Ó¦¶Ô΢ÈíÔ¶³Ì×ÀÃæ·þÎñ¸ßΣÎó²î¡°BlueKeep¡±£¨CVE-2019-0708£©×îÈ«½â¾ö¼Æ»®

Ðû²¼Ê±¼ä 2019-05-22
2019Äê5ÔÂ14ÈÕ £¬Î¢ÈíÐû²¼²¹¶¡ÐÞ¸´ÁËÒ»¸öÔ¶³Ì×ÀÃæ·þÎñ¸ßΣÎó²î£¨CVE-2019-0708£©£¨ÓÖÃû£ºBlueKeep£©¡£¸ÃÎó²îÓ°Ïì°üÀ¨ Windows XP £¬Windows7 £¬Windows2003 £¬Windows2008 £¬Windows2008R2 µÈÔÚÄڵij£ÓÃWindows×ÀÃæÒÔ¼°·þÎñÆ÷²Ù×÷ϵͳ¡£µ±Î´¾­Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßʹÓÃÔ¶³Ì×ÀÃæÅþÁ¬µ½Ä¿µÄϵͳ²¢·¢ËÍÌØÖÆÇëÇóʱ £¬¿ÉÒÔÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£´ËÎó²îÊÇÔ¤Éí·ÝÑéÖ¤ £¬ÎÞÐèÓû§½»»¥¡£
 
΢Èí½«´ËÎó²î½ç˵ΪÑÏÖØ¼¶±ð £¬Ç¿ÁÒ½¨Òé¿í´óÓû§ÊµÊ±¸üР£¬ÒÔÃâÔâÊܹ¥»÷¡£ÏÖÔÚ £¬»¥ÁªÍøÉÏÒѾ­·ºÆðÁËһЩƾ֤Îó²î²¹¶¡ÐγɵÄÉв»¿ÉÊìµÄPOC´úÂë¡£Ëæ×ÅÎó²îµÄÉîÈëÑо¿ £¬Ïà¶Ô³ÉÊì²¢ÇÒ¿ÉʹÓõÄPOC»òºÜ¿ì·ºÆð £¬Ò»µ©±»ºÚ¿Í´ó¹æÄ£Ê¹Óà £¬½«»áÔì³ÉÀàËÆ2017Äê¡°WannaCry¡±ÀÕË÷È䳿µÄÑÏÖØÐ§¹û¡£
 
×ðÁú¿­Ê±ÒѾ­Ðû²¼×èÖ¹ÏÖÔÚ×îÈ«µÄ²úÆ·¼¶Ó¦¶Ô¼Æ»® £¬ÒÔÓ¦¶Ô¿ÉÄܵ½À´µÄ´ó¹æÄ£¹¥»÷¡£



01¡¢²úÆ·½â¾ö¼Æ»®


1¡¢Îó²îɨÃè

×ðÁú¿­Ê±Ì쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳV6.0ÓÚ2019Äê5ÔÂ14ÈÕ½ôÆÈÐû²¼Õë¶Ô¸ÃÎó²îµÄÉý¼¶°ü £¬Ö§³Ö¶Ô¸ÃÎó²î¾ÙÐмì²â £¬Óû§Éý¼¶Ì쾵©ɨ²úÆ·Îó²î¿âºó¼´¿É¶Ô¸ÃÎó²î¾ÙÐÐɨÃè¡£6070°æ±¾Éý¼¶°üΪ607000220 £¬Éý¼¶°üÏÂÔØµØµã£º
/article/type/1/146.html
 
ÇëʹÓÃÌ쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳV6.0²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾 £¬ÊµÊ±¶Ô¸ÃÎó²î¾ÙÐмì²â £¬ÒԱ㾡¿ì½ÓÄÉÌá·À²½·¥¡£
 
×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!

 
2¡¢ÍøÂç½çÏß¼ì²â

ÒѰ²ÅÅ×ðÁú¿­Ê±IDS¡¢IPS¡¢WAF¡¢APT²úÆ·µÄ¿Í»§ÇëÉý¼¶µ½×îÐÂÊÂÎñ¿â £¬²¢È·ÈÏÈçÏÂÊÂÎñ¹æÔòÒѾ­Ï·¢²¢Ó¦Óà £¬¼´¿ÉÓÐÓüì²â»ò×è¶Ï¹¥»÷£º
TCP_΢ÈíÔ¶³Ì×ÀÃæ·þÎñÔ¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2019-0708]


3¡¢Ó¦¼±´¦Öóͷ£
 
×ðÁú¿­Ê±¡°Ìì¾µÍøÂçÇå¾²ÊÂÎñÓ¦¼±´¦Öóͷ£¹¤¾ßÏ䡱²úÆ· £¬Õë¶Ô2019Äê5ÔÂ14ÈÕÅû¶µÄ΢ÈíÔ¶³Ì×ÀÃæ·þÎñÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2019-0708 £¬µÚһʱ¼äÓ¦¼±ÏìÓ¦¸ÃÎó²îµÄ´¦Öóͷ£Ô¤°¸ £¬²¢Ðû²¼×îеIJúÆ·Éý¼¶°ü°æ±¾Îª600070080 £¬Îª¿Í»§´øÀ´µÚÒ»ÊÖµÄÓ¦¼±´¦Öóͷ£¼Æ»®¡£

ÇëʹÓá°Ìì¾µÍøÂçÇå¾²ÊÂÎñÓ¦¼±´¦Öóͷ£¹¤¾ßÏ䡱²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾 £¬ÊµÊ±¶Ô¸ÃÎó²î¾ÙÐÐÓ¦¼±´¦Öóͷ£ £¬ÓÐÓÃÌá·À¸ÃÎó²î´øÀ´µÄÇ徲Σº¦ºÍ¾­¼ÃËðʧ¡£
 
×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!
 

02¡¢¹Ù·½½â¾ö¼Æ»®


1¡¢Î¢ÈíÒѾ­Ðû²¼Õë¶Ô¸ÃÎó²îµÄ²¹¶¡ £¬ÇëʹÓÃÉÏÊöÊÜÓ°ÏìµÄ²Ù×÷ϵͳÓû§ÊµÊ±¸üС£

¡ôÕë¶ÔWindows XP £¬Windows2003ϵͳµÄ²¹¶¡ÏÂÔØÒ³Ãæ£º
https://support.microsoft.com/en-us/help/4500705/customer-guidance-for-cve-2019-0708

¡ôÕë¶ÔWindows 7 £¬Windows Server 2008 R2 £¬Windows Server 2008ϵͳµÄ²¹¶¡ÏÂÔØÒ³Ãæ£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0708

2¡¢¹ØÓÚÎÞ·¨ÊµÊ±¸üв¹¶¡µÄÓû§ £¬ÇëÖ»¹Ü¹Ø±ÕÔ¶³Ì×ÀÃæ·þÎñ £¬×èÖ¹Ö÷»ú±»Ö±½Ó̻¶ÔÚ»¥ÁªÍøÉÏ¡£

×ðÁú¿­Ê±¡¤(ÖйúÇø)ÈËÉú¾ÍÊDz«!