ÐÅÏ¢Çå¾²Öܱ¨-2020ÄêµÚ12ÖÜ

Ðû²¼Ê±¼ä 2020-03-24

> ±¾ÖÜÇå¾²Ì¬ÊÆ×ÛÊö


2020Äê03ÔÂ16ÈÕÖÁ22ÈÕ¹²ÊÕ¼Çå¾²Îó²î77¸ö£¬£¬£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇInsulet Omnipod Insulin Management SystemδÊÚȨ»á¼ûÎó²î; Google Chrome WebGL CVE-2020-6422ÄÚ´æ¹ýʧÒýÓôúÂëÖ´ÐÐÎó²î£»£»£»£»£»Foxit Studio Photo TIF¶ÑÒç³ö´úÂëÖ´ÐÐÎó²î£»£»£»£»£»Docker Desktopí§ÒâÎļþдÈëÎó²î£»£»£»£»£»Adobe ColdFusionÔ¶³ÌÎļþ°üÀ¨Îó²î¡£¡£¡£¡£¡£¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊÇÇå¾²³§ÉÌÐû²¼Turla APT»ù´¡ÉèÊ©µÄ¸ú×Ù±¨¸æ£»£»£»£»£»2019Ä꿪Դ´úÂëÎó²îÊýÄ¿Ê×´ÎÁè¼Ý6000¸ö£¬£¬£¬£¬£¬ÔöÌí½ü50£¥£»£»£»£»£»Intel CPUÒ×ÊÜÐÂSnoop¹¥»÷£¬£¬£¬£¬£¬¿Éй¶»º´æÊý¾Ý£»£»£»£»£»½ðÈÚ¹«Ë¾AdvantageºÍArgusÔÆÊý¾Ý¿âй¶425GBÊý¾Ý£»£»£»£»£»µÂÍâÑóÂôƽ̨Lieferando.deÔâDDoS¹¥»÷µ¼ÖÂЧÀÍ̱»¾¡£¡£¡£¡£¡£¡£


ƾ֤ÒÔÉÏ×ÛÊö£¬£¬£¬£¬£¬±¾ÖÜÇå¾²ÍþвΪÖС£¡£¡£¡£¡£¡£


>Ö÷ÒªÇå¾²Îó²îÁбí


1. Insulet Omnipod Insulin Management SystemδÊÚȨ»á¼ûÎó²î


Insulet Omnipod Insulin Management SystemµÄwireless RFͨѶЭÒéȱÉÙ׼ȷµÄÑéÖ¤ÊÚȨÎó²î£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬¿ÉÈÆ¹ýÇå¾²ÏÞÖÆ£¬£¬£¬£¬£¬Ö´ÐжñÒâ²Ù×÷¡£¡£¡£¡£¡£¡£

https://www.us-cert.gov/ics/advisories/icsma-20-079-01


2. Google Chrome WebGL CVE-2020-6422ÄÚ´æ¹ýʧÒýÓôúÂëÖ´ÐÐÎó²î


Google Chrome WebGL±£´æÊͷźóʹÓÃÎó²î£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²î¹¹½¨¶ñÒâWEBÒ³£¬£¬£¬£¬£¬ÓÕʹÓû§ÆÊÎö£¬£¬£¬£¬£¬¿ÉʹӦÓóÌÐò±ÀÀ£»£»£»£»£»òÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£

https://chromereleases.googleblog.com/2020/03/stable-channel-update-for-desktop_18.html


3. Foxit Studio Photo TIF¶ÑÒç³ö´úÂëÖ´ÐÐÎó²î


Foxit Studio Photo TIFÆÊÎö±£´æ»º³åÇøÒç³öÎó²î£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÎļþÇëÇ󣬣¬£¬£¬£¬ÓÕʹÓû§ÆÊÎö£¬£¬£¬£¬£¬¿ÉʹӦÓóÌÐò±ÀÀ£»£»£»£»£»òÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£

https://www.zerodayinitiative.com/advisories/ZDI-20-311/


4. Docker Desktopí§ÒâÎļþдÈëÎó²î

Docker Desktop±£´æÇå¾²Îó²î£¬£¬£¬£¬£¬ÔÊÐíÍâµØ¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬ÁýÕÖí§ÒâµÄDACLȨÏÞ²¢Ð´Èëí§ÒâÎļþ¡£¡£¡£¡£¡£¡£

