Éî¶ÈÆÊÎö΢Èí×îÐÂÎó²î£¬£¬£¬£¬£¬£¬£¬ÎªÄúÌṩ×îÓŽâ¾ö¼Æ»®

Ðû²¼Ê±¼ä 2022-04-21
ǰÑÔ£º

½üÆÚ£¬£¬£¬£¬£¬£¬£¬Î¢ÈíÐû²¼ÁË4Ô·ݵÄÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´Á˰üÀ¨2¸ö0dayÎó²îÔÚÄÚµÄ119¸öÇå¾²Îó²î£¨²»°üÀ¨26¸öMicrosoftEdgeÎó²î£©£¬£¬£¬£¬£¬£¬£¬ÆäÖÐÓÐ10¸öÎó²î±»ÆÀ¼¶ÎªÑÏÖØ£¬£¬£¬£¬£¬£¬£¬Éæ¼°.NET Framework¡¢ActiveDirectoryDomainServicesµÈ¶à¸ö²úÆ·ºÍ×é¼þ¡£¡£¡£¡£ ¡£¡£¡££¨Îó²îÏêÇéÔÚÎÄÄ©£©


¼øºÚµ£±£Íø±±Ú¤Êý¾ÝʵÑéÊÒµÚһʱ¼ä¶Ô΢Èí4ÔÂÐû²¼µÄÇ徲ͨ¸æ¾ÙÐÐÆÊÎöÑÐÅУ¬£¬£¬£¬£¬£¬£¬Á¬ÏµÌ©ºÏÅÌ¹ÅÆ½Ì¨£¨THPangu-OS£©µÄµ××ùÄÜÁ¦£¬£¬£¬£¬£¬£¬£¬Îª¿í´óÓû§¸ø³öÓ¦¼±´¦Öóͷ£Ö¸Òý¼Æ»®¡£¡£¡£¡£ ¡£¡£¡£


ÒòÔ¶³Ì´úÂëÖ´ÐÐÎó²îCVE-2022-26809Íþвˮƽ¸ß¡¢Ó°Ïì¹æÄ£½Ï¹ã£¬£¬£¬£¬£¬£¬£¬Ê¹ÓõÄÖØÆ¯ºóµÍ£¬£¬£¬£¬£¬£¬£¬Ò×±»¹¥»÷Õ߯ձéʹÓýø¶ø¶Ô¿í´óÓû§Ôì³ÉÑÏÖØÎ£º¦£¬£¬£¬£¬£¬£¬£¬ÒÔÊÇÎÒÃÇÒÔ´ËÎó²îÉæ¼°µÄЧÀÍΪÀý£¬£¬£¬£¬£¬£¬£¬×ö³öÁ˽øÒ»²½µÄÏ꾡ÆÊÎöÀú³Ì£¬£¬£¬£¬£¬£¬£¬²¢Ïêϸ˵Ã÷Îó²îÐÞ¸´Óë²¹¶¡ÏÂÔØ¡£¡£¡£¡£ ¡£¡£¡£


Îó²îÆÊÎö


Ïà¹ØÎó²îλÓÚWindowsRPCЧÀÍ£¬£¬£¬£¬£¬£¬£¬¸ÃЧÀÍÓÉÃûΪrpcrt4.dllµÄ¿â¡£¡£¡£¡£ ¡£¡£¡£¸ÃÔËÐÐʱ¿â±»¼ÓÔØµ½Ê¹ÓÃRPCЭÒé¾ÙÐÐͨѶµÄ¿Í»§¶ËºÍЧÀÍÆ÷Àú³ÌÖС£¡£¡£¡£ ¡£¡£¡£


ͨ¹ý½ÏÁ¿ÁË10.0.22000.434£¨Î´´ò²¹¶¡£¬£¬£¬£¬£¬£¬£¬´Ó2022Äê3ÔÂ×îÏÈ£©ºÍ10.0.22000.613£¨ÒÑ´ò²¹¶¡£¬£¬£¬£¬£¬£¬£¬´Ó2022Äê4ÔÂ×îÏÈ£©°æ±¾£¬£¬£¬£¬£¬£¬£¬ÄÜ·¢Ã÷ÒÔÏÂÖÖÖÖ¹¦Ð§»òº¯ÊýµÄת±äÇåµ¥¡£¡£¡£¡£ ¡£¡£¡£


