[¸ßΣÎó²î¾¯±¨] ˼¿Æ¸ßΣÎó²î±»ÓÃÀ´¹¥»÷Òªº¦»ù´¡ÉèÊ©£¬£¬£¬£¬ÎÒ¹úÒÑÓлú¹¹Êܵ½¹¥»÷

Ðû²¼Ê±¼ä 2018-04-08

2018Äê3ÔÂ28ÈÕ£¬£¬£¬£¬Ë¼¿ÆÐû²¼Á˸ßΣÎó²îÔ¤¾¯³ÆË¼¿ÆIOS¡¢IOS XEºÍIOS XRÈí¼þÖб£´æ¶à¸öÎó²î¡£¡£¡£¡£¡£¡£ÆäÖаüÀ¨2¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²îCVE-2018-0171¡¢CVE-2018-0151¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉʹÓÃÎó²î¾ÙÐÐδÊÚȨ»á¼û¡¢ÌáȨ¡¢Ö´ÐÐí§Òâ´úÂë»òµ¼Ö¾ܾøÐ§ÀÍ¡£¡£¡£¡£¡£¡£



Îó²îÐÎò


Cisco Smart InstallÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2018-0171£©Î£º¦Æ·¼¶£º³¬Î£


Cisco IOS¡¢IOS XEÈí¼þSmart Install¿Í»§¶ËÖб£´æ»º³åÇø¿ÍÕ»Òç³öÎó²î£¨CVE-2018-0171£©£¬£¬£¬£¬¸ÃÎó²îÊÇÓÉÓÚ¶Ô·Ö×éÊý¾ÝÑéÖ¤²»µ±Ôì³ÉµÄ¡£¡£¡£¡£¡£¡£Î´¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õߣ¬£¬£¬£¬¿ÉÒÔͨ¹ý½á¹¹¶ñÒâSmall InstallÐÂÎŰü£¬£¬£¬£¬ÏòÊÜÓ°Ïì×°±¸µÄTCP 4786¶Ë¿Ú·¢Ë͸ÃÊý¾Ý°ü£¬£¬£¬£¬ÖØÔØÄ¿µÄ×°±¸£¬£¬£¬£¬Ôì³É×°±¸¾Ü¾øÐ§ÀÍ£¨DoS£©»òÔÊÐíÔ¶³Ì´úÂëÖ´ÐС£¡£¡£¡£¡£¡£


ÓÉÓÚ4786¶Ë¿ÚĬÈÏ¿ªÆô£¬£¬£¬£¬ÇÒ¸ÃÎó²îpocÒѾ­±»¹ûÕæ£¬£¬£¬£¬Îó²îΣº¦Ë®Æ½¼«¸ß¡£¡£¡£¡£¡£¡£


¸ÃÎó²î±£´æÓÚÔËÐÐÁËCisco IOS/IOS EXÊÜÓ°Ïì°æ±¾Èí¼þ£¬£¬£¬£¬ÇÒΪSmart Install ClientģʽµÄ×°±¸¡£¡£¡£¡£¡£¡£Î´¿ªÆôCisco Smart Install£¬£¬£¬£¬»ò±»ÉèÖÃΪSmart Install DirectorģʽµÄ×°±¸²»ÔÚÓ°ÏìÖ®ÁС£¡£¡£¡£¡£¡£


Cisco QoSÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2018-0151£© Σº¦Æ·¼¶£º³¬Î£


¸ÃÎó²îÊÇÓÉÓÚÊÜÓ°Ïì×°±¸¶ÔµÖ´ïÆäUDP 18999¶Ë¿ÚµÄÊý¾Ý°üÖÐijЩֵµÄ½çÏß¼ì²é²»µ±Ôì³ÉµÄ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿Éͨ¹ýÏòÊÜÓ°Ïì×°±¸·¢ËͶñÒâ½á¹¹µÄÊý¾Ý°üÀ´Ê¹ÓÃÎó²î£¬£¬£¬£¬ÊÜÓ°Ïì×°±¸ÔÚ´¦Öóͷ£Êý¾Ý°üʱ¿ÉÄܱ¬·¢»º³åÇøÒç³ö£¬£¬£¬£¬µ¼ÖÂ×°±¸ÖØÔØ¡£¡£¡£¡£¡£¡£¸ÃÎó²îÓ°ÏìËùÓÐÔËÐÐÁËCisco IOS/IOS EXÊÜÓ°Ïì°æ±¾Èí¼þµÄ×°±¸¡£¡£¡£¡£¡£¡£

