ÐÅÏ¢Äþ¾²Öܱ¨-2018ÄêµÚ27ÖÜ

Ðû²¼Ê±¼ä 2018-07-09

Ò»¡¢±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö


        2018Äê07ÔÂ02ÈÕÖÁ08ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´54¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇSchneider Electric U.motion Builder CVE-2018-7777Ô¶³Ì´úÂëÖ´ÐЩ¶´£»Medtronic MyCareLink Patient MonitorÓ²±àÂëÃÜÂë©¶´£»GraphicsMagick coders/png.cÎļþµÄ¡®ReadMNGImage¡¯º¯Êý»º³åÇøÒç³ö©¶´£»Mozilla Firefox/Firefox ESR¶à¸öÄÚ´æÆÆ»µÂ©¶´£»Linux kernel fs/xfs/libxfs/xfs_inode_buf.c¾Ü¾ø·þÎñ©¶´¡£

 

        ±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊÇÃÀ¹ú¹ú¼ÒÄþ¾²¾Ö£¨NSA£©ÉÏÖÜÐû²¼½«É¾³ýÊýÒÔÒڼƵĵ绰ºÍ¶ÌÐżÇ¼£»FacebookÈÏ¿ÉÏò61¼Ò¹«Ë¾Ìṩ¶ÔÆäÓû§Êý¾ÝµÄÌØÊâ·ÃÎÊȨÏÞ£»Ñо¿»ú¹¹Ðû²¼2018ÄêÏļ¾»¥ÁªÍøÄþ¾²³ÂËߣ¬ÖØµã¹Ø×¢DDoS¹¥»÷£»Gentoo LinuxÍŶӳƹ¥»÷Õßͨ¹ýÃÜÂëÍÆ²â»ñµÃÆäGitHubÕË»§µÄÃÜÂ룻Ñо¿ÈËÔ±·¢ÏÖÀûÓÃPROPagate´úÂë×¢Èë¼¼ÊõµÄ¶ñÒâ¹¥»÷»î¶¯¡£

 

        ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖС£

 

¶þ¡¢ÖØÒªÄþ¾²Â©¶´Áбí


1¡¢Schneider Electric U.motion Builder CVE-2018-7777Ô¶³Ì´úÂëÖ´ÐЩ¶´

        Schneider Electric U.motion Builder software´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓé¶´Ìá½»ÌØÊâµÄÇëÇ󣬶ñÒâ¿Í»§¶Ë¿ÉÉÏ´«²¢Ê¹smbd·þÎñÆ÷Ö´Ðй²Ïí¿â¡£

 

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£º

https://www.schneider-electric.com/en/download/document/SEVD-2018-095-01/


2¡¢Medtronic MyCareLink Patient MonitorÓ²±àÂëÃÜÂë©¶´

 

        Medtronic MyCareLink Patient Monitor´æÔÚÓ²±àÂëÃÜÂë©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓé¶´Ìá½»ÌØÊâµÄÇëÇó£¬Ö´ÐÐÈÎÒâ´úÂë¡£

 

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://ics-cert.us-cert.gov/advisories/ICSMA-18-179-01
3¡¢GraphicsMagick coders/png.cÎļþµÄ¡®ReadMNGImage¡¯º¯Êý»º³åÇøÒç³ö©¶´

 

        GraphicsMagick coders/png.cÎļþµÄ¡®ReadMNGImage¡¯º¯Êý´æÔÚ¶Ñ»º³åÇøÒç³ö©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓé¶´¹¹½¨¶ñÒâÎļþ£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½Í߽⡣

 

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://sourceforge.net/p/graphicsmagick/bugs/535/


4¡¢Mozilla Firefox/Firefox ESR¶à¸öÄÚ´æÆÆ»µÂ©¶´

 

        Mozilla Firefox/Firefox ESR´æÔÚÄÚ´æÆÆ»µÂ©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓé¶´¹¹½¨¶ñÒâWEBÒ³£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½±ÀÀ£»òÕßÖ´ÐÐÈÎÒâ´úÂë¡£

 

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://www.mozilla.org/en-US/security/advisories/mfsa2018-15/


5¡¢Linux kernel fs/xfs/libxfs/xfs_inode_buf.c¾Ü¾ø·þÎñ©¶´

 