1.jpg

º¯Êýת±äÇåµ¥


º¯ÊýOSF_CCALL::ProcessResponseºÍOSF_SCALL::ProcessReceivedPDU¡£¡£¡£¡£ ¡£¡£¡£ÕâÁ½¸öº¯ÊýʵÖÊÉÏÊÇÏàËÆµÄ£»£»£»£»£»£»Á½Õß¶¼´¦Öóͷ£RPCÊý¾Ý°ü£¬£¬£¬£¬£¬£¬£¬µ«Ò»¸öÔÚ¿Í»§¶ËÔËÐУ¬£¬£¬£¬£¬£¬£¬ÁíÒ»¸öÔÚЧÀÍÆ÷¶ËÔËÐУ¨CCALLºÍSCALL»®·Ö´ú±í¿Í»§¶ËŲÓúÍЧÀÍÆ÷ŲÓã©¡£¡£¡£¡£ ¡£¡£¡£ÎÒÃǼÌÐø½ÏÁ¿OSF_SCALL::ProcessReceivedPDU£¬£¬£¬£¬£¬£¬£¬²¢×¢Öص½Ð°汾ÖÐÌí¼ÓÁËÁ½¸ö´úÂë¿é¡£¡£¡£¡£ ¡£¡£¡£


2.jpg

3.jpg

±ÈÕÕÐÂÔö´úÂë¿é


Éó²éÐÞ¸´´úÂ룬£¬£¬£¬£¬£¬£¬ÎÒÃÇ¿´µ½ÔÚQUEUE::PutOnQueueÖ®ºóŲÓÃÁËÒ»¸öк¯Êý¡£¡£¡£¡£ ¡£¡£¡£½øÈëк¯Êý²¢¼ì²éÆä´úÂ룬£¬£¬£¬£¬£¬£¬ÎÒÃÇ·¢Ã÷ËüÓÃÓÚ¼ì²éÕûÊýÒç³ö¡£¡£¡£¡£ ¡£¡£¡£¼´Ìí¼ÓÁËк¯ÊýÒÔÑéÖ¤ÕûÊý±äÁ¿ÊÇ·ñ¼á³ÖÔÚÔ¤ÆÚÖµ¹æÄ£ÄÚ¡£¡£¡£¡£ ¡£¡£¡£


4.jpg

ÐÞ¸´´úÂë


ÉîÈëÆÊÎö


OSF_SCALL:GetCoalescedBufferÖеÄÒ×Êܹ¥»÷´úÂ룬£¬£¬£¬£¬£¬£¬ÎÒÃÇ×¢ÖØµ½ÕûÊýÒçÍÉ»¯Îó¿ÉÄܵ¼Ö¶ѻº³åÇøÒç³ö£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚÆäÖÐÊý¾Ý±»¸´ÖƵ½Ì«Ð¡¶øÎÞ·¨Ìî³ä¡£¡£¡£¡£ ¡£¡£¡£·´¹ýÀ´£¬£¬£¬£¬£¬£¬£¬ÕâÔÊÐí½«Êý¾ÝдÈë¶ÑÉϵĻº³åÇø½çÏßÖ®Íâ¡£¡£¡£¡£ ¡£¡£¡£ÈôÊÇʹÓÃÊʵ±£¬£¬£¬£¬£¬£¬£¬Õâ¸öÔ­Óï¿ÉÄܻᵼÖÂÔ¶³Ì´úÂëÖ´ÐС£¡£¡£¡£ ¡£¡£¡£


ÔÚÆäËûº¯ÊýÖÐÒ²Ìí¼ÓÁËÀàËÆµÄ¼ì²éÕûÊýÒç³öµÄŲÓãº


OSF_CCALL::ProcessResponse

OSF_SCALL::GetCoalescedBuffer

OSF_CCALL::GetCoalescedBuffer


²Î¿¼Á´½Ó£º

https://www.akamai.com/blog/security/critical-remote-code-execution-vulnerabilities-windows-rpc-runtime  



