Flash 0dayÎó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2018-06-08

Îó²î±àºÅ


CVE-2018-5002


Îó²î¼¶±ð


ÑÏÖØ  CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°Ïì¹æÄ£


¸ÃÎó²îÏÖÔÚÓ°ÏìAdobe Flash Player 29.0.0.171¼°ÆäÒÔϰ汾¡£


Îó²îÐÎò


¿ËÈÕ£¬Çå¾²Ñо¿Ö°Ô±²¶»ñÁËеÄÒ»ÆðʹÓÃFlash ÁãÈÕÎó²î(CVE-2018-5002)µÄÔÚÒ°¹¥»÷£¬ºÚ¿ÍÈ«ÐĽṹÁËÒ»¸ö´ÓÔ¶³Ì¼ÓÔØFlashÎó²îµÄOfficeÎĵµ£¬·­¿ªÎĵµºóËùÓеÄÎó²îʹÓôúÂëºÍ¶ñÒâºÉÔØ¾ùͨ¹ýÔ¶³ÌµÄ·þÎñÆ÷Ï·¢£¬´Ë´Î¹¥»÷Ö÷ÒªÕë¶ÔÖж«µØÇø¡£¸ÃÎó²îÏÖÔÚÓ°ÏìAdobe Flash Player 29.0.0.171¼°ÆäÒÔϰ汾¡£


̫ͨ¹ýÎö¿ÉÒÔ·¢Ã÷´Ë´Î¹¥»÷²»¼Æ±¾Ç®Ê¹ÓÃÁËÁãÈÕÎó²î£¬¹¥»÷ÕßÔÚÔÆ¶Ë¿ª·¢Á˾«ÇɵĹ¥»÷¼Æ»®£¬²¢»¨ÁËÖÁÉÙÈý¸öÔÂÒÔÉϵÄʱ¼ä×¼±¸¹¥»÷£¬Õë¶Ô¹¥»÷Ä¿µÄ¶¨ÖÆÁËÏêϸµÄ´¹ÂÚ¹¥»÷ÄÚÈÝ£¬ÊÇÒ»Æðµä·¶µÄAPT¹¥»÷¡£


CVE-2018-5002ÊÇÓÉÓÚFlashδÄÜ׼ȷ´¦Öóͷ£°üÀ¨ÌØÊâ×Ö½ÚÂëÐòÁеÄSWFÎļþʱ±¬·¢µÄÕ»Ô½½ç¶ÁдÎó²î¡£¸ÃÎó²î֮ͬǰµÄCVE-2017-11292ÀàËÆ£¬¶¼ÐèÒªÐÞ¸ÄSWFÎļþµÄ×Ö½ÚÂëÀ´´¥·¢Îó²î¡£Í¬Ê±¸ÃÎó²îµÄʹÓÃÖ»ÐèÒª¼òÆÓµÄÄÚ´æ½á¹¹£¬²»ÐèÒªÖØ´óµÄ¶ÑÅ磬һ¸öÑù±¾Í¬Ê±ÔÚ32λºÍ64λϵͳÖÐÎȹÌÔËÐС£


¼øÓÚAdobe Flash PlayerÏÕЩװÖÃÔÚÿһ̨µçÄÔÉÏ£¬ÇÒÓдó×ÚÓû§²»»áʵʱÐÞ²¹Çå¾²Îó²î£¬µ±¸ÃÎó²îµÄʹÓÃÒªÁì±»²¡¶¾Ä¾ÂíÐþÉ«¹¤ÒµÕÆÎÕʱ£¬½«»á´øÀ´´óÃæ»ýµÄÍøÒ³¹ÒÂíÍþв¡£


½â¾ö²½·¥


Adobe¹Ù·½ÓÚ6ÔÂ7ÈÕÏÂÖçÐû²¼Ç徲ͨ¸æ£¨Í¨¸æID£ºAPSB18-19£©£¬Adobe Flash PlayerµÄ°æ±¾ÒѸüе½30.0.0.113£¬Ïêϸ¿É²Î¿¼Adobe ¹Ù·½Ç徲ͨ¸æ£ºhttps://helpx.adobe.com/security/products/flash-player/apsb18-19.html¡£

½¨ÒéÓû§ÊµÊ±Éý¼¶Adobe Flash Playerµ½×îа汾£¨30.0.0.113£©ÒÔ·ÀÓù¿ÉÄܵÄÎó²î¹¥»÷Íþв£¬ÏÂÔØµØµã£º

https://get.adobe.com/cn/flashplayer/¡£

 

²Î¿¼×ÊÁÏ


https://helpx.adobe.com/security/products/flash-player/apsb18-19.html