¼øºÚµ£±£ÍøADLab£º²©Í¨Wi-FiÇý¶¯¶à¸öÇå¾²Îó²îÖÒÑÔ
Ðû²¼Ê±¼ä 2019-04-21²©Í¨ÊÇÈ«ÇòÎÞÏß×°±¸µÄÖ÷Òª¹©Ó¦ÉÌÖ®Ò»£¬£¬£¬£¬£¬£¬£¬²©Í¨µÄ43ϵÁеÄwifiоƬ±»ÆÕ±éÓ¦ÓÃÓÚÖÇÄÜÊÖ»ú¡¢Ìõ¼Ç±¾µçÄÔ¡¢ÖÇÄܵçÊÓºÍÎïÁªÍø×°±¸¡£¡£¡£¡£¡£¡£¿ËÈÕ£¬£¬£¬£¬£¬£¬£¬US-CERTÐû²¼Á˶à¸ö²©Í¨wi-FiоƬÇý¶¯µÄÇå¾²Ô¤¾¯£¨CVE-2019-9500¡¢CVE-2019-9501¡¢CVE-2019-9502¡¢CVE-2019-9503£©¡£¡£¡£¡£¡£¡£
²©Í¨WIFIоƬ43xxxÇý¶¯³ÌÐò¼¯·ÖΪ¿ªÔ´ºÍרÓÐÁ½Àà¡£¡£¡£¡£¡£¡£
¿ªÔ´ |
b43£¨Linux£© brcmsmac£¨SoftMAC / Linux£© brcmfmac£¨FullMAC / Linux£© bcmdhd£¨FullMAC / Android£© |
רÓÐ |
broadcom-sta(wl) ( SoftMAC && FullMAC / Linux) |
ͼ1 ²©Í¨Ð¾Æ¬Çý¶¯¼°Ó¦ÓÃϵͳ
Îó²îÆÊÎö
brcmfmacÇý¶¯Á½¸öÎó²î£¨CVE-2019-9503¡¢CVE-2019-9500£©
²©Í¨Wi-FiоƬÓëÖ÷»úµÄÊäÈëÊä³ö½Ó¿Ú½ÓÄÉUSB£¬£¬£¬£¬£¬£¬£¬SDIOºÍPCIeÈýÖÖBus×ÜÏß·½·¨¡£¡£¡£¡£¡£¡£ÔÚÈí¼þ²ãÃæ£¬£¬£¬£¬£¬£¬£¬Çý¶¯ºÍÖ÷»úµÄÊý¾ÝͨѶÓÐÁ½ÖÖ·½·¨£¬£¬£¬£¬£¬£¬£¬Ò»ÖÖÊÇIOCTRL£¬£¬£¬£¬£¬£¬£¬Ò»ÖÖÊÇEventÊÂÎñ֪ͨ¡£¡£¡£¡£¡£¡£Wi-FiоƬʹÓù̼þÊÂÎñÀ´Í¨ÖªÖ÷»ú²î±ðµÄÊÂÎñ£ºÉ¨ÃèЧ¹û¡¢¹ØÁª/ɨ³ý¹ØÁª¡¢Éí·ÝÑéÖ¤µÈ¡£¡£¡£¡£¡£¡£
CVE-2019-9503
ͼ2 is_wlc_event_frameº¯ÊýÎÊÌâʾÒâ
CVE-2019-9500
ͼ3 brcmf_wowl_nd_resultsº¯ÊýÎÊÌâʾÒâ
²©Í¨wlÇý¶¯ÖÐÁ½¸öÎó²î£¨CVE-2019-9501¡¢ CVE-2019-9502£©
ͼ4 wlÇý¶¯Îó²îʾÒâͼ
CVE-2019-9501
APÏòStation·¢Ë͵ÄEAPOL M3ÐÂÎÅÖУ¬£¬£¬£¬£¬£¬£¬ÈôÊÇvendor information×ֶγ¤¶È´óÓÚ32×Ö½Úʱ£¬£¬£¬£¬£¬£¬£¬½«»áÔÚwlc_wpa_sup_eapolº¯Êý´¥·¢¶ÑÒç³öÎó²î¡£¡£¡£¡£¡£¡£
CVE-2019-9502
ÊÜÓ°Ïì²úÆ·
²©Í¨¹«Ë¾
²©Í¨¹«Ë¾Ã»ÓÐÌṩÊÜÓ°Ïì²úÆ·ÐÅÏ¢¡£¡£¡£¡£¡£¡£
Synology¹«Ë¾
Synology¹«Ë¾µÄRT1900ac²úÆ·ÊÜÓ°Ïì¡£¡£¡£¡£¡£¡£¸ÃÎó²îÔÚRT1900ac²úÆ·ÖÉñ¬Èϲ»±»´¥·¢£¬£¬£¬£¬£¬£¬£¬µ±²úÆ·¿ÉÒÔÓÉÖÎÀíÔ±ÉèÖÃÆôÓÃijÏîÉèÖÃʱ£¬£¬£¬£¬£¬£¬£¬²Å»áÊÜÓ°Ïì¡£¡£¡£¡£¡£¡£Òò´Ë£¬£¬£¬£¬£¬£¬£¬Synology¹«Ë¾ÒÔΪRT1900acÖиÃÎó²îÓÐÒ»¶¨µÄ¾ÖÏÞÐÔ£¬£¬£¬£¬£¬£¬£¬Ö»ÓÐÔÚÌØ¶¨µÄÇéÐÎÏ²Żª´¥·¢¡£¡£¡£¡£¡£¡£
Apple¹«Ë¾
½â¾ö¼Æ»®
Apple¹«Ë¾µÄbrcmfmacÇý¶¯µÄÎó²îÒÑÐÞ¸´£¬£¬£¬£¬£¬£¬£¬Óû§¿ÉÒÔ¸üÐÂÏà¹ØµÄ²¹¶¡£¬£¬£¬£¬£¬£¬£¬Íê³ÉÐÞ¸´ÊÂÇé¡£¡£¡£¡£¡£¡£
²©Í¨¹«Ë¾ÐÞ¸´ÁËLinuxÄÚºËbrcmfmacÇý¶¯ÖеÄCVE-2019-9503¼°CVE-2019-9500Á½¸öÎó²î£¬£¬£¬£¬£¬£¬£¬Óû§¿ÉÒÔ¸üÐÂÏà¹ØµÄ²¹¶¡£¬£¬£¬£¬£¬£¬£¬Íê³ÉÐÞ¸´ÊÂÇé¡£¡£¡£¡£¡£¡£
ʹÓÿÉÐŵÄWI-FIÍøÂ磬£¬£¬£¬£¬£¬£¬ÌØÊâÊDz»ÒªÔÚ¹«¹²³¡ºÏÅþÁ¬²»Çå¾²µÄwifiÈÈÃÅ¡£¡£¡£¡£¡£¡£
²Î¿¼Á´½Ó
2.https://kb.cert.org/vuls/id/166939/
3.https://support.apple.com/en-us/HT209600
4.https://www.synology.cn/zh-cn/security/advisory/Synology_SA_19_18
5.https://git.kernel.org/linus/a4176ec356c73a46c07c181c6d04039fafa34a9f
6.https://git.kernel.org/linus/1b5e2423164b3670e8bc9174e4762d297990deff