Îó²î¼ì²â


¼øºÚµ£±£ÍøÌ쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳÒѽôÆÈÐû²¼Õë¶Ô¸ÃÎó²îµÄÉý¼¶°ü£¬£¬£¬£¬£¬£¬£¬Ö§³Ö¶Ô¸ÃÎó²î¾ÙÐÐÊÚȨɨÃ裬£¬£¬£¬£¬£¬£¬Óû§Éý¼¶±ê×¼Îó²î¿âºó¼´¿É¶Ô¸ÃÎó²î¾ÙÐÐɨÃ裺


6070°æ±¾Éý¼¶°üΪ607000428£¬£¬£¬£¬£¬£¬£¬Éý¼¶°üÏÂÔØµØµã£º

https://venustech.download.venuscloud.cn/


1.png

2.jpg

3.jpg

4.jpg

5.jpg

Éý¼¶ºóÒÑÖ§³Ö¸ÃÎó²î


ÇëʹÓÃÌ쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳ²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾£¬£¬£¬£¬£¬£¬£¬ÊµÊ±¶Ô¸ÃÎó²î¾ÙÐмì²â£¬£¬£¬£¬£¬£¬£¬ÒԱ㾡¿ì½ÓÄÉÌá·À²½·¥¡£¡£¡£¡£ ¡£¡£¡£


»ùÏߺ˲é


¼øºÚµ£±£ÍøÇå¾²ÉèÖú˲éÖÎÀíϵͳÒѽôÆÈÐû²¼Õë¶Ô¸ÃÎó²îµÄºË²é×ÊÔ´°ü£¬£¬£¬£¬£¬£¬£¬Ö§³Ö¶Ô¸ÃÎó²î¾ÙÐк˲飬£¬£¬£¬£¬£¬£¬Óû§Éý¼¶Çå¾²ÉèÖú˲éÖÎÀíϵͳ×ÊÔ´°üºó¼´¿É¶Ô¸ÃÎó²î¾ÙÐк˲飺


6.jpg

»ùÏߺ˲é


ÐÞ¸´½¨Òé


ÏÖÔÚ΢ÈíÒÑÐû²¼Ïà¹ØÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬½¨ÒéÊÜÓ°ÏìµÄÓû§¾¡¿ìÐÞ¸´¡£¡£¡£¡£ ¡£¡£¡£


×Ô¶¯¸üÐÂ


MicrosoftUpdateĬÈÏÆôÓ㬣¬£¬£¬£¬£¬£¬µ±ÏµÍ³¼ì²âµ½¿ÉÓøüÐÂʱ£¬£¬£¬£¬£¬£¬£¬½«»á×Ô¶¯ÏÂÔØ¸üв¢ÔÚÏÂÒ»´ÎÆô¶¯Ê±×°Öᣡ£¡£¡£ ¡£¡£¡£


ÊÖ¶¯¸üÐÂ


µã»÷¡°×îÏȲ˵¥¡±»ò°´Windows¿ì½Ý¼ü£¬£¬£¬£¬£¬£¬£¬µã»÷½øÈë¡°ÉèÖᱡ£¡£¡£¡£ ¡£¡£¡£


Ñ¡Ôñ¡°¸üкÍÇå¾²¡±£¬£¬£¬£¬£¬£¬£¬½øÈë¡°Windows¸üС±£¨Windows8¡¢Windows8.1¡¢WindowsServer2012ÒÔ¼°WindowsServer2012R2¿Éͨ¹ý¿ØÖÆÃæ°å½øÈë¡°Windows¸üС±£¬£¬£¬£¬£¬£¬£¬Ïêϸ°ì·¨Îª¡°¿ØÖÆÃæ°å¡±->¡°ÏµÍ³ºÍÇå¾²¡±->¡°Windows¸üС±£©¡£¡£¡£¡£ ¡£¡£¡£