 

ÏÖÔÚ¹ú¼ÊÉÏ»òÐíÓжþÊ®ÍòÊÜÓ°Ïì×°±¸Ì»Â¶ÔÚ¹«ÍøÉÏ£º

 

 

ÉÏÖÜ£¬£¬£¬£¬Ò»¸öÃûΪ¡°JHT¡±µÄºÚ¿Í×é֯ʹÓÃ˼¿ÆCVE-2018-0171 ÖÇÄÜ×°ÖÃÎó²î¹¥»÷Á˰üÀ¨¶íÂÞ˹ºÍÒÁÀÊÔÚÄڵĶà¸ö¹ú¼ÒÍøÂç»ù´¡ÉèÊ©¡£¡£¡£¡£¡£¡£±»¹¥»÷µÄCisco·ÓÉÆ÷µÄÉèÖÃÎļþstartup.config»á±»ÁýÕÖ£¬£¬£¬£¬Â·ÓÉÆ÷½«ÖØÐÂÆô¶¯¡£¡£¡£¡£¡£¡£³ýÁ˵¼Ö´óÃæ»ýÍøÂçÖÐÖ¹ÒÔÍ⣬£¬£¬£¬ÖÎÀíÔ±»¹»á·¢Ã÷·ÓÉÆ÷ÉèÖÃÎļþ±»¸ü¸Ä³É£º¡°Don't mess with our elections.... -JHT usafreedom_jht@tutanota.com¡±¡£¡£¡£¡£¡£¡£


½ñÌ죬£¬£¬£¬ÎÒÃÇÂ½ÐøÊÕµ½¶à¸öº£ÄÚ»ú¹¹ÔâÊÜͬÑùµÄ¹¥»÷µÄÐÂÎÅ¡£¡£¡£¡£¡£¡£±»¹¥»÷µÄ×°±¸³ý̱»¾Í⣬£¬£¬£¬ÉèÖÃÎļþ»¹»áÏÔʾһ¸öÃÀ¹ú¹úÆì¡£¡£¡£¡£¡£¡£

 



½â¾ö¼Æ»®


1.Cisco¹Ù·½ÒѾ­Ðû²¼Á˸üв¹¶¡£¬£¬£¬£¬£¬£¬£¬£¬½¨ÒéÏà¹ØÓû§¾¡¿ì¸üÐÂÉý¼¶¡£¡£¡£¡£¡£¡££¨https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180328-smi2£©


2.Z6×ðÁú¿­Ê±ÒÑÓÚ4ÔÂ4ÈÕÉý¼¶ÊÂÎñ¿â£¬£¬£¬£¬ÊÂÎñÃû³Æ£ºTCP_Cisco_SmartInstall_Ô¶³Ì´úÂëÖ´ÐÐÎó²î(CVE-2018-0171)£¬£¬£¬£¬Çë¿í´óÓû§ÊµÊ±Éý¼¶¡£¡£¡£¡£¡£¡£


ÌìãÙÈëÇÖ¼ì²âϵͳ±¨¾¯½ØÍ¼£º

 

 

ÌìÇåÈëÇÖ·ÀÓùϵͳ±¨¾¯½ØÍ¼£º

 

 

ÌìÇåWebÓ¦ÓÃÇå¾²Íø¹Ø±¨¾¯½ØÍ¼£º

 

