ÐÅÏ¢°²È«Öܱ¨-2018ÄêµÚ27ÖÜ

°ä²¼¹¦·ò 2018-07-09

Ò»¡¢±¾Öܰ²È«Ì¬ÊÆ×ÛÊö


        2018Äê07ÔÂ02ÈÕÖÁ08ÈÕ¹²ÊÕ¼°²È«·ì϶54¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇSchneider Electric U.motion Builder CVE-2018-7777Ô¶³Ì´úÂëÖ´Ðзì϶£»Medtronic MyCareLink Patient MonitorÓ²±àÂëÃÜÂë·ì϶£»GraphicsMagick coders/png.cÎļþµÄ¡®ReadMNGImage¡¯º¯Êý»º³åÇøÒç¶Âí½Å£»Mozilla Firefox/Firefox ESR¶à¸öÄÚ´æ·ÛËé·ì϶£»Linux kernel fs/xfs/libxfs/xfs_inode_buf.c»Ø¾ø·þÎñ·ì϶¡£

 

        ±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊÇÃÀ¹ú¹ú¶È°²È«¾Ö£¨NSA£©ÉÏÖܰ䷢½«É¾³ýÊýÒÔÒڼƵĵ绰ºÍ¶ÌÐżÍ¼£»FacebookÈÏ¿ÉÏò61¼Ò¹«Ë¾Ìṩ¶ÔÆäÓû§Êý¾ÝµÄÌØÊâ½Ó¼ûȨÏÞ£»×êÑлú¹¹°ä²¼2018ÄêÏļ¾»¥ÁªÍø°²È«»ã±¨£¬³Áµã¹Ø×¢DDoS¹¥»÷£»Gentoo LinuxÍŶӳƹ¥»÷Õßͨ¹ýÃÜÂë²Â²â»ñµÃÆäGitHubÕË»§µÄÃÜÂ룻×êÑÐÈËÔ±·¢ÏÖÀûÓÃPROPagate´úÂë×¢Èë¼¼ÊõµÄ¶ñÒâ¹¥»÷»î¶¯¡£

 

        ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾Öܰ²È«ÍþвΪÖС£

 

¶þ¡¢³ÁÒª°²È«·ì϶Áбí


1¡¢Schneider Electric U.motion Builder CVE-2018-7777Ô¶³Ì´úÂëÖ´Ðзì϶

        Schneider Electric U.motion Builder software´æÔÚ°²È«·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬶ñÒâ¿Í»§¶Ë¿ÉÉÏ´«²¢Ê¹smbd·þÎñÆ÷Ö´Ðй²Ïí¿â¡£

 

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£º

https://www.schneider-electric.com/en/download/document/SEVD-2018-095-01/


2¡¢Medtronic MyCareLink Patient MonitorÓ²±àÂëÃÜÂë·ì϶

 

        Medtronic MyCareLink Patient Monitor´æÔÚÓ²±àÂëÃÜÂë·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇó£¬Ö´ÐÐËÁÒâ´úÂë¡£

 

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://ics-cert.us-cert.gov/advisories/ICSMA-18-179-01
3¡¢GraphicsMagick coders/png.cÎļþµÄ¡®ReadMNGImage¡¯º¯Êý»º³åÇøÒç¶Âí½Å

 

        GraphicsMagick coders/png.cÎļþµÄ¡®ReadMNGImage¡¯º¯Êý´æÔÚ¶Ñ»º³åÇøÒç¶Âí½Å£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶¹¹½¨¶ñÒâÎļþ£¬ÓÕʹÓû§½âÎö£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£¡£

 

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://sourceforge.net/p/graphicsmagick/bugs/535/


4¡¢Mozilla Firefox/Firefox ESR¶à¸öÄÚ´æ·ÛËé·ì϶

 

        Mozilla Firefox/Firefox ESR´æÔÚÄÚ´æ·ÛËé·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶¹¹½¨¶ñÒâWEBÒ³£¬ÓÕʹÓû§½âÎö£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»òÕßÖ´ÐÐËÁÒâ´úÂë¡£

 

