ÐÅÏ¢°²È«Öܱ¨-2018ÄêµÚ27ÖÜ
°ä²¼¹¦·ò 2018-07-09Ò»¡¢±¾Öܰ²È«Ì¬ÊÆ×ÛÊö
2018Äê07ÔÂ02ÈÕÖÁ08ÈÕ¹²ÊÕ¼°²È«·ì϶54¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇSchneider Electric U.motion Builder CVE-2018-7777Ô¶³Ì´úÂëÖ´Ðзì϶£»Medtronic MyCareLink Patient MonitorÓ²±àÂëÃÜÂë·ì϶£»GraphicsMagick coders/png.cÎļþµÄ¡®ReadMNGImage¡¯º¯Êý»º³åÇøÒç¶Âí½Å£»Mozilla Firefox/Firefox ESR¶à¸öÄÚ´æ·ÛËé·ì϶£»Linux kernel fs/xfs/libxfs/xfs_inode_buf.c»Ø¾ø·þÎñ·ì϶¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊÇÃÀ¹ú¹ú¶È°²È«¾Ö£¨NSA£©ÉÏÖܰ䷢½«É¾³ýÊýÒÔÒڼƵĵ绰ºÍ¶ÌÐżÍ¼£»FacebookÈÏ¿ÉÏò61¼Ò¹«Ë¾Ìṩ¶ÔÆäÓû§Êý¾ÝµÄÌØÊâ½Ó¼ûȨÏÞ£»×êÑлú¹¹°ä²¼2018ÄêÏļ¾»¥ÁªÍø°²È«»ã±¨£¬³Áµã¹Ø×¢DDoS¹¥»÷£»Gentoo LinuxÍŶӳƹ¥»÷Õßͨ¹ýÃÜÂë²Â²â»ñµÃÆäGitHubÕË»§µÄÃÜÂ룻×êÑÐÈËÔ±·¢ÏÖÀûÓÃPROPagate´úÂë×¢Èë¼¼ÊõµÄ¶ñÒâ¹¥»÷»î¶¯¡£
ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾Öܰ²È«ÍþвΪÖС£
¶þ¡¢³ÁÒª°²È«·ì϶Áбí
1¡¢Schneider Electric U.motion Builder CVE-2018-7777Ô¶³Ì´úÂëÖ´Ðзì϶
Schneider Electric U.motion Builder software´æÔÚ°²È«·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬶ñÒâ¿Í»§¶Ë¿ÉÉÏ´«²¢Ê¹smbd·þÎñÆ÷Ö´Ðй²Ïí¿â¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£º
https://www.schneider-electric.com/en/download/document/SEVD-2018-095-01/
2¡¢Medtronic MyCareLink Patient MonitorÓ²±àÂëÃÜÂë·ì϶
Medtronic MyCareLink Patient Monitor´æÔÚÓ²±àÂëÃÜÂë·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇó£¬Ö´ÐÐËÁÒâ´úÂë¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://ics-cert.us-cert.gov/advisories/ICSMA-18-179-01
3¡¢GraphicsMagick coders/png.cÎļþµÄ¡®ReadMNGImage¡¯º¯Êý»º³åÇøÒç¶Âí½Å