https://github.com/active-labs/Advisories/blob/master/2020/ACTIVE-2020-002.md


5. Adobe ColdFusionÔ¶³ÌÎļþ°üÀ¨Îó²î


Adobe ColdFusion±£´æÎļþ°üÀ¨Îó²î£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬¿É»ñÈ¡Ãô¸ÐÐÅÏ¢»òÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£

https://helpx.adobe.com/security/products/coldfusion/apsb20-16.html


> Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö


1¡¢Çå¾²³§ÉÌÐû²¼Turla APT»ù´¡ÉèÊ©µÄ¸ú×Ù±¨¸æ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


Turla APTÊÇÒ»¸ö³ÉÊì¡¢ÖØ´óÇÒ¾ßÓÐÕ½ÂÔÖØµãµÄÍøÂçÌØ¹¤×éÖ¯£¬£¬£¬£¬£¬¸Ã×éÖ¯Õë¶ÔÈ«Çò¿ÆÑС¢Íâ½»ºÍ¾üÊ»ú¹¹µÄ¹¥»÷ÒÑÓÐÊ®¶àÄêµÄÀúÊ·£¬£¬£¬£¬£¬²¢ÇÒÒ»Ö±ÔÚÕë¶Ô±±´óÎ÷ÑóÌõÔ¼×éÖ¯£¨NATO£©ºÍ¶ÀÁªÌ壨CIS£©¹ú¼Ò¡£¡£¡£¡£¡£¡£TurlaÒ»Ö±¿ª·¢×Ô¼º¶ÀÍ̵ġ¢ÏȽøµÄ¶ñÒâÈí¼þºÍ¹¤¾ß£¬£¬£¬£¬£¬²¢½ÓÄÉÐµĹ¥»÷ºÍ»ìÏýÒªÁ죬£¬£¬£¬£¬Insikt GroupÆÀ¹ÀÒÔΪTurlaÔÚδÀ´¼¸ÄêÄÚÈÔ½«ÊÇÒ»¸ö»îÔ¾µÄ¡¢ÏȽøµÄÍþв¡£¡£¡£¡£¡£¡£Recorded FutureµÄÐÂÑо¿ÌṩÁË×Ô¶¯¸ú×ÙºÍʶ±ðTurla»ù´¡¼Ü¹¹µÄÒªÁ죬£¬£¬£¬£¬ÖØµã¹Ø×¢¼¸ÖÖÓëTurlaÓйصĶñÒâÈí¼þÀàÐÍ£¬£¬£¬£¬£¬°üÀ¨MosquitoºóÃźÍÐ®ÖÆµÄÒÁÀÊTwoFace ASPX Web Shell¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.recordedfuture.com/turla-apt-infrastructure/


2¡¢2019Ä꿪Դ´úÂëÎó²îÊýÄ¿Ê×´ÎÁè¼Ý6000¸ö£¬£¬£¬£¬£¬ÔöÌí½ü50£¥


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ƾ֤¿ªÔ´Çå¾²ÓëºÏ¹æ¹«Ë¾WhiteSourceµÄÒ»·Ý±¨¸æ£¬£¬£¬£¬£¬È¥Ä꿪Դ´úÂëÖеÄÎó²î¼¤Ôö¡£¡£¡£¡£¡£¡£¸Ã±¨¸æ³Æ£¬£¬£¬£¬£¬2017ÄêºÍ2018Ä꿪ԴÎó²îµÄÊýÄ¿ÎȹÌÔÚ4000¶à¸ö£¬£¬£¬£¬£¬Óë2017Äê֮ǰ´ÓÎ´Í»ÆÆ2000¸öµÄÊý×ÖÏà±È£¬£¬£¬£¬£¬Îó²îÊýÄ¿ÔöÌíÁËÒ»±¶ÒÔÉÏ¡£¡£¡£¡£¡£¡£È»ºóÔÚ2019Ä꣬£¬£¬£¬£¬¿ªÔ´Îó²îÊýÄ¿ÔÙ´Îì­Éý£¬£¬£¬£¬£¬Ê×´ÎÁè¼Ý6000¸ö£¬£¬£¬£¬£¬Õâ´ú±íÁ˽ü50£¥µÄÔöÌí¡£¡£¡£¡£¡£¡£µ½ÏÖÔÚΪֹ¿ªÔ´Îó²îÖÐ×î³£¼ûµÄÀàÐÍÊÇ¿çÕ¾µã¾ç±¾£¨XSS£©£¬£¬£¬£¬£¬¸ÃÀàÐÍÏÕЩռËùÓÐÎó²îµÄËÄ·ÖÖ®Ò»£¬£¬£¬£¬£¬Æä´ÎÊÇÊäÈëÑéÖ¤²»×¼È·¡¢»º³åÇø¹ýʧ¡¢Ô½½ç¶ÁÈ¡ºÍÐÅϢй¶¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://nakedsecurity.sophos.com/2020/03/16/open-source-bugs-have-soared-in-the-past-year/