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://www.mozilla.org/en-US/security/advisories/mfsa2018-15/


5¡¢Linux kernel fs/xfs/libxfs/xfs_inode_buf.c»Ø¾ø·þÎñ·ì϶

 

        Linux kernel fs/xfs/libxfs/xfs_inode_buf.c´æÔÚ°²È«·ì϶£¬ÔÊÐí±¾µØ¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇó£¬Ê¹ÏµÍ³±ÀÀ£¡£

 

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://bugzilla.kernel.org/show_bug.cgi?id=199915

 

Èý¡¢³ÁÒª°²È«ÊÂÎñ×ÛÊö


1¡¢ÃÀ¹ú¹ú¶È°²È«¾Ö£¨NSA£©ÉÏÖܰ䷢½«É¾³ýÊýÒÔÒڼƵĵ绰ºÍ¶ÌÐżÍ¼

 

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

 

ÃÀ¹ú¹ú¶È°²È«¾Ö£¨NSA£©ÉÏÖܰ䷢£¬ËüÔÚ´óÁ¿É¾³ýÊýÒÚÌõ¿É×·Òäµ½2015ÄêµÄµç»°ºÍ¶ÌÐżÍ¼¡£Ô­×ÓÄÜ»ú¹¹°µÊ¾£¬ÔÚÃÀ¹ú¹ú¶È°²È«¾Ö·ÖÎöÈËÔ±·¢ÏÖ¡°´ÓµçÕÛ·þÎñÌṩÉÌ´¦ÊÕµ½µÄһЩÊý¾Ý´æÔÚ¼¼ÊõÎ¥¹æÐÐΪ¡±ºó£¬Ëü½«´ÓÆäϵͳÖÐɾ³ýÊý¾Ý¡£NSAÈÏ¿ÉËüÊÕµ½µÄÔªÊý¾Ý¶àÓÚÔÊÐíµÄÔªÊý¾Ý£¬NSAɾ³ýÁ˽üÈýÄêµÄÔªÊý¾Ý¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/government/nsa-deletes-hundreds-of-millions-of-call-records-over-technical-irregularities/

 

2¡¢FacebookÈÏ¿ÉÏò61¼Ò¹«Ë¾Ìṩ¶ÔÆäÓû§Êý¾ÝµÄÌØÊâ½Ó¼ûȨÏÞ

 

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾
       

FacebookÒѾ­ÈϿɣ¬¸Ã¹«Ë¾ÒÑÏòÊýÊ®¼Ò¿Æ¼¼¹«Ë¾ºÍÀûÓÿª·¢ÉÌÌṩÁË¶ÔÆäÓû§Êý¾ÝµÄÌØÊâ½Ó¼ûȨÏÞ£¬ÔÚ½ñÄê3Ô°䲼µÄCambridge Analytica³óÎÅÆÚ¼ä£¬Facebook°µÊ¾£¬ËüÒѾ­ÔÚ2015Äê5ÔÂÖÕ³¡Á˵ÚÈý·½½Ó¼ûÆäÓû§Êý¾Ý¡£È»¶øÔÚ½üÆÚ°ä²¼µÄÒ»·Ý³¤´ï747Ò³µÄÎļþÖÐÈϿɣ¬¸Ã¹«Ë¾ÔÚ2015ÄêÖ®ºó³ÖÐøÓë61¼ÒÓ²¼þºÍÈí¼þÔì×÷ÉÌÒÔ¼°ÀûÓÿª·¢É̹²ÏíÊý¾Ý¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/07/facebook-data-privacy.html

 

3¡¢×êÑлú¹¹°ä²¼2018ÄêÏļ¾»¥ÁªÍø°²È«»ã±¨£¬³Áµã¹Ø×¢DDoS¹¥»÷

 

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


       

