Ó¦¶Ô΢ÈíÔ¶³Ì×ÀÃæÐ§À͸ßΣÎó²î¡°BlueKeep¡±£¨CVE-2019-0708£©×îÈ«½â¾ö¼Æ»®

Ðû²¼Ê±¼ä 2019-05-22
2019Äê5ÔÂ14ÈÕ£¬£¬£¬ £¬Î¢ÈíÐû²¼²¹¶¡ÐÞ¸´ÁËÒ»¸öÔ¶³Ì×ÀÃæÐ§À͸ßΣÎó²î£¨CVE-2019-0708£©£¨ÓÖÃû£ºBlueKeep£©¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²îÓ°Ïì°üÀ¨ Windows XP£¬£¬£¬ £¬Windows7£¬£¬£¬ £¬Windows2003£¬£¬£¬ £¬Windows2008£¬£¬£¬ £¬Windows2008R2 µÈÔÚÄڵij£ÓÃWindows×ÀÃæÒÔ¼°Ð§ÀÍÆ÷²Ù×÷ϵͳ¡£¡£¡£¡£¡£¡£¡£µ±Î´¾­Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßʹÓÃÔ¶³Ì×ÀÃæÅþÁ¬µ½Ä¿µÄϵͳ²¢·¢ËÍÌØÖÆÇëÇóʱ£¬£¬£¬ £¬¿ÉÒÔÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£´ËÎó²îÊÇÔ¤Éí·ÝÑéÖ¤£¬£¬£¬ £¬ÎÞÐèÓû§½»»¥¡£¡£¡£¡£¡£¡£¡£
 
΢Èí½«´ËÎó²î½ç˵ΪÑÏÖØ¼¶±ð£¬£¬£¬ £¬Ç¿ÁÒ½¨Òé¿í´óÓû§ÊµÊ±¸üУ¬£¬£¬ £¬ÒÔÃâÔâÊܹ¥»÷¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬ £¬»¥ÁªÍøÉÏÒѾ­·ºÆðÁËһЩƾ֤Îó²î²¹¶¡ÐγɵÄÉв»¿ÉÊìµÄPOC´úÂë¡£¡£¡£¡£¡£¡£¡£Ëæ×ÅÎó²îµÄÉîÈëÑо¿£¬£¬£¬ £¬Ïà¶Ô³ÉÊì²¢ÇÒ¿ÉʹÓõÄPOC»òºÜ¿ì·ºÆð£¬£¬£¬ £¬Ò»µ©±»ºÚ¿Í´ó¹æÄ£Ê¹Ó㬣¬£¬ £¬½«»áÔì³ÉÀàËÆ2017Äê¡°WannaCry¡±ÀÕË÷È䳿µÄÑÏÖØÐ§¹û¡£¡£¡£¡£¡£¡£¡£
 
918²©ÌìÌÃÒѾ­Ðû²¼×èÖ¹ÏÖÔÚ×îÈ«µÄ²úÆ·¼¶Ó¦¶Ô¼Æ»®£¬£¬£¬ £¬ÒÔÓ¦¶Ô¿ÉÄܵ½À´µÄ´ó¹æÄ£¹¥»÷¡£¡£¡£¡£¡£¡£¡£



01¡¢²úÆ·½â¾ö¼Æ»®


1¡¢Îó²îɨÃè

918²©ÌìÌÃÌ쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳV6.0ÓÚ2019Äê5ÔÂ14ÈÕ½ôÆÈÐû²¼Õë¶Ô¸ÃÎó²îµÄÉý¼¶°ü£¬£¬£¬ £¬Ö§³Ö¶Ô¸ÃÎó²î¾ÙÐмì²â£¬£¬£¬ £¬Óû§Éý¼¶Ì쾵©ɨ²úÆ·Îó²î¿âºó¼´¿É¶Ô¸ÃÎó²î¾ÙÐÐɨÃè¡£¡£¡£¡£¡£¡£¡£6070°æ±¾Éý¼¶°üΪ607000220£¬£¬£¬ £¬Éý¼¶°üÏÂÔØµØµã£º
/article/type/1/146.html
 
