ÐÅÏ¢Çå¾²Öܱ¨-2019ÄêµÚ46ÖÜ

Ðû²¼Ê±¼ä 2019-11-25

>±¾ÖÜÇå¾²Ì¬ÊÆ×ÛÊö



2019Äê11ÔÂ18ÈÕÖÁ24ÈÕ¹²ÊÕ¼Çå¾²Îó²î50¸ö£¬ £¬£¬ £¬ÖµµÃ¹Ø×¢µÄÊÇApache Solr solr.in.shÔ¶³Ì´úÂëÖ´ÐÐÎó²î; Apache Shiro "remember me" Oracle Padding¹¥»÷Îó²î£»£» £»£»£»£»ISC BIND TCP¿Í»§¶ËÊýÄ¿ÏÞÖÆ¾Ü¾øÐ§ÀÍÎó²î£»£» £»£»£»£»Fortinet FortiOS SSL VPNÃÅ»§¾Ü¾øÐ§ÀÍÎó²î£»£» £»£»£»£»Qualcomm QCA6174_9377 Bluetooth HOSTȨÏÞÌáÉýÎó²î¡£¡£¡£¡£¡£¡£¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊÇNowSecureÅû¶Android libpac¿âÖеÄRCEÎó²î£»£» £»£»£»£»AndroidÏà»úÎó²î¿ÉÉñÃØÕÕÏà¼°Â¼ÖÆÊÓÆµ£»£» £»£»£»£»ºÚ¿ÍÔÚÍøÉÏÐû²¼¿ªÂüÒøÐеÄ2TBÊý¾Ý£»£» £»£»£»£»WordPress Jetpack²å¼þÎó²îÓ°ÏìÊý°ÙÍòÍøÕ¾£»£» £»£»£»£»Oracle EBS»á¼û¿ØÖƲ»µ±Îó²îÓ°ÏìÉÏÍò¼ÒÆóÒµ¡£¡£¡£¡£¡£¡£¡£


ƾ֤ÒÔÉÏ×ÛÊö£¬ £¬£¬ £¬±¾ÖÜÇå¾²ÍþвΪÖС£¡£¡£¡£¡£¡£¡£


>Ö÷ÒªÇå¾²Îó²îÁбí



1. Apache Solr solr.in.shÔ¶³Ì´úÂëÖ´ÐÐÎó²î
Apache SolrûÓÐÇå¾²µØÉèÖÃĬÈÏsolr.in.shÉèÖÃÎļþµÄENABLE_REMOTE_JMX_OPTSÉèÖÃÑ¡Ï £¬£¬ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇó£¬ £¬£¬ £¬Î´ÊÚȨÉÏ´«´úÂë²¢Ö´ÐС£¡£¡£¡£¡£¡£¡£
https://lists.apache.org/thread.html/6640c7e370fce2b74e466a605a46244ccc40666ad9e3064a4e04a85d@%3Csolr-user.lucene.apache.org%3E

2. Apache Shiro "remember me" Oracle Padding¹¥»÷Îó²î
Apache Shiro "remember me"±£´æOracle PaddingÎó²î£¬ £¬£¬ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇó£¬ £¬£¬ £¬¿É»ñÈ¡Ãô¸ÐÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£
https://lists.apache.org/thread.html/c9db14cfebfb8e74205884ed2bf2e2b30790ce24b7dde9191c82572c@%3Cdev.shiro.apache.org%3E

3. ISC BIND TCP¿Í»§¶ËÊýÄ¿ÏÞÖÆ¾Ü¾øÐ§ÀÍÎó²î
ISC BIND TCP¿Í»§¶ËÊýÄ¿ÏÞÖÆ´¦Öóͷ£±£´æÇå¾²Îó²î£¬ £¬£¬ £¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»µ¥¸öÁ´½ÓÉÏͨ¹ýÒ»¸öTCP¿Í»§¶Ë·¢ËÍ´ó×ÚDNSÇëÇó£¬ £¬£¬ £¬¿ÉʹϵͳÍ߽⡣¡£¡£¡£¡£¡£¡£
https://access.redhat.com/security/cve/cve-2019-6477

4. Fortinet FortiOS SSL VPNÃÅ»§¾Ü¾øÐ§ÀÍÎó²î
Fortinet FortiOS SSL VPN±£´æÊäÈëÑéÖ¤Îó²î£¬ £¬£¬ £¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇó£¬ £¬£¬ £¬¿ÉʹSSL VPNЧÀÍÍ߽⡣¡£¡£¡£¡£¡£¡£
https://www.auscert.org.au/bulletins/ESB-2019.4388/