±¾ÖܶþAkamai°ä²¼2018ÄêÏļ¾»¥ÁªÍø°²È«»ã±¨£¬³Áµã¹Ø×¢DDoS¹¥»÷µÄÇ÷Ïò¡£Æ¾¾ÝAkamaiµÄ×êÑУ¬2018ÄêÏļ¾Óë2017ÄêÏļ¾Ïà±È×ÜÌåDDoS¹¥»÷Ôö³¤ÁË16%£¬»ù´¡¼Ü¹¹²ã£¨µÚ3²ãºÍµÚ4²ã£©µÄ¹¥»÷Ôö³¤ÁË16%£¬·´ÉäÐÍDDoS¹¥»÷Ôö³¤ÁË4%£¬ÀûÓòãµÄDDoS¹¥»÷Ôö³¤ÁË38%¡£Õë¶ÔGitHubµÄDDoS¹¥»÷ÊÂÎñ·åÖµÁ÷Á¿´ï1.35 Tbps£¬´´ÔìÁËеļͼ¡£Mirai¹¥»÷ÈÔÔÚ³ÖÐø£¬ÐµıäÖÖ²»ÐݳöÏÖ¡£

 

        Ô­ÎÄÁ´½Ó£ºhttps://threatpost.com/threatlist-top-ddos-trends-in-2018-so-far/133038/

 

4¡¢Gentoo LinuxÍŶӳƹ¥»÷Õßͨ¹ýÃÜÂë²Â²â»ñµÃÆäGitHubÕË»§µÄÃÜÂë

 

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾
       

Gentoo Linux¿ª·¢ÍŶӰ䲼¹ØÓÚGitHubÕË»§ÔâºÚ¿ÍÈëÇÖÊÂÎñµÄµ÷²é»ã±¨¡£¸ÃÍŶӳƹ¥»÷Õßͨ¹ýÃÜÂë²Â²â»ñµÃÆäGitHubÕË»§µÄÃÜÂë¼°ÖÎÀíȨÏÞ£¬µ÷²é·¢ÏÖµÄÎÊÌ⻹Ô̺¬Î´Ñ¡È¡Ë«³É·ÖÈÏÖ¤¡¢Î´±£ÁôGitHub Organization¾ßÌåÐÅÏ¢µÄ±¸·ÝÒÔ¼°systemd repoÖ±½Ó´æ´¢ÔÚGitHubÉÏ¡£ÐÒÔ˵ÄÊÇ£¬GentooºÍGithub¶Ô¸ÃÊÂÎñµÄÏìÓ¦½Ïʵʱ£¬Ê¹µÃ¹¥»÷Ö»³ÖÐøÁËÔ¼70·ÖÖÓ¡£

 

        Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/07/github-hacking-gentoo-linux.html

 

5¡¢×êÑÐÈËÔ±·¢ÏÖÀûÓÃPROPagate´úÂë×¢Èë¼¼ÊõµÄ¶ñÒâ¹¥»÷»î¶¯

 

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾
       

PROPagate´úÂë×¢Èë¼¼Êõ×îÔçÓÚ2017Äê11ÔÂÓÉHexacorn°²È«×êÑÐÈËÔ±·¢ÏÖ£¬¸Ã×êÑÐÈËÔ±Ö¤Ã÷ËüÄܹ»ÔÚËùÓÐ×îеÄWindows°æ±¾ÉÏÔËÐУ¬²¢ÇÒ¿ÉÄÜÔÊÐí¹¥»÷Õß½«¶ñÒâ´úÂë×¢ÈëÆäËûÀûÓ÷¨Ê½¡£×¨¼Ò³ÆÊÇÓÉÓÚSetWindowSubclassº¯ÊýÄÚ²¿Ê¹ÓõĺϷ¨GUI´°¿ÚÊôÐÔ£¨UxSubclassInfoºÍCC32SubclassInfo£©ÔÚÆäËûÀûÓ÷¨Ê½ÄÚ²¿¼ÓÔØºÍÖ´ÐжñÒâ´úÂë¡£×î½ü£¬FireEyeµÄר¼Ò·¢ÏÖÁËÒ»¸öÀûÓÃRIG Exploit Kitͨ¹ýPROPagate´úÂë×¢Èë¼¼Êõ¶ñÒâÍÚ¾òMoneroµÄ»î¶¯¡£

 

        Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/74068/malware/propagate-code-injection-malware.html