ÐÅÏ¢Çå¾²Öܱ¨-2019ÄêµÚ8ÖÜ
Ðû²¼Ê±¼ä 2019-02-25±¾ÖÜÇå¾²Ì¬ÊÆ×ÛÊö
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊǺڿͰµÍø³öÊÛµÚÈýÅúÓû§Êý¾Ý£¬£¬£¬£¬£¬£¬Éæ¼°8¸öÍøÕ¾Ô¼9300ÍòÓû§£»£»£»£»£»£»£»Wendy'sÔÞ³ÉΪÊý¾Ýй¶ÊÂÎñÖ§¸¶5000ÍòÃÀԪϢÕù½ð£»£»£»£»£»£»£»IxigoÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬Ô¼1800ÍòÓû§Êý¾Ýй¶£»£»£»£»£»£»£»WinRAR´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬£¬£¬Áè¼Ý5ÒÚÓû§Êܵ½Ó°Ï죻£»£»£»£»£»£»Ó¡¶ÈIndane¹«Ë¾Ð¹Â¶Ô¼679ÍòAadhaar¿Í»§µÄСÎÒ˽¼ÒÐÅÏ¢¡£¡£¡£¡£¡£
ƾ֤ÒÔÉÏ×ÛÊö£¬£¬£¬£¬£¬£¬±¾ÖÜÇå¾²ÍþвΪÖС£¡£¡£¡£¡£
Ö÷ÒªÇå¾²Îó²îÁбí
DrupalÔÚͨ¹ý·Ç±í¸ñ£¨non-form resources£©ÀàÐÍÊäÈëʱδÄÜ׼ȷ¹ýÂËijЩ×ֶΣ¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬¿ÉÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£
https://www.drupal.org/sa-core-2019-003
2. WinRAR ACEÎļþí§Òâ´úÂëÖ´ÐÐÎó²î
WinRAR UNACEV2.dll¿â´¦Öóͷ£.aceÎļþ±£´æÄ¿Â¼´©Ô½ÎÊÌ⣬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÎļþÇëÇ󣬣¬£¬£¬£¬£¬ÓÕʹÓû§ÆÊÎö£¬£¬£¬£¬£¬£¬¿ÉÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£
http://win-rar.com/
3. Intel Data Center Manager SDK CVE-2019-0107ȨÏÞÌáÉýÎó²î
Intel Data Center Manager SDK×°ÖóÌÐòÓû§ÌáÐÑʵÏÖ±£´æÇå¾²Îó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÍâµØ¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬¿ÉÌáÉýȨÏÞ¡£¡£¡£¡£¡£
https://www.intel.com/content/www/us/en/security-center/advisory/INTEL-SA-00215.html
4. Adobe Acrobat/Reader CVE-2019-7018í§Òâ´úÂëÖ´ÐÐÎó²î
Adobe Acrobat/Reader±£´æÊͷźóʹÓÃÎó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÎļþÇëÇ󣬣¬£¬£¬£¬£¬ÓÕʹÓû§ÆÊÎö£¬£¬£¬£¬£¬£¬¿ÉʹӦÓóÌÐò±ÀÀ£»£»£»£»£»£»£»òÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£
https://helpx.adobe.com/security/products/acrobat/apsb19-07.html
5. Huawei Mate20 CVE-2019-5296»º³åÇøÒç³öÎó²î
Huawei Mate20±£´æÔ½½ç¶ÁÎó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬¿Éʹװ±¸Òì³£¡£¡£¡£¡£¡£
https://www.huawei.com/cn/psirt/security-advisories/huawei-sa-20190220-01-phone-cn
Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö

GnosticplayersÔÚ°µÍøÊг¡ÉÏÐû²¼Á˵ÚÈýÅú´ýÊÛµÄÓû§ÕË»§Êý¾Ý£¬£¬£¬£¬£¬£¬Éæ¼°µ½8¸öÍøÕ¾µÄ9276ÍòÓû§¡£¡£¡£¡£¡£Õâ8¸öÍøÕ¾°üÀ¨£ºLegendas.tv£¨386Íò£©¡¢Jobandtalent£¨1100Íò£©¡¢Onebip£¨260Íò£©¡¢StoryBird£¨400Íò£©¡¢StreetEasy£¨100Íò£©¡¢GfyCat£¨800Íò£©¡¢ClassPass£¨150Íò£©ºÍPizap£¨6080Íò£©¡£¡£¡£¡£¡£ÕâÅúÓû§Êý¾ÝµÄ×ܼÛǮΪ2.6249¸ö±ÈÌØ±Ò£¬£¬£¬£¬£¬£¬¹²Ô¼9400ÃÀÔª¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/hacker-puts-up-for-sale-third-round-of-hacked-databases-on-the-dark-web/
2¡¢Wendy'sÔÞ³ÉΪÊý¾Ýй¶ÊÂÎñÖ§¸¶5000ÍòÃÀԪϢÕù½ð
ÔÎÄÁ´½Ó£º
https://www.databreaches.net/update-wendys-settles-financial-firms-lawsuit-over-data-breach-for-50-mln/
3¡¢IxigoÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬Ô¼1800ÍòÓû§Êý¾Ýй¶
ÔÎÄÁ´½Ó£º
https://timesofindia.indiatimes.com/business/india-business/emails-hashed-passwords-of-18m-ixigo-users-stolen/articleshow/68016866.cms
4¡¢WinRAR´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬£¬£¬Áè¼Ý5ÒÚÓû§Êܵ½Ó°Ïì
ÔÎÄÁ´½Ó£º
https://research.checkpoint.com/extracting-code-execution-from-winrar/
5¡¢Ó¡¶ÈIndane¹«Ë¾Ð¹Â¶Ô¼679ÍòAadhaar¿Í»§µÄСÎÒ˽¼ÒÐÅÏ¢
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2019/02/indane-aadhaar-leak.html
ÉùÃ÷£º±¾×ÊѶÓɼøºÚµ£±£ÍøÎ¬ËûÃüÇ徲С×é·ÒëºÍÕûÀí