2018Äê3ÔÂ28ÈÕ£¬£¬£¬£¬Ë¼¿ÆÐû²¼Á˸ßΣÎó²îÔ¤¾¯³ÆË¼¿ÆIOS¡¢IOS XEºÍIOS XRÈí¼þÖб£´æ¶à¸öÎó²î¡£¡£¡£¡£¡£¡£ÆäÖаüÀ¨2¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²îCVE-2018-0171¡¢CVE-2018-0151¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉʹÓÃÎó²î¾ÙÐÐδÊÚȨ»á¼û¡¢ÌáȨ¡¢Ö´ÐÐí§Òâ´úÂë»òµ¼Ö¾ܾøÐ§ÀÍ¡£¡£¡£¡£¡£¡£



Îó²îÐÎò


Cisco Smart InstallÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2018-0171£©Î£º¦Æ·¼¶£º³¬Î£


Cisco IOS¡¢IOS XEÈí¼þSmart Install¿Í»§¶ËÖб£´æ»º³åÇø¿ÍÕ»Òç³öÎó²î£¨CVE-2018-0171£©£¬£¬£¬£¬¸ÃÎó²îÊÇÓÉÓÚ¶Ô·Ö×éÊý¾ÝÑéÖ¤²»µ±Ôì³ÉµÄ¡£¡£¡£¡£¡£¡£Î´¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õߣ¬£¬£¬£¬¿ÉÒÔͨ¹ý½á¹¹¶ñÒâSmall InstallÐÂÎŰü£¬£¬£¬£¬ÏòÊÜÓ°Ïì×°±¸µÄTCP 4786¶Ë¿Ú·¢Ë͸ÃÊý¾Ý°ü£¬£¬£¬£¬ÖØÔØÄ¿µÄ×°±¸£¬£¬£¬£¬Ôì³É×°±¸¾Ü¾øÐ§ÀÍ£¨DoS£©»òÔÊÐíÔ¶³Ì´úÂëÖ´ÐС£¡£¡£¡£¡£¡£


ÓÉÓÚ4786¶Ë¿ÚĬÈÏ¿ªÆô£¬£¬£¬£¬ÇÒ¸ÃÎó²îpocÒѾ­±»¹ûÕæ£¬£¬£¬£¬Îó²îΣº¦Ë®Æ½¼«¸ß¡£¡£¡£¡£¡£¡£


¸ÃÎó²î±£´æÓÚÔËÐÐÁËCisco IOS/IOS EXÊÜÓ°Ïì°æ±¾Èí¼þ£¬£¬£¬£¬ÇÒΪSmart Install ClientģʽµÄ×°±¸¡£¡£¡£¡£¡£¡£Î´¿ªÆôCisco Smart Install£¬£¬£¬£¬»ò±»ÉèÖÃΪSmart Install DirectorģʽµÄ×°±¸²»ÔÚÓ°ÏìÖ®ÁС£¡£¡£¡£¡£¡£


Cisco QoSÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2018-0151£© Σº¦Æ·¼¶£º³¬Î£


¸ÃÎó²îÊÇÓÉÓÚÊÜÓ°Ïì×°±¸¶ÔµÖ´ïÆäUDP 18999¶Ë¿ÚµÄÊý¾Ý°üÖÐijЩֵµÄ½çÏß¼ì²é²»µ±Ôì³ÉµÄ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿Éͨ¹ýÏòÊÜÓ°Ïì×°±¸·¢ËͶñÒâ½á¹¹µÄÊý¾Ý°üÀ´Ê¹ÓÃÎó²î£¬£¬£¬£¬ÊÜÓ°Ïì×°±¸ÔÚ´¦Öóͷ£Êý¾Ý°üʱ¿ÉÄܱ¬·¢»º³åÇøÒç³ö£¬£¬£¬£¬µ¼ÖÂ×°±¸ÖØÔØ¡£¡£¡£¡£¡£¡£¸ÃÎó²îÓ°ÏìËùÓÐÔËÐÐÁËCisco IOS/IOS EXÊÜÓ°Ïì°æ±¾Èí¼þµÄ×°±¸¡£¡£¡£¡£¡£¡£