Ñ¡Ôñ¡°¼ì²é¸üС±£¬£¬£¬£¬£¬£¬£¬ÆÚ´ýϵͳ½«×Ô¶¯¼ì²é²¢ÏÂÔØ¿ÉÓøüС£¡£¡£¡£ ¡£¡£¡£


ÖØÆôÅÌËã»ú£¬£¬£¬£¬£¬£¬£¬×°ÖøüÐÂÏµÍ³ÖØÐÂÆô¶¯ºó£¬£¬£¬£¬£¬£¬£¬¿Éͨ¹ý½øÈë¡°Windows¸üС±->¡°Éó²é¸üÐÂÀúÊ·¼Í¼¡±Éó²éÊÇ·ñÀÖ³É×°ÖÃÁ˸üС£¡£¡£¡£ ¡£¡£¡£¹ØÓÚûÓÐÀÖ³É×°ÖõĸüУ¬£¬£¬£¬£¬£¬£¬¿ÉÒÔµã»÷¸Ã¸üÐÂÃû³Æ½øÈë΢Èí¹Ù·½¸üÐÂÐÎòÁ´½Ó£¬£¬£¬£¬£¬£¬£¬µã»÷×îеÄSSUÃû³Æ²¢ÔÚÐÂÁ´½ÓÖеã»÷¡°Microsoft¸üÐÂĿ¼¡±£¬£¬£¬£¬£¬£¬£¬È»ºóÔÚÐÂÁ´½ÓÖÐÑ¡ÔñÊÊÓÃÓÚÄ¿µÄϵͳµÄ²¹¶¡¾ÙÐÐÏÂÔØ²¢×°Öᣡ£¡£¡£ ¡£¡£¡£


Microsoft¹Ù·½ÏÂÔØÏìÓ¦²¹¶¡¾ÙÐиüС£¡£¡£¡£ ¡£¡£¡£

ÏÂÔØÁ´½Ó£º

https://msrc.microsoft.com/update-guide/releaseNote/2022-Apr


²¹¶¡ÏÂÔØÊ¾Àý


1.·­¿ªÉÏÊöÏÂÔØÁ´½Ó£¬£¬£¬£¬£¬£¬£¬µã»÷Îó²îÁбíÖÐÒªÐÞ¸´µÄCVEÁ´½Ó¡£¡£¡£¡£ ¡£¡£¡£


7.jpg

΢ÈíÎó²îÁÐÌåÏÖÀý


2.ÔÚ΢Èíͨ¸æÒ³Ãæµ×²¿×ó²à¡¾²úÆ·¡¿Ñ¡ÔñÏìÓ¦µÄϵͳÀàÐÍ£¬£¬£¬£¬£¬£¬£¬µã»÷ÓҲࡾÏÂÔØ¡¿´¦·­¿ª²¹¶¡ÏÂÔØÁ´½Ó¡£¡£¡£¡£ ¡£¡£¡£


8.jpg

²¹¶¡ÏÂÔØÁ´½Ó


3.µã»÷¡¾SecurityUpdate¡¿£¬£¬£¬£¬£¬£¬£¬·­¿ª²¹¶¡ÏÂÔØÒ³Ãæ£¬£¬£¬£¬£¬£¬£¬ÏÂÔØÏìÓ¦²¹¶¡£¬£¬£¬£¬£¬£¬£¬ÏÂÔØÍê³ÉºóË«»÷×°Öᣡ£¡£¡£ ¡£¡£¡£