5. Qualcomm QCA6174_9377 Bluetooth HOSTȨÏÞÌáÉýÎó²î
Qualcomm QCA6174_9377 Bluetooth HOSTȨÏÞ´¦Öóͷ£±£´æÇå¾²Îó²î£¬ £¬£¬ £¬ÔÊÐíµÍȨÏÞ¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇó£¬ £¬£¬ £¬Ð´¶ñÒâ×¢²áÊý¾Ý£¬ £¬£¬ £¬ÌáÉýȨÏÞ¡£¡£¡£¡£¡£¡£¡£
https://www.qualcomm.com/company/product-security/bulletins/october-2019-bulletin


>Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö



1¡¢NowSecureÅû¶Android libpac¿âÖеÄRCEÎó²î


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


NowSecureÑо¿Ö°Ô±·¢Ã÷AndroidϵͳʹÓõÄlibpac¿âÖб£´æRCEÎó²î£¨CVE-2019-2205£©¡£¡£¡£¡£¡£¡£¡£libpacÊÇÒ»¸ö»ùÓÚChromiumÏîÄ¿´úÂëµÄ¿â£¬ £¬£¬ £¬¸Ã¿âʹÓþ²Ì¬Á´½ÓµÄV8 JSÒýÇæÀ´ÆÊÎöJavaScript£¬ £¬£¬ £¬ÕâΪƽ̨ӦÓóÌÐò´øÀ´ÁËÖØ´óµÄ¹¥»÷Ãæ¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷JSº¯ÊýFindProxyForUrlÉÏÏÂÎÄÖеÄArrayBuffers·ÖÅÉÆ÷ÉùÃ÷²»×¼È·£¬ £¬£¬ £¬¿ÉÖÂÕ»ÉϵÄVPTR±»ÁýÕÖ£¬ £¬£¬ £¬Õâ¿ÉÄܱ»ÓÃÓÚÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£¹È¸èÔÚ11ÔÂAndroidÇå¾²¸üÐÂÖÐÐÞ¸´Á˸ÃÎó²î¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.nowsecure.com/blog/2019/11/13/nowsecure-discovers-critical-android-vuln-that-may-lead-to-remote-code-execution/

2¡¢AndroidÏà»úÎó²î¿ÉÉñÃØÕÕÏà¼°Â¼ÖÆÊÓÆµ


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


CheckmarxµÄÑо¿Ö°Ô±ÔÚAndroidÏà»úÓ¦ÓÃÖз¢Ã÷Ò»¸öÐÂÎó²î£¬ £¬£¬ £¬¼´APP¿ÉÔÚûÓÐȨÏÞµÄÇéÐÎÏÂÕÕÏà¡¢Â¼ÖÆÊÓÆµ»ò»ñȡװ±¸µÄλÖᣡ£¡£¡£¡£¡£¡£¸ÃÎó²î£¨CVE-2019-2234£©Ï൱ΣÏÕ£¬ £¬£¬ £¬ÓÉÓÚËü¿ÉÒÔʹAPPÔÚÊÖ»úËøÆÁµÄ״̬ÏÂÉñÃØÕÕÏàºÍ¼Ïñ£¬ £¬£¬ £¬Ò²¿ÉÒÔ´Ó´æ´¢µÄÕÕÆ¬ÖÐÌáÈ¡GPSλÖÃÊý¾Ý£¬ £¬£¬ £¬»¹¿ÉÒÔ½«ÕâЩÊý¾Ý·¢Ëͻع¥»÷ÕßµÄÔ¶³ÌЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£Æ¾Ö¤GoogleµÄ˵·¨£¬ £¬£¬ £¬Ïà»úÓ¦ÓÃÒÑÓÚ2019Äê7ÔÂͨ¹ýGoogle PlayÊÐËÁ¸üÐÂÐÞ¸´ÁË´ËÎó²î¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/android-camera-app-bug-lets-apps-record-video-without-permission/

3¡¢ºÚ¿ÍÔÚÍøÉÏÐû²¼¿ªÂüÒøÐеÄ2TBÊý¾Ý


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


ºÚ¿Í´Ó¿ªÂüÒøÐÐÇÔÈ¡ÁË2TBµÄÊý¾Ý²¢Ðû²¼ÔÚÍøÉÏ¡£¡£¡£¡£¡£¡£¡£¾Ý³ÆÕâЩÊý¾ÝÊÇÓɺڿͻòºÚ¿ÍÍÅ»ïPhineas FisherÇÔÈ¡µÄ£¬ £¬£¬ £¬²¢Í¨¹ýDistributed Denial of SecretsÏîÄ¿Ðû²¼¡£¡£¡£¡£¡£¡£¡£Êý¾Ý¼¯ÖаüÀ¨¿ªÂüÒøÐÐΪÆäÈ«Çò¿Í»§ÖÎÀíµÄÁè¼Ý3800¼Ò¹«Ë¾¡¢ÐÅÍкÍСÎÒ˽¼ÒÕË»§µÄÏêϸ²ÆÎñÐÅÏ¢£¬ £¬£¬ £¬ÉõÖÁ°üÀ¨ÕË»§Óà¶î¡£¡£¡£¡£¡£¡£¡£¿£¿£¿£¿£¿ªÂüÒøÐв¢Î´ÈÏ¿ÉÊý¾Ýй¶£¬ £¬£¬ £¬µ«Ç徲ר¼Ò×¢ÖØµ½ÆäÐí¶àЧÀÍÓÚ11ÔÂ17ÈÕÒò¡°ÖØ´óÉý¼¶ºÍά»¤¡±¶ø´¦ÓÚ²»¿ÉÓÃ״̬¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/94136/data-breach/cayman-national-bank-data-leak.html