 

ÏÖÔÚ¹ú¼ÊÉÏ»òÐíÓжþÊ®ÍòÊÜÓ°Ïì×°±¸Ì»Â¶ÔÚ¹«ÍøÉÏ£º

 

 

Z6¡¤×ðÁú¿­Ê±¡¸ÖйúÇø¡¹¹Ù·½ÍøÕ¾

 

ÉÏÖÜ£¬£¬£¬£¬Ò»¸öÃûΪ¡°JHT¡±µÄºÚ¿Í×é֯ʹÓÃ˼¿ÆCVE-2018-0171 ÖÇÄÜ×°ÖÃÎó²î¹¥»÷Á˰üÀ¨¶íÂÞ˹ºÍÒÁÀÊÔÚÄڵĶà¸ö¹ú¼ÒÍøÂç»ù´¡ÉèÊ©¡£¡£¡£¡£¡£¡£±»¹¥»÷µÄCisco·ÓÉÆ÷µÄÉèÖÃÎļþstartup.config»á±»ÁýÕÖ£¬£¬£¬£¬Â·ÓÉÆ÷½«ÖØÐÂÆô¶¯¡£¡£¡£¡£¡£¡£³ýÁ˵¼Ö´óÃæ»ýÍøÂçÖÐÖ¹ÒÔÍ⣬£¬£¬£¬ÖÎÀíÔ±»¹»á·¢Ã÷·ÓÉÆ÷ÉèÖÃÎļþ±»¸ü¸Ä³É£º¡°Don't mess with our elections.... -JHT usafreedom_jht@tutanota.com¡±¡£¡£¡£¡£¡£¡£


½ñÌ죬£¬£¬£¬ÎÒÃÇÂ½ÐøÊÕµ½¶à¸öº£ÄÚ»ú¹¹ÔâÊÜͬÑùµÄ¹¥»÷µÄÐÂÎÅ¡£¡£¡£¡£¡£¡£±»¹¥»÷µÄ×°±¸³ý̱»¾Í⣬£¬£¬£¬ÉèÖÃÎļþ»¹»áÏÔʾһ¸öÃÀ¹ú¹úÆì¡£¡£¡£¡£¡£¡£

 

Z6¡¤×ðÁú¿­Ê±¡¸ÖйúÇø¡¹¹Ù·½ÍøÕ¾

 

½â¾ö¼Æ»®


1.Cisco¹Ù·½ÒѾ­Ðû²¼Á˸üв¹¶¡£¬£¬£¬£¬£¬£¬£¬£¬½¨ÒéÏà¹ØÓû§¾¡¿ì¸üÐÂÉý¼¶¡£¡£¡£¡£¡£¡££¨https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180328-smi2£©


2.Z6×ðÁú¿­Ê±ÒÑÓÚ4ÔÂ4ÈÕÉý¼¶ÊÂÎñ¿â£¬£¬£¬£¬ÊÂÎñÃû³Æ£ºTCP_Cisco_SmartInstall_Ô¶³Ì´úÂëÖ´ÐÐÎó²î(CVE-2018-0171)£¬£¬£¬£¬Çë¿í´óÓû§ÊµÊ±Éý¼¶¡£¡£¡£¡£¡£¡£


ÌìãÙÈëÇÖ¼ì²âϵͳ±¨¾¯½ØÍ¼£º

 

Z6¡¤×ðÁú¿­Ê±¡¸ÖйúÇø¡¹¹Ù·½ÍøÕ¾

 

ÌìÇåÈëÇÖ·ÀÓùϵͳ±¨¾¯½ØÍ¼£º

 

Z6¡¤×ðÁú¿­Ê±¡¸ÖйúÇø¡¹¹Ù·½ÍøÕ¾

 

 

ÌìÇåWebÓ¦ÓÃÇå¾²Íø¹Ø±¨¾¯½ØÍ¼£º

 

Z6¡¤×ðÁú¿­Ê±¡¸ÖйúÇø¡¹¹Ù·½ÍøÕ¾