9.jpg

²¹¶¡ÏÂÔØ



СÌùÊ¿£º


Îó²îÏêÇé


±¾´ÎÐÞ¸´µÄ119¸öÎó²îÖУ¬£¬£¬£¬£¬£¬£¬47¸öΪȨÏÞÌáÉýÎó²î£¬£¬£¬£¬£¬£¬£¬47¸öΪԶ³Ì´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬£¬£¬£¬13¸öΪÐÅϢй¶Îó²î£¬£¬£¬£¬£¬£¬£¬9¸öΪ¾Ü¾øÐ§ÀÍÎó²î£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°3¸öÓÕÆ­Îó²î¡£¡£¡£¡£ ¡£¡£¡£1£©Î¢Èí±¾´Î¹²ÐÞ¸´ÁË2¸ö0dayÎó²î£¬£¬£¬£¬£¬£¬£¬ÆäÖÐCVE-2022-24521ÕýÔÚ±»Æð¾¢Ê¹Ó㬣¬£¬£¬£¬£¬£¬CVE-2022-26904ÒѾ­¹ûÕæÅû¶¡£¡£¡£¡£ ¡£¡£¡£?CVE-2022-26904£ºWindowsÓû§ÉèÖÃÎļþЧÀÍȨÏÞÌáÉýÎó²î¸ÃÎó²îÊÇWindowsUserProfileServiceÖеÄÍâµØÈ¨ÏÞÌáÉýÎó²î£¬£¬£¬£¬£¬£¬£¬CVSSÆÀ·ÖΪ7.0£¬£¬£¬£¬£¬£¬£¬ËùÐèȨÏÞµÍÇÒÎÞÐèÓû§½»»¥£¬£¬£¬£¬£¬£¬£¬µ«¹¥»÷ÖØÆ¯ºó¸ß£¨ÐèÒªÓ®µÃ¾ºÕùÌõ¼þ£©£¬£¬£¬£¬£¬£¬£¬ÏÖÔÚ´ËÎó²îÒѾ­¹ûÕæÅû¶£¬£¬£¬£¬£¬£¬£¬Î¢ÈíµÄ¿ÉʹÓÃÐÔ½«ÆäÆÀ¹ÀΪ¿ÉÄܱ»Ê¹Óᣡ£¡£¡£ ¡£¡£¡£?CVE-2022-24521£ºWindowsͨÓÃÈÕÖ¾ÎļþϵͳÇý¶¯³ÌÐòȨÏÞÌáÉýÎó²î¸ÃÎó²îµÄ¹¥»÷ÖØÆ¯ºóºÍËùÐèȨÏ޵ͣ¬£¬£¬£¬£¬£¬£¬ÎÞÐèÓû§½»»¥¼´¿É±»ÍâµØÊ¹Óᣡ£¡£¡£ ¡£¡£¡£Î¢ÈíÌåÏÖÒѼì²âµ½Õë¶Ô´ËÎó²îµÄÎó²îʹÓᣡ£¡£¡£ ¡£¡£¡£2£©±¾´ÎÐÞ¸´µÄ10¸öÑÏÖØÎó²î°üÀ¨£º?CVE-2022-26919£ºWindowsLDAPÔ¶³Ì´úÂëÖ´ÐÐÎó²îÔÚÓòÖÐͨ¹ýÉí·ÝÑéÖ¤µÄ±ê×¼Óû§Äܹ»Ê¹ÓôËÎó²îÔÚLDAPЧÀÍÆ÷ÉÏÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£ ¡£¡£¡£µ«ÒªÊ¹ÓôËÎó²î£¬£¬£¬£¬£¬£¬£¬ÐèÒªÐÞ¸ÄĬÈϵÄMaxReceiveBufferLDAPÉèÖᣡ£¡£¡£ ¡£¡£¡£?CVE-2022-23259£ºMicrosoftDynamics365(on-premises)Ô¶³Ì´úÂëÖ´ÐÐÎó²î¾­ÓÉÉí·ÝÑéÖ¤µÄÓû§¿ÉÒÔÔËÐÐÌØÖÆµÄÊÜÐÅÈνâ¾ö¼Æ»®°üÀ´Ö´ÐÐí§ÒâSQLÏÂÁî¡£¡£¡£¡£ ¡£¡£¡£¹¥»÷Õß¿ÉÒÔ´ÓÄÇÀïÉý¼¶²¢ÔÚÆäDynamics356Êý¾Ý¿âÖÐÒÔdb_ownerÉí·ÝÖ´ÐÐÏÂÁî¡£¡£¡£¡£ ¡£¡£¡£?CVE-2022-22008/CVE-2022-24537/CVE-2022-2325£ºWindowsHyper-VÔ¶³ÌÖ´ÐдúÂëÎó²î¿ÉÒÔÔÚHyper-VguestÉÏÔËÐÐÌØÖÆµÄÓ¦ÓóÌÐò£¬£¬£¬£¬£¬£¬£¬Õâ¿ÉÄܵ¼ÖÂÔÚHyper-VÖ÷»úϵͳִÐÐí§Òâ´úÂë¡£¡£¡£¡£ ¡£¡£¡£?CVE-2022-24491/CVE-2022-24497£ºWindowsNetworkFileSystemÔ¶³Ì´úÂëÖ´ÐÐÎó²î¹¥»÷Õß¿ÉÒÔ½«ÌØÖƵÄNFSЭÒéÍøÂçÐÂÎÅ·¢Ë͵½Ò×Êܹ¥»÷µÄWindows»úе£¬£¬£¬£¬£¬£¬£¬´Ó¶øÊµÏÖÔ¶³Ì´úÂëÖ´ÐС£¡£¡£¡£ ¡£¡£¡£×¢ÖØ£º´ËÎó²î½öÓ°ÏìÆôÓÃNFS½ÇÉ«µÄϵͳ¡£¡£¡£¡£ ¡£¡£¡£?CVE-2022-26809£ºRemoteProcedureCallRuntimeÔ¶³Ì´úÂëÖ´ÐÐÎó²î´ËÎó²îµÄCVSSv3ÆÀ·ÖΪ9.8¡£¡£¡£¡£ ¡£¡£¡£¿£¿£¿£¿£¿ÉÒÔͨ¹ýÏòRPCÖ÷»ú·¢ËÍÒ»¸öÌØÖÆµÄRPCŲÓ㬣¬£¬£¬£¬£¬£¬Õâ¿ÉÄܵ¼ÖÂÔÚЧÀÍÆ÷¶ËÒÔÓëRPCЧÀÍÏàͬµÄȨÏÞÔ¶³ÌÖ´ÐдúÂë¡£¡£¡£¡£ ¡£¡£¡£¿£¿£¿£¿£¿ÉÒÔͨ¹ýÔÚÆóÒµÍâΧ·À»ðǽÖÐ×èÖ¹TCP¶Ë¿Ú445ºÍ×ñÕÕMicrosoftÖ¸ÄÏÒÔ±£»£»£»£»£»£»¤SMBÁ÷Á¿À´»º½â´ËÎó²î¡£¡£¡£¡£ ¡£¡£¡£ÊÜÓ°ÏìµÄ²úÆ·¼°°æ±¾£ºWindows 7 for 32¡¢Windows Server 2016  (Server Core installation)¡¢Windows 11 for ARM64¡¢Windows Server, version20H2 (Server Core Installation)¡¢Windows 10 Version 20H2for ARM64¡¢Windows 10 Version 1909 for ARM64¡¢Windows 10 Version 1809 for x64¡¢Windows 10for 32¡¢Windows 10 Version 21H2 for x64¡¢Windows 10 Version 21H2 for ARM64¡¢Windows 10Version 21H2 for 32¡¢Windows 10 Version 1809 for 32¡¢Windows Server 2022 (Server Core installation)¡¢Windows Server 2022¡¢Windows 10 Version 21H1for 32¡¢Windows 10 Version 21H1 for ARM64¡¢Windows 10 Version 21H1 for x64¡¢WindowsServer 2012 R2 (Server Core installation)¡¢WindowsServer 2012 R2¡¢Windows Server 2012 (Server Coreinstallation)¡¢Windows Server 2012¡¢Windows Server 2008 R2 for x64¡¢WindowsServer 2008 R2 for x64¡¢Windows 10 Version 20H2 for 32¡¢Windows 10 Version 20H2 for x64¡¢WindowsServer 2008 for x64¡¢Windows Server 2016¡¢Windows 10 Version 1607 for x64¡¢Windows 10Version 1607 for 32¡¢Windows 10 for x64¡¢Windows 10 Version 1909 for x64¡¢Windows 10Version 1909 for 32¡¢Windows 10 Version 1809 for ARM64¡¢Windows Server 2008 for x64¡¢Windows Server2008 for 32¡¢Windows 8.1 for 32¡¢Windows7 for x64¡¢Windows Server 2008 for 32¡¢Windows RT 8.1¡¢Windows 8.1 for x64¡¢Windows 11 for x64¡¢Windows Server 2019 (Server Core installation)¡¢Windows Server 2019µÈ¡£¡£¡£¡£ ¡£¡£¡£?CVE-2022-24541£ºWindowsServerЧÀÍÔ¶³Ì´úÂëÖ´ÐÐÎó²î´ËÎó²îÒªÇóʹÓÃÊÜÓ°ÏìµÄWindows°æ±¾µÄÓû§»á¼û¶ñÒâЧÀÍÆ÷¡£¡£¡£¡£ ¡£¡£¡£¿£¿£¿£¿£¿ÉÒÔͨ¹ýÔÚÆóÒµÍâΧ·À»ðǽÖÐ×èÖ¹TCP¶Ë¿Ú445ºÍ×ñÕÕMicrosoftÖ¸ÄÏÒÔ±£»£»£»£»£»£»¤SMBÁ÷Á¿À´»º½â´ËÎó²î¡£¡£¡£¡£ ¡£¡£¡£?CVE-2022-24500£ºWindowsSMBÔ¶³Ì´úÂëÖ´ÐÐÎó²î´ËÎó²îÒªÇóʹÓÃÊÜÓ°ÏìµÄWindows°æ±¾µÄÓû§»á¼û¶ñÒâЧÀÍÆ÷¡£¡£¡£¡£ ¡£¡£¡£¿£¿£¿£¿£¿ÉÒÔͨ¹ýÔÚÆóÒµÍâΧ·À»ðǽÖÐ×èÖ¹TCP¶Ë¿Ú445ºÍ×ñÕÕMicrosoftÖ¸ÄÏÒÔ±£»£»£»£»£»£»¤SMBÁ÷Á¿À´»º½â´ËÎó²î¡£¡£¡£¡£ ¡£¡£¡£