3¡¢Intel CPUÒ×ÊÜÐÂSnoop¹¥»÷£¬£¬£¬£¬£¬¿Éй¶»º´æÊý¾Ý


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


Intel CPUÈÝÒ×Êܵ½Ðµġ°Snoop¡±¹¥»÷Ó°Ï죬£¬£¬£¬£¬¸Ã¹¥»÷¿ÉÄÜ»á×ß©CPUÄÚ²¿´æ´¢Æ÷£¨»º´æ£©ÖеÄÊý¾Ý¡£¡£¡£¡£¡£¡£IntelÌåÏÖ2018Äê8ÔÂÕë¶ÔForeshadow£¨L1TF£©Îó²îÐû²¼µÄ²¹¶¡Ò²ÊÊÓÃÓÚ´Ëй¥»÷¡£¡£¡£¡£¡£¡£AWSÈí¼þ¹¤³ÌʦPawel Wieczorkiewicz·¢Ã÷²¢±¨¸æÁ˴˹¥»÷ÒªÁ죬£¬£¬£¬£¬¸Ã¹¥»÷±»ÐÎòΪ¡°Snoop¸¨ÖúL1Êý¾ÝÊÕÂÞ¡±£¬£¬£¬£¬£¬»òÖ»ÊÇ¡°Snoop¡±£¨CVE-2020-0550£©¡£¡£¡£¡£¡£¡£ÔÚÊÖÒÕ²ãÃæÉÏ£¬£¬£¬£¬£¬ÐµÄSnoop¹¥»÷ʹÓÃÁ˶༶»º´æ¡¢»º´æÒ»ÖÂÐÔºÍ×ÜÏß¼àÌýµÈCPU»úÖÆ¡£¡£¡£¡£¡£¡£IntelÁгöÁËÒ×Êܹ¥»÷µÄCPUÁбí£¬£¬£¬£¬£¬¸ÃÁбíÖаüÀ¨CoreºÍXeon´¦Öóͷ£Æ÷µÈ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/intel-cpus-vulnerable-to-new-snoop-attack/