4¡¢WordPress Jetpack²å¼þÎó²îÓ°ÏìÊý°ÙÍòÍøÕ¾


918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


Jetpack¿ª·¢ÍŶӱ޲ßWordPressÍøÕ¾ÖÎÀíÔ±Á¬Ã¦Ó¦ÓÃJetpack 7.9.1Òªº¦Çå¾²¸üУ¬ £¬£¬ £¬ÒÔÐÞ¸´Ò»¸öÒªº¦Îó²î¡£¡£¡£¡£¡£¡£¡£ËäÈ»¸ÃÍŶÓûÓÐÅû¶ÓйظÃÎó²îµÄÏêϸÐÅÏ¢£¬ £¬£¬ £¬µ«Æ¾Ö¤JetpackµÄͨ¸æ£¬ £¬£¬ £¬¸ÃÎó²îÓ°ÏìÁË´Ó5.1µ½2017Äê7ÔÂÒÔÀ´µÄËùÓа汾¡£¡£¡£¡£¡£¡£¡£¿£¿£¿£¿£¿ª·¢Ö°Ô±ÌåÏÖûÓз¢Ã÷¸ÃÎó²î±»Ò°ÍâʹÓõÄÖ¤¾Ý¡£¡£¡£¡£¡£¡£¡£JetpackÊÇÒ»¸öÊܽӴýµÄWordPress²å¼þ£¬ £¬£¬ £¬ËüΪÖÎÀíÔ±ÌṩÃâ·ÑµÄÇå¾²ÐÔºÍÕ¾µãÖÎÀí¹¦Ð§£¬ £¬£¬ £¬¸Ã²å¼þµÄ»îÔ¾×°ÖÃÁ¿ÎªÁè¼Ý500Íò£¬ £¬£¬ £¬¿ª·¢ÍŶÓÌåÏÖÒÑÓÐÁè¼Ý400ÍòÍøÕ¾×°ÖÃÁ˸üС£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/millions-of-sites-exposed-by-flaw-in-jetpack-wordpress-plugin/

5¡¢Oracle EBS»á¼û¿ØÖƲ»µ±Îó²îÓ°ÏìÉÏÍò¼ÒÆóÒµ

918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾


Oracleµç×ÓÉÌÎñÌ×¼þ£¨EBS£©ÖеÄÁ½¸öÒªº¦Îó²î¿Éµ¼Ö¹¥»÷ÕßÍêÈ«¿ØÖƹ«Ë¾µÄERP½â¾ö¼Æ»®¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î±»¹éÀàΪCWE-284£º»á¼û¿ØÖƲ»µ±£¬ £¬£¬ £¬ÆäCVSSµÃ·ÖΪ9.9·Ö£¬ £¬£¬ £¬±»¸ú×ÙΪCVE-2019-2638ºÍCVE-2019-2633¡£¡£¡£¡£¡£¡£¡£ÈôÊÇÀÖ³ÉʹÓÃÕâÁ½¸öÎó²î£¬ £¬£¬ £¬Î´¾­ÊÚȨµÄ¹¥»÷Õß¿ÉʹÓõç×Ó»ã¿îÁ÷³Ì²¢´òÓ¡ÒøÐÐ֧Ʊ¶ø²»±»·¢Ã÷¡£¡£¡£¡£¡£¡£¡£OracleÔÚ4ÔÂÖ÷Òª²¹¶¡¸üÐÂÖÐÐÞ¸´Á˸ÃÎó²î£¬ £¬£¬ £¬µ«Æ¾Ö¤OnapsisÑо¿ÍŶӵÄÔ¤¼Æ£¬ £¬£¬ £¬Ä¿½ñÔ¼ÓÐ50£¥µÄOracle EBS¿Í»§ÉÐδ°²ÅŲ¹¶¡£¡£¡£¡£¡£¡£¡£¨¿ÉÄܶà´ï1Íò¸öÆóÒµ£©¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/thousands-of-enterprises-at-risk-due-to-oracle-ebs-critical-flaws/