±±Ú¤Êý¾ÝʵÑéÊÒ


±±Ú¤Êý¾ÝʵÑéÊÒ½¨ÉèÓÚ2022Äê3Ô£¬£¬£¬£¬£¬£¬£¬ÖÂÁ¦ÓÚÍøÂç¿Õ¼äÇ徲֪ʶ¹¤³ÌÑо¿ºÍϵͳ»¯½¨ÉèµÄרҵÍŶÓ£¬£¬£¬£¬£¬£¬£¬ÓɼøºÚµ£±£Íø¼¯ÍÅÌì¾µÎó²îÑо¿ÍŶӡ¢Ì©ºÏ֪ʶ¹¤³ÌÍŶӡ¢´óÊý¾ÝʵÑéÊÒ£¨BDlab£©³¡¾°»¯ÆÊÎöÍŶÓÁªºÏ×é³É¡£¡£¡£¡£ ¡£¡£¡£


±±Ú¤Êý¾ÝʵÑéÊÒʼÖÕ±ü³ÖÒÔÐèÇóΪµ¼Ïò¡¢ÖªÊ¶¸³ÄܲúÆ·µÄ½¹µãÀíÄ£¬£¬£¬£¬£¬£¬×¨×¢ÓÚÌá¹©ÍøÂç¿Õ¼äÇå¾²µÄ»ù´¡ÖªÊ¶Ñо¿ºÍ¿ª·¢£¬£¬£¬£¬£¬£¬£¬Öƶ©Á¬ÏµÍþвºÍÎó²îÇ鱨¡¢ÍøÂç¿Õ¼ä×ʲúºÍÔÆÇå¾²¼à²âÊý¾ÝµÈ×ÛºÏÇ鱨ÒÔ¼°Óû§ÏÖʵ³¡¾°µÄÇå¾²ÆÊÎö·À»¤Õ½ÂÔ£¬£¬£¬£¬£¬£¬£¬¹¹½¨×Ô¶¯»¯ÊÓ²ìºÍ´¦Öóͷ£ÏìÓ¦²½·¥£¬£¬£¬£¬£¬£¬£¬Ðγɳ¡¾°»¯¡¢½á¹¹»¯µÄ֪ʶ¹¤³Ìϵͳ£¬£¬£¬£¬£¬£¬£¬¶ÔÖÖÖÖÇå¾²²úÆ·¡¢Æ½Ì¨ºÍÇå¾²ÔËÓªÌṩ֪ʶ¸³ÄÜ¡£¡£¡£¡£ ¡£¡£¡£