ÇëʹÓÃÌ쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳV6.0²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾£¬£¬£¬ £¬ÊµÊ±¶Ô¸ÃÎó²î¾ÙÐмì²â£¬£¬£¬ £¬ÒԱ㾡¿ì½ÓÄÉÌá·À²½·¥¡£¡£¡£¡£¡£¡£¡£
 
918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾

 
2¡¢ÍøÂç½çÏß¼ì²â

ÒѰ²ÅÅ918²©ÌìÌÃIDS¡¢IPS¡¢WAF¡¢APT²úÆ·µÄ¿Í»§ÇëÉý¼¶µ½×îÐÂÊÂÎñ¿â£¬£¬£¬ £¬²¢È·ÈÏÈçÏÂÊÂÎñ¹æÔòÒѾ­Ï·¢²¢Ó¦Ó㬣¬£¬ £¬¼´¿ÉÓÐÓüì²â»ò×è¶Ï¹¥»÷£º
TCP_΢ÈíÔ¶³Ì×ÀÃæÐ§ÀÍÔ¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2019-0708]


3¡¢Ó¦¼±´¦Öóͷ£
 
918²©ÌìÌá°Ìì¾µÍøÂçÇå¾²ÊÂÎñÓ¦¼±´¦Öóͷ£¹¤¾ßÏ䡱²úÆ·£¬£¬£¬ £¬Õë¶Ô2019Äê5ÔÂ14ÈÕÅû¶µÄ΢ÈíÔ¶³Ì×ÀÃæÐ§ÀÍÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2019-0708£¬£¬£¬ £¬µÚһʱ¼äÓ¦¼±ÏìÓ¦¸ÃÎó²îµÄ´¦Öóͷ£Ô¤°¸£¬£¬£¬ £¬²¢Ðû²¼×îеIJúÆ·Éý¼¶°ü°æ±¾Îª600070080£¬£¬£¬ £¬Îª¿Í»§´øÀ´µÚÒ»ÊÖµÄÓ¦¼±´¦Öóͷ£¼Æ»®¡£¡£¡£¡£¡£¡£¡£

ÇëʹÓá°Ìì¾µÍøÂçÇå¾²ÊÂÎñÓ¦¼±´¦Öóͷ£¹¤¾ßÏ䡱²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾£¬£¬£¬ £¬ÊµÊ±¶Ô¸ÃÎó²î¾ÙÐÐÓ¦¼±´¦Öóͷ££¬£¬£¬ £¬ÓÐÓÃÌá·À¸ÃÎó²î´øÀ´µÄÇ徲Σº¦ºÍ¾­¼ÃËðʧ¡£¡£¡£¡£¡£¡£¡£
 
918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾
 

02¡¢¹Ù·½½â¾ö¼Æ»®


1¡¢Î¢ÈíÒѾ­Ðû²¼Õë¶Ô¸ÃÎó²îµÄ²¹¶¡£¡£¡£¡£¡£¡£¡£¬£¬£¬ £¬ÇëʹÓÃÉÏÊöÊÜÓ°ÏìµÄ²Ù×÷ϵͳÓû§ÊµÊ±¸üС£¡£¡£¡£¡£¡£¡£

¡ôÕë¶ÔWindows XP£¬£¬£¬ £¬Windows2003ϵͳµÄ²¹¶¡ÏÂÔØÒ³Ãæ£º
https://support.microsoft.com/en-us/help/4500705/customer-guidance-for-cve-2019-0708

¡ôÕë¶ÔWindows 7£¬£¬£¬ £¬Windows Server 2008 R2£¬£¬£¬ £¬Windows Server 2008ϵͳµÄ²¹¶¡ÏÂÔØÒ³Ãæ£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0708

2¡¢¹ØÓÚÎÞ·¨ÊµÊ±¸üв¹¶¡µÄÓû§£¬£¬£¬ £¬ÇëÖ»¹Ü¹Ø±ÕÔ¶³Ì×ÀÃæÐ§ÀÍ£¬£¬£¬ £¬×èÖ¹Ö÷»ú±»Ö±½Ó̻¶ÔÚ»¥ÁªÍøÉÏ¡£¡£¡£¡£¡£¡£¡£

918²©ÌìÌÃ(ÖйúÓÎ)×îйٷ½ÍøÕ¾