GraphicsMagick coders/png.cÎļþµÄ¡®ReadMNGImage¡¯º¯Êý´æÔÚ¶Ñ»º³åÇøÒç¶Âí½Å£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶¹¹½¨¶ñÒâÎļþ£¬ÓÕʹÓû§½âÎö£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://sourceforge.net/p/graphicsmagick/bugs/535/
4¡¢Mozilla Firefox/Firefox ESR¶à¸öÄÚ´æ·ÛËé·ì϶
Mozilla Firefox/Firefox ESR´æÔÚÄÚ´æ·ÛËé·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶¹¹½¨¶ñÒâWEBÒ³£¬ÓÕʹÓû§½âÎö£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»òÕßÖ´ÐÐËÁÒâ´úÂë¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://www.mozilla.org/en-US/security/advisories/mfsa2018-15/
5¡¢Linux kernel fs/xfs/libxfs/xfs_inode_buf.c»Ø¾ø·þÎñ·ì϶
Linux kernel fs/xfs/libxfs/xfs_inode_buf.c´æÔÚ°²È«·ì϶£¬ÔÊÐí±¾µØ¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇó£¬Ê¹ÏµÍ³±ÀÀ£¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://bugzilla.kernel.org/show_bug.cgi?id=199915
Èý¡¢³ÁÒª°²È«ÊÂÎñ×ÛÊö
1¡¢ÃÀ¹ú¹ú¶È°²È«¾Ö£¨NSA£©ÉÏÖܰ䷢½«É¾³ýÊýÒÔÒڼƵĵ绰ºÍ¶ÌÐżÍ¼
ÃÀ¹ú¹ú¶È°²È«¾Ö£¨NSA£©ÉÏÖܰ䷢£¬ËüÔÚ´óÁ¿É¾³ýÊýÒÚÌõ¿É×·Òäµ½2015ÄêµÄµç»°ºÍ¶ÌÐżÍ¼¡£Ô×ÓÄÜ»ú¹¹°µÊ¾£¬ÔÚÃÀ¹ú¹ú¶È°²È«¾Ö·ÖÎöÈËÔ±·¢ÏÖ¡°´ÓµçÕÛ·þÎñÌṩÉÌ´¦ÊÕµ½µÄһЩÊý¾Ý´æÔÚ¼¼ÊõÎ¥¹æÐÐΪ¡±ºó£¬Ëü½«´ÓÆäϵͳÖÐɾ³ýÊý¾Ý¡£NSAÈÏ¿ÉËüÊÕµ½µÄÔªÊý¾Ý¶àÓÚÔÊÐíµÄÔªÊý¾Ý£¬NSAɾ³ýÁ˽üÈýÄêµÄÔªÊý¾Ý¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/government/nsa-deletes-hundreds-of-millions-of-call-records-over-technical-irregularities/
2¡¢FacebookÈÏ¿ÉÏò61¼Ò¹«Ë¾Ìṩ¶ÔÆäÓû§Êý¾ÝµÄÌØÊâ½Ó¼ûȨÏÞ

FacebookÒѾÈϿɣ¬¸Ã¹«Ë¾ÒÑÏòÊýÊ®¼Ò¿Æ¼¼¹«Ë¾ºÍÀûÓÿª·¢ÉÌÌṩÁË¶ÔÆäÓû§Êý¾ÝµÄÌØÊâ½Ó¼ûȨÏÞ£¬ÔÚ½ñÄê3Ô°䲼µÄCambridge Analytica³óÎÅÆÚ¼ä£¬Facebook°µÊ¾£¬ËüÒѾÔÚ2015Äê5ÔÂÖÕ³¡Á˵ÚÈý·½½Ó¼ûÆäÓû§Êý¾Ý¡£È»¶øÔÚ½üÆÚ°ä²¼µÄÒ»·Ý³¤´ï747Ò³µÄÎļþÖÐÈϿɣ¬¸Ã¹«Ë¾ÔÚ2015ÄêÖ®ºó³ÖÐøÓë61¼ÒÓ²¼þºÍÈí¼þÔì×÷ÉÌÒÔ¼°ÀûÓÿª·¢É̹²ÏíÊý¾Ý¡£
ÔÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/07/facebook-data-privacy.html
3¡¢×êÑлú¹¹°ä²¼2018ÄêÏļ¾»¥ÁªÍø°²È«»ã±¨£¬³Áµã¹Ø×¢DDoS¹¥»÷
±¾ÖܶþAkamai°ä²¼2018ÄêÏļ¾»¥ÁªÍø°²È«»ã±¨£¬³Áµã¹Ø×¢DDoS¹¥»÷µÄÇ÷Ïò¡£Æ¾¾ÝAkamaiµÄ×êÑУ¬2018ÄêÏļ¾Óë2017ÄêÏļ¾Ïà±È×ÜÌåDDoS¹¥»÷Ôö³¤ÁË16%£¬»ù´¡¼Ü¹¹²ã£¨µÚ3²ãºÍµÚ4²ã£©µÄ¹¥»÷Ôö³¤ÁË16%£¬·´ÉäÐÍDDoS¹¥»÷Ôö³¤ÁË4%£¬ÀûÓòãµÄDDoS¹¥»÷Ôö³¤ÁË38%¡£Õë¶ÔGitHubµÄDDoS¹¥»÷ÊÂÎñ·åÖµÁ÷Á¿´ï1.35 Tbps£¬´´ÔìÁËеļͼ¡£Mirai¹¥»÷ÈÔÔÚ³ÖÐø£¬ÐµıäÖÖ²»ÐݳöÏÖ¡£
ÔÎÄÁ´½Ó£ºhttps://threatpost.com/threatlist-top-ddos-trends-in-2018-so-far/133038/
4¡¢Gentoo LinuxÍŶӳƹ¥»÷Õßͨ¹ýÃÜÂë²Â²â»ñµÃÆäGitHubÕË»§µÄÃÜÂë

Gentoo Linux¿ª·¢ÍŶӰ䲼¹ØÓÚGitHubÕË»§ÔâºÚ¿ÍÈëÇÖÊÂÎñµÄµ÷²é»ã±¨¡£¸ÃÍŶӳƹ¥»÷Õßͨ¹ýÃÜÂë²Â²â»ñµÃÆäGitHubÕË»§µÄÃÜÂë¼°ÖÎÀíȨÏÞ£¬µ÷²é·¢ÏÖµÄÎÊÌ⻹Ô̺¬Î´Ñ¡È¡Ë«³É·ÖÈÏÖ¤¡¢Î´±£ÁôGitHub Organization¾ßÌåÐÅÏ¢µÄ±¸·ÝÒÔ¼°systemd repoÖ±½Ó´æ´¢ÔÚGitHubÉÏ¡£ÐÒÔ˵ÄÊÇ£¬GentooºÍGithub¶Ô¸ÃÊÂÎñµÄÏìÓ¦½Ïʵʱ£¬Ê¹µÃ¹¥»÷Ö»³ÖÐøÁËÔ¼70·ÖÖÓ¡£
ÔÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/07/github-hacking-gentoo-linux.html
5¡¢×êÑÐÈËÔ±·¢ÏÖÀûÓÃPROPagate´úÂë×¢Èë¼¼ÊõµÄ¶ñÒâ¹¥»÷»î¶¯

PROPagate´úÂë×¢Èë¼¼Êõ×îÔçÓÚ2017Äê11ÔÂÓÉHexacorn°²È«×êÑÐÈËÔ±·¢ÏÖ£¬¸Ã×êÑÐÈËÔ±Ö¤Ã÷ËüÄܹ»ÔÚËùÓÐ×îеÄWindows°æ±¾ÉÏÔËÐУ¬²¢ÇÒ¿ÉÄÜÔÊÐí¹¥»÷Õß½«¶ñÒâ´úÂë×¢ÈëÆäËûÀûÓ÷¨Ê½¡£×¨¼Ò³ÆÊÇÓÉÓÚSetWindowSubclassº¯ÊýÄÚ²¿Ê¹ÓõĺϷ¨GUI´°¿ÚÊôÐÔ£¨UxSubclassInfoºÍCC32SubclassInfo£©ÔÚÆäËûÀûÓ÷¨Ê½ÄÚ²¿¼ÓÔØºÍÖ´ÐжñÒâ´úÂë¡£×î½ü£¬FireEyeµÄר¼Ò·¢ÏÖÁËÒ»¸öÀûÓÃRIG Exploit Kitͨ¹ýPROPagate´úÂë×¢Èë¼¼Êõ¶ñÒâÍÚ¾òMoneroµÄ»î¶¯¡£
ÔÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/74068/malware/propagate-code-injection-malware.html


¾©¹«Íø°²±¸11010802024551ºÅ