        Linux kernel fs/xfs/libxfs/xfs_inode_buf.c´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíµ±µØ¹¥»÷Õß¿ÉÒÔÀûÓé¶´Ìá½»ÌØÊâµÄÇëÇó£¬Ê¹ÏµÍ³Í߽⡣

 

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://bugzilla.kernel.org/show_bug.cgi?id=199915

 

Èý¡¢ÖØÒªÄþ¾²Ê¼þ×ÛÊö


1¡¢ÃÀ¹ú¹ú¼ÒÄþ¾²¾Ö£¨NSA£©ÉÏÖÜÐû²¼½«É¾³ýÊýÒÔÒڼƵĵ绰ºÍ¶ÌÐżÇ¼

 

×ðÁú¶¶È¦ - Ϊdu¶øÉú

 

ÃÀ¹ú¹ú¼ÒÄþ¾²¾Ö£¨NSA£©ÉÏÖÜÐû²¼£¬ËüÕýÔÚ´óÁ¿É¾³ýÊýÒÚÌõ¿É×·Ëݵ½2015ÄêµÄµç»°ºÍ¶ÌÐżÇ¼¡£Ô­×ÓÄÜ»ú¹¹ÌåÏÖ£¬ÔÚÃÀ¹ú¹ú¼ÒÄþ¾²¾Ö·ÖÎöÈËÔ±·¢ÏÖ¡°´ÓµçÐÅ·þÎñÌṩÉÌ´¦ÊÕµ½µÄһЩÊý¾Ý´æÔÚ¼¼ÊõÎ¥¹æÐÐΪ¡±ºó£¬Ëü½«´ÓÆäϵͳÖÐɾ³ýÊý¾Ý¡£NSAÈÏ¿ÉËüÊÕµ½µÄÔªÊý¾Ý¶àÓÚÔÊÐíµÄÔªÊý¾Ý£¬NSAɾ³ýÁ˽üÈýÄêµÄÔªÊý¾Ý¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/government/nsa-deletes-hundreds-of-millions-of-call-records-over-technical-irregularities/

 

2¡¢FacebookÈÏ¿ÉÏò61¼Ò¹«Ë¾Ìṩ¶ÔÆäÓû§Êý¾ÝµÄÌØÊâ·ÃÎÊȨÏÞ

 

×ðÁú¶¶È¦ - Ϊdu¶øÉú
       

FacebookÒѾ­ÈϿɣ¬¸Ã¹«Ë¾ÒÑÏòÊýÊ®¼Ò¿Æ¼¼¹«Ë¾ºÍÓ¦Óÿª·¢ÉÌÌṩÁË¶ÔÆäÓû§Êý¾ÝµÄÌØÊâ·ÃÎÊȨÏÞ£¬ÔÚ½ñÄê3ÔÂÐû²¼µÄCambridge Analytica³óÎÅÆÚ¼ä£¬FacebookÌåÏÖ£¬ËüÒѾ­ÔÚ2015Äê5ÔÂÍ£Ö¹Á˵ÚÈý·½·ÃÎÊÆäÓû§Êý¾Ý¡£È»¶øÔÚ½üÆÚÐû²¼µÄÒ»·Ý³¤´ï747Ò³µÄÎļþÖÐÈϿɣ¬¸Ã¹«Ë¾ÔÚ2015ÄêÖ®ºó¼ÌÐøÓë61¼ÒÓ²¼þºÍÈí¼þÖÆÔìÉÌÒÔ¼°Ó¦Óÿª·¢É̹²ÏíÊý¾Ý¡£

 

Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/07/facebook-data-privacy.html

 

3¡¢Ñо¿»ú¹¹Ðû²¼2018ÄêÏļ¾»¥ÁªÍøÄþ¾²³ÂËߣ¬ÖØµã¹Ø×¢DDoS¹¥»÷

 

×ðÁú¶¶È¦ - Ϊdu¶øÉú


       

