[¸ßΣ©¶´¾¯±¨] ˼¿Æ¸ßΣ©¶´±»ÓÃÀ´¹¥»÷Òªº¦»ù´¡ÉèÊ©£¬ÎÒ¹úÒÑÓлú¹¹Êܵ½¹¥»÷

Ðû²¼Ê±¼ä 2018-04-08

2018Äê3ÔÂ28ÈÕ£¬Ë¼¿ÆÐû²¼Á˸ßΣ©¶´Ô¤¾¯³Æ˼¿ÆIOS¡¢IOS XEºÍIOS XRÈí¼þÖдæÔÚ¶à¸ö©¶´¡£ÆäÖаüÂÞ2¸öÔ¶³Ì´úÂëÖ´ÐЩ¶´CVE-2018-0171¡¢CVE-2018-0151¡£¹¥»÷Õß¿ÉÀûÓ鶴½øÐÐδÊÚȨ·ÃÎÊ¡¢ÌáȨ¡¢Ö´ÐÐÈÎÒâ´úÂë»òµ¼Ö¾ܾø·þÎñ¡£



©¶´ÃèÊö


Cisco Smart InstallÔ¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2018-0171£©Î£º¦Æ·¼¶£º³¬Î£


Cisco IOS¡¢IOS XEÈí¼þSmart Install¿Í»§¶ËÖдæÔÚ»º³åÇø¶ÑÕ»Òç³ö©¶´£¨CVE-2018-0171£©£¬¸Ã©¶´ÊÇÓÉÓÚ¶Ô·Ö×éÊý¾ÝÑéÖ¤²»Í×Ôì³ÉµÄ¡£Î´¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õߣ¬¿ÉÒÔͨ¹ý½á¹¹¶ñÒâSmall InstallÏûÏ¢°ü£¬ÏòÊÜÓ°ÏìÉ豸µÄTCP 4786¶Ë¿Ú·¢Ë͸ÃÊý¾Ý°ü£¬ÖØÔØÄ¿±êÉ豸£¬Ôì³ÉÉ豸¾Ü¾ø·þÎñ£¨DoS£©»òÔÊÐíÔ¶³Ì´úÂëÖ´ÐС£


ÓÉÓÚ4786¶Ë¿ÚĬÈÏ¿ªÆô£¬ÇҸ鶴pocÒѾ­±»¹ûÈ»£¬Â©¶´Î£º¦Ë®Æ½¼«¸ß¡£


¸Ã©¶´´æÔÚÓÚÔËÐÐÁËCisco IOS/IOS EXÊÜÓ°Ïì°æ±¾Èí¼þ£¬ÇÒΪSmart Install ClientģʽµÄÉ豸¡£Î´¿ªÆôCisco Smart Install£¬»ò±»ÉèÖÃΪSmart Install DirectorģʽµÄÉ豸²»ÔÚÓ°ÏìÖ®ÁС£


Cisco QoSÔ¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2018-0151£© Σº¦Æ·¼¶£º³¬Î£


¸Ã©¶´ÊÇÓÉÓÚÊÜÓ°ÏìÉ豸¶Ôµ½´ïÆäUDP 18999¶Ë¿ÚµÄÊý¾Ý°üÖÐijЩֵµÄ½çÏÞ¼ì²é²»Í×Ôì³ÉµÄ¡£¹¥»÷Õß¿Éͨ¹ýÏòÊÜÓ°ÏìÉ豸·¢ËͶñÒâ½á¹¹µÄÊý¾Ý°üÀ´ÀûÓ鶴£¬ÊÜÓ°ÏìÉ豸ÔÚ´¦ÖÃÊý¾Ý°üʱ¿ÉÄÜ·¢Éú»º³åÇøÒç³ö£¬µ¼ÖÂÉ豸ÖØÔØ¡£¸Ã©¶´Ó°ÏìËùÓÐÔËÐÐÁËCisco IOS/IOS EXÊÜÓ°Ïì°æ±¾Èí¼þµÄÉ豸¡£

 

Ä¿Ç°¹ú¼ÊÉÏ´ó¸ÅÓжþÊ®ÍòÊÜÓ°ÏìÉ豸̻¶ÔÚ¹«ÍøÉÏ£º

 

 

ÉÏÖÜ£¬Ò»¸öÃûΪ¡°JHT¡±µÄºÚ¿Í×éÖ¯ÀûÓÃ˼¿ÆCVE-2018-0171 ÖÇÄÜ°²×°Â©¶´¹¥»÷ÁË°üÂÞ¶íÂÞ˹ºÍÒÁÀÊÔÚÄڵĶà¸ö¹ú¼ÒÍøÂç»ù´¡ÉèÊ©¡£±»¹¥»÷µÄCisco·ÓÉÆ÷µÄÅäÖÃÎļþstartup.config»á±»ÁýÕÖ£¬Â·ÓÉÆ÷½«ÖØÐÂÆô¶¯¡£³ýÁ˵¼Ö´óÃæ»ýÍøÂçÖжÏÒÔÍ⣬¹ÜÀíÔ±»¹»á·¢ÏÖ·ÓÉÆ÷ÅäÖÃÎļþ±»¸ü¸Ä³É£º¡°Don't mess with our elections.... -JHT usafreedom_jht@tutanota.com¡±¡£


½ñÌ죬ÎÒÃǽÐøÊÕµ½¶à¸ö¹úÄÚ»ú¹¹ÔâÊÜͬÑùµÄ¹¥»÷µÄÏûÏ¢¡£±»¹¥»÷µÄÉ豸³ý̱»¾Í⣬ÅäÖÃÎļþ»¹»áÏÔʾһ¸öÃÀ¹ú¹úÆì¡£

 



½â¾ö·½°¸


1.Cisco¹Ù·½ÒѾ­Ðû²¼Á˸üв¹¶¡£¬£¬½¨ÒéÏà¹ØÓû§¾¡¿ì¸üÐÂÉý¼¶¡££¨https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180328-smi2£©


2.¶¶È¦Îª¶Ä¶øÉúÒÑÓÚ4ÔÂ4ÈÕÉý¼¶Ê¼þ¿â£¬Ê¼þÃû³Æ£ºTCP_Cisco_SmartInstall_Ô¶³Ì´úÂëÖ´ÐЩ¶´(CVE-2018-0171)£¬Çë¹ã´óÓû§¼°Ê±Éý¼¶¡£


ÌìãÙÈëÇÖ¼ì²âϵͳ±¨¾¯½Øͼ£º

 

 

ÌìÇåÈëÇÖ·ÀÓùϵͳ±¨¾¯½Øͼ£º

 

 

ÌìÇåWebÓ¦ÓÃÄþ¾²Íø¹Ø±¨¾¯½Øͼ£º

 

2018Äê3ÔÂ28ÈÕ£¬Ë¼¿ÆÐû²¼Á˸ßΣ©¶´Ô¤¾¯³Æ˼¿ÆIOS¡¢IOS XEºÍIOS XRÈí¼þÖдæÔÚ¶à¸ö©¶´¡£ÆäÖаüÂÞ2¸öÔ¶³Ì´úÂëÖ´ÐЩ¶´CVE-2018-0171¡¢CVE-2018-0151¡£¹¥»÷Õß¿ÉÀûÓ鶴½øÐÐδÊÚȨ·ÃÎÊ¡¢ÌáȨ¡¢Ö´ÐÐÈÎÒâ´úÂë»òµ¼Ö¾ܾø·þÎñ¡£



©¶´ÃèÊö


Cisco Smart InstallÔ¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2018-0171£©Î£º¦Æ·¼¶£º³¬Î£


Cisco IOS¡¢IOS XEÈí¼þSmart Install¿Í»§¶ËÖдæÔÚ»º³åÇø¶ÑÕ»Òç³ö©¶´£¨CVE-2018-0171£©£¬¸Ã©¶´ÊÇÓÉÓÚ¶Ô·Ö×éÊý¾ÝÑéÖ¤²»Í×Ôì³ÉµÄ¡£Î´¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õߣ¬¿ÉÒÔͨ¹ý½á¹¹¶ñÒâSmall InstallÏûÏ¢°ü£¬ÏòÊÜÓ°ÏìÉ豸µÄTCP 4786¶Ë¿Ú·¢Ë͸ÃÊý¾Ý°ü£¬ÖØÔØÄ¿±êÉ豸£¬Ôì³ÉÉ豸¾Ü¾ø·þÎñ£¨DoS£©»òÔÊÐíÔ¶³Ì´úÂëÖ´ÐС£


ÓÉÓÚ4786¶Ë¿ÚĬÈÏ¿ªÆô£¬ÇҸ鶴pocÒѾ­±»¹ûÈ»£¬Â©¶´Î£º¦Ë®Æ½¼«¸ß¡£


¸Ã©¶´´æÔÚÓÚÔËÐÐÁËCisco IOS/IOS EXÊÜÓ°Ïì°æ±¾Èí¼þ£¬ÇÒΪSmart Install ClientģʽµÄÉ豸¡£Î´¿ªÆôCisco Smart Install£¬»ò±»ÉèÖÃΪSmart Install DirectorģʽµÄÉ豸²»ÔÚÓ°ÏìÖ®ÁС£


Cisco QoSÔ¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2018-0151£© Σº¦Æ·¼¶£º³¬Î£


¸Ã©¶´ÊÇÓÉÓÚÊÜÓ°ÏìÉ豸¶Ôµ½´ïÆäUDP 18999¶Ë¿ÚµÄÊý¾Ý°üÖÐijЩֵµÄ½çÏÞ¼ì²é²»Í×Ôì³ÉµÄ¡£¹¥»÷Õß¿Éͨ¹ýÏòÊÜÓ°ÏìÉ豸·¢ËͶñÒâ½á¹¹µÄÊý¾Ý°üÀ´ÀûÓ鶴£¬ÊÜÓ°ÏìÉ豸ÔÚ´¦ÖÃÊý¾Ý°üʱ¿ÉÄÜ·¢Éú»º³åÇøÒç³ö£¬µ¼ÖÂÉ豸ÖØÔØ¡£¸Ã©¶´Ó°ÏìËùÓÐÔËÐÐÁËCisco IOS/IOS EXÊÜÓ°Ïì°æ±¾Èí¼þµÄÉ豸¡£

 

Ä¿Ç°¹ú¼ÊÉÏ´ó¸ÅÓжþÊ®ÍòÊÜÓ°ÏìÉ豸̻¶ÔÚ¹«ÍøÉÏ£º

 

 

×ðÁú¶¶È¦ - Ϊdu¶øÉú

 

ÉÏÖÜ£¬Ò»¸öÃûΪ¡°JHT¡±µÄºÚ¿Í×éÖ¯ÀûÓÃ˼¿ÆCVE-2018-0171 ÖÇÄÜ°²×°Â