4¡¢½ðÈÚ¹«Ë¾AdvantageºÍArgusÔÆÊý¾Ý¿âй¶425GBÊý¾Ý


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


vpnMentorÑо¿Ö°Ô±·¢Ã÷Ò»¸öÊôÓÚ½ðÈÚ¹«Ë¾Advantage Capital FundingºÍArgus Capital FundingµÄ¿É¹ûÕæ»á¼ûµÄÊý¾Ý¿âй¶ÁË425GBÃô¸ÐÎļþ¡£¡£¡£¡£¡£¡£¸ÃÊý¾Ý¿âÓëÕâÁ½¸ö¹«Ë¾¿ª·¢µÄMCA WizardÓ¦ÓÃÓйØ£¬£¬£¬£¬£¬¸ÃÓ¦ÓÃÏÖÔÚÒѲ»ÔÙÔÚ¹Ù·½Ó¦ÓÃÊÐËÁÖÐÌṩ¡£¡£¡£¡£¡£¡£vpnMentorÊ×´ÎÔÚ2019Äê12Ô·¢Ã÷Á˸ÃÊý¾Ý¿â£¬£¬£¬£¬£¬Êý¾Ý¿âÖаüÀ¨À´×ÔAdvantageºÍArgusµÄ˽ÈËÖ´·¨ºÍ²ÆÎñÎļþ£¬£¬£¬£¬£¬°üÀ¨ÐÅÓñ¨¸æ¡¢ÒøÐжÔÕʵ¥¡¢ÌõÔ¼¡¢Ö´·¨Îļþ¡¢¼ÝʻִÕÕ¸±±¾¡¢¹ºÖö©µ¥ºÍÊÕÌõ¡¢ÄÉ˰É걨±í¡¢Éç»á°ü¹ÜÐÅÏ¢ÒÔ¼°ÉúÒⱨ¸æ¡£¡£¡£¡£¡£¡£ÕâЩ¼Í¼²»µ«ÓëAdvantageºÍArgusÓйØ£¬£¬£¬£¬£¬»¹Ó°ÏìÁËËûÃǵĿͻ§¡¢³Ð°üÉÌ¡¢Ô±¹¤ºÍÏàÖúͬ°é¡£¡£¡£¡£¡£¡£vpnMentorʵÑéÓëAdvantageºÍArgusÁªÏµ£¬£¬£¬£¬£¬µ«²¢Î´»ñµÃ»Ø¸´£¬£¬£¬£¬£¬Ñо¿Ö°Ô±×îÖÕÖ±½ÓÓëAWSÁªÏµ£¬£¬£¬£¬£¬¸ÃÊý¾Ý¿âÓÚ2020Äê1ÔÂ9ÈչرÕ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/financial-apps-leak-425gb-in-company-data-through-open-database/


5¡¢µÂÍâÑóÂôƽ̨Lieferando.deÔâDDoS¹¥»÷µ¼ÖÂЧÀÍ̱»¾


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


µÂÍâÑóÂôƽ̨Lieferando.deÔâDDoS¹¥»÷µ¼ÖÂЧÀÍ̱»¾¡£¡£¡£¡£¡£¡£¸Ãƽ̨¹ØÁªÁË1.5Íò¶à¼ÒµÂ¹ú²Í¹Ý£¬£¬£¬£¬£¬ÓÉÓÚCOVID-19ʱ´úµÂ¹ú¶Ô²ÍÌü¾ÙÐÐÁËÑÏ¿áµÄÏÞÖÆ£¬£¬£¬£¬£¬ÀýÈçÏÞÖÆ¿ÍÈ˵ÄÈËÊý¡¢Ôö´ó×À×ÓÖ®¼äµÄ¾àÀë¡¢ÔÚÏÂÖç6µãÖÁÔçÉÏ6µãÖ®¼ä±ØÐè¹ØÃŵÈ£¬£¬£¬£¬£¬Òò´ËÕâ´ÎDDoS¹¥»÷Ó°ÏìÁË´ó×ÚÑ¡ÔñʹÓÃÍâÂô¶©²ÍµÄÓû§¡£¡£¡£¡£¡£¡£Ò»Ð©¿Í»§Ëß¿à³ÆÖ»¹Ü¸Ãƽ̨µÄϵͳÒò¹¥»÷¶øÌ±»¾£¬£¬£¬£¬£¬µ«¸ÃЧÀÍÈÔ½ÓÊÜж©µ¥£¬£¬£¬£¬£¬Ö»ÊÇûÓÐ¶ÔÆä¾ÙÐд¦Öóͷ£¡£¡£¡£¡£¡£¡£¸Ãƽ̨³Æ½«ÍË»¹ÒÑÖ§¸¶ÇÒδ½»¸¶µÄ¶©µ¥£¬£¬£¬£¬£¬µ«¿Í»§±ØÐèͨ¹ýµç×ÓÓʼþÓëËûÃÇÁªÏµ¡£¡£¡£¡£¡£¡£¾Ý³Æ¹¥»÷ÕßÒªÇó2±ÈÌØ±Ò£¨Ô¼ºÏ1.1ÍòÃÀÔª£©µÄÊê½ðÀ´×èÖ¹¹¥»÷¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/food-delivery-service-in-germany-under-ddos-attack/