±¾ÖܶþAkamaiÐû²¼2018ÄêÏļ¾»¥ÁªÍøÄþ¾²³ÂËߣ¬ÖØµã¹Ø×¢DDoS¹¥»÷µÄÇ÷ÊÆ¡£Æ¾¾ÝAkamaiµÄÑо¿£¬2018ÄêÏļ¾Óë2017ÄêÏļ¾Ïà±È×ÜÌåDDoS¹¥»÷Ôö³¤ÁË16%£¬»ù´¡¼Ü¹¹²ã£¨µÚ3²ãºÍµÚ4²ã£©µÄ¹¥»÷Ôö³¤ÁË16%£¬·´ÉäÐÍDDoS¹¥»÷Ôö³¤ÁË4%£¬Ó¦ÓòãµÄDDoS¹¥»÷Ôö³¤ÁË38%¡£Õë¶ÔGitHubµÄDDoS¹¥»÷ʼþ·åÖµÁ÷Á¿´ï1.35 Tbps£¬µÞÔìÁËеļǼ¡£Mirai¹¥»÷ÈÔÔÚÁ¬Ðø£¬ÐµıäÖÖ²»Í£·ºÆð¡£

 

        Ô­ÎÄÁ´½Ó£ºhttps://threatpost.com/threatlist-top-ddos-trends-in-2018-so-far/133038/

 

4¡¢Gentoo LinuxÍŶӳƹ¥»÷Õßͨ¹ýÃÜÂëÍÆ²â»ñµÃÆäGitHubÕË»§µÄÃÜÂë

 

×ðÁú¶¶È¦ - Ϊdu¶øÉú
       

Gentoo Linux¿ª·¢ÍŶÓÐû²¼¹ØÓÚGitHubÕË»§ÔâºÚ¿ÍÈëÇÖʼþµÄÊÓ²ì³ÂËß¡£¸ÃÍŶӳƹ¥»÷Õßͨ¹ýÃÜÂëÍÆ²â»ñµÃÆäGitHubÕË»§µÄÃÜÂë¼°¹ÜÀíȨÏÞ£¬ÊӲ췢ÏÖµÄÎÊÌ⻹°üÂÞδ½ÓÄÉË«ÒòËØÈÏÖ¤¡¢Î´Éú´æGitHub OrganizationÏêϸÐÅÏ¢µÄ±¸·ÝÒÔ¼°systemd repoÖ±½Ó´æ´¢ÔÚGitHubÉÏ¡£ÐÒÔ˵ÄÊÇ£¬GentooºÍGithub¶Ô¸ÃʼþµÄÏìÓ¦½Ï¼°Ê±£¬Ê¹µÃ¹¥»÷Ö»Á¬ÐøÁËÔ¼70·ÖÖÓ¡£

 

        Ô­ÎÄÁ´½Ó£ºhttps://thehackernews.com/2018/07/github-hacking-gentoo-linux.html

 

5¡¢Ñо¿ÈËÔ±·¢ÏÖÀûÓÃPROPagate´úÂë×¢Èë¼¼ÊõµÄ¶ñÒâ¹¥»÷»î¶¯

 

×ðÁú¶¶È¦ - Ϊdu¶øÉú
       

PROPagate´úÂë×¢Èë¼¼Êõ×îÔçÓÚ2017Äê11ÔÂÓÉHexacornÄþ¾²Ñо¿ÈËÔ±·¢ÏÖ£¬¸ÃÑо¿ÈËÔ±Ö¤Ã÷Ëü¿ÉÒÔÔÚËùÓÐ×îеÄWindows°æ±¾ÉÏÔËÐУ¬¶øÇÒ¿ÉÄÜÔÊÐí¹¥»÷Õß½«¶ñÒâ´úÂë×¢ÈëÆäËûÓ¦Ó÷¨Ê½¡£×¨¼Ò³ÆÊÇÓÉÓÚSetWindowSubclassº¯ÊýÄÚ²¿Ê¹ÓõĺϷ¨GUI´°¿ÚÊôÐÔ£¨UxSubclassInfoºÍCC32SubclassInfo£©ÔÚÆäËûÓ¦Ó÷¨Ê½ÄÚ²¿¼ÓÔØºÍÖ´ÐжñÒâ´úÂë¡£×î½ü£¬FireEyeµÄר¼Ò·¢ÏÖÁËÒ»¸öÀûÓÃRIG Exploit Kitͨ¹ýPROPagate´úÂë×¢Èë¼¼Êõ¶ñÒâÍÚ¾òMoneroµÄ»î¶¯¡£

 

        Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/74068/malware/propagate-code-injection-malware.html