇ

Ó°ÏìÁìÓò


0x01 ·ì϶ÏêÇé


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾



΢ÈíÓÚÖܶþ°ä²¼ÁË6Ô°²È«¸üв¹¶¡£¬½¨¸´ÁË129¸ö·ì϶ ¡£ÆäÖÐÔ̺¬Ò»¸öWindows SMBÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2020-1301£©,Ö»¹Ü±¾Ô¸üеķì϶ÊýÁ¿ºÃ¶à£¬µ«ÔÚMicrosoft½ñÌì°ä²¼²¹¶¡Ö®Ç°£¬»¹Ã»Óз¢ÏÖ±»ÀûÓõķì϶ ¡£½¨ÒéÖÎÀíÔ±¾¡¿ì²¿Êð¸üР¡£

Server Message Block£¨SMB£©ÊÇÎªÍÆËã»úÌṩÉí·ÝÑéÖ¤ÒÔ½Ó¼û·þÎñÆ÷ÉÏ´òÓ¡»úºÍÎļþϵͳµÄ×é¼þ ¡£¸Ã·ì϶ԴÓÚMicrosoft SMB 1.0 (SMBv1) ·þÎñÆ÷ÔÚ´¦ÖÃijЩҪÇóµÄ²½ÖèÖдæÔÚÃýÎ󣬵¼Ö³ɹ¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»ÔÚÖ¸±êϵͳÉÏÖ´ÐÐËÁÒâ´úÂë ¡£

Áí±íµÄÓÀºãÖ®À¶¾ÍÊÇÀûÓÃSMB v1·ì϶£¬½¨Ò鹨¹ØSMB v1£¬ÏëÒª´¥·¢´Ë·ì϶±ØÒªÏÈͨ¹ýÉí·ÝÈÏÖ¤£¬·çÏյȼ¶ÊôÓÚÖÐΣ ¡£


0x02 Ó°ÏìÁìÓò


ÒÔÏÂÊÇCVE-2020-1301·ì϶ÊÜÓ°ÏìµÄϵͳ°æ±¾£º

Windows 10 Version 1803 for 32-bit Systems

Windows 10 Version 1803 for x64-based Systems

Windows Server, version 1803 (Server Core Installation)

Windows 10 Version 1803 for ARM64-based Systems

Windows 10 Version 1809 for 32-bit Systems

Windows 10 Version 1809 for x64-based Systems

Windows 10 Version 1809 for ARM64-based Systems

Windows Server 2019

Windows Server 2019 (Server Core installation)

Windows 10 Version 1909 for 32-bit Systems

Windows 10 Version 1909 for x64-based Systems

Windows 10 Version 1909 for ARM64-based Systems

Windows Server, version 1909 (Server Core installation)

Windows 10 Version 1709 for 32-bit Systems

Windows 10 Version 1709 for x64-based Systems

Windows 10 Version 1709 for ARM64-based Systems

Windows 10 Version 1903 for 32-bit Systems

Windows 10 Version 1903 for x64-based Systems

Windows 10 Version 1903 for ARM64-based Systems

Windows Server, version 1903 (Server Core installation)

Windows 10 for 32-bit Systems

Windows 10 for x64-based Systems

Windows 10 Version 1607 for 32-bit Systems

Windows 10 Version 1607 for x64-based Systems

Windows Server 2016

Windows Server 2016 (Server Core installation)

Windows 7 for 32-bit Systems Service Pack 1

Windows 7 for x64-based Systems Service Pack 1

Windows 8.1 for 32-bit systems

Windows 8.1 for x64-based systems

Windows RT 8.1

Windows Server 2008 for 32-bit Systems Service Pack 2

Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation)

Windows Server 2008 for Itanium-Based Systems Service Pack 2

Windows Server 2008 for x64-based Systems Service Pack 2

Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation)

Windows Server 2008 R2 for Itanium-Based Systems Service Pack 1

Windows Server 2008 R2 for x64-based Systems Service Pack 1

Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)

Windows Server 2012

Windows Server 2012 (Server Core installation)

Windows Server 2012 R2

Windows Server 2012 R2 (Server Core installation)

Windows 10 Version 2004 for x64-based Systems

Windows Server, version 2004 (Server Core installation)

Windows 10 Version 2004 for 32-bit Systems

Windows 10 Version 2004 for ARM64-based Systems


0x03 ´ëÖý¨Òé


½¨Òé½ûÓÃSMB v1

¶ÔÓÚÔËÐÐWindows VistaºÍ¸ü¸ß°æ±¾µÄÓû§£¬Çë²Î¿¼Microsoft֪ʶ¿âÎÄÕÂ2696547 ¡£

ÔËÐÐWindows 8.1»òWindows Server 2012 R2¼°¸ü¸ß°æ±¾µÄ¿Í»§¶Ë²Ù×÷ϵͳ£º

1. ´ò¿ª½ÚÔìÃæ°å£¬µ¥»÷¡°·¨Ê½¡±£¬¶øºóµ¥»÷¡°´ò¿ª»ò¹Ø¹ØWindowsÖ°ÄÜ¡± ¡£

2. ÔÚ¡°WindowsÖ°ÄÜ¡±´°¿ÚÖУ¬¶Ï¸ù¡°SMB 1.0 / CIFSÎļþ¹²ÏíÖ§³Ö¡±¸´Ñ¡¿ò£¬¶øºóµ¥»÷¡°È·¶¨¡±¹Ø¹Ø¸Ã´°¿Ú ¡£

3. ³ÁÐÂÆô¶¯ÏµÍ³ ¡£

¶ÔÓÚ·þÎñÆ÷²Ù×÷ϵͳ£º

1. ´ò¿ª·þÎñÆ÷ÖÎÀíÆ÷£¬¶øºóµ¥»÷¡°ÖÎÀí¡±²Ëµ¥£¬¶øºóÑ¡Ôñ¡°É¾³ý½ÇÉ«ºÍÖ°ÄÜ¡± ¡£

2. ÔÚ¡°Ö°ÄÜ¡±´°¿ÚÖУ¬¶Ï¸ù¡°SMB 1.0 / CIFSÎļþ¹²ÏíÖ§³Ö¡±¸´Ñ¡¿ò£¬¶øºóµ¥»÷¡°È·¶¨¡±¹Ø¹Ø¸Ã´°¿Ú ¡£

3. ³ÁÐÂÆô¶¯ÏµÍ³ ¡£

´Ë½â¾ö²½Ö轫µ¼ÖÂSMB v1ºÍ̸½«ÔÚÖ¸±êϵͳÉϱ»½ûÓà ¡£


0x04 ÓйØÐÂÎÅ


https://www.zdnet.com/article/microsoft-june-2020-patch-tuesday-fixes-129-vulnerabilities/#ftag=RSSbaffb68


0x05 ²Î¿¼Á´½Ó


https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1301

https://docs.microsoft.com/en-us/windows-server/storage/file-server/troubleshoot/detect-enable-and-disable-smbv1-v2-v3

https://portal.msrc.microsoft.com/zh-cn/security-guidance


0x06 ¹¦·òÏß


2020-06-09 ΢Èí¸üзì϶²¹¶¡

2020-06-10 VSRC°ä²¼·ì϶¹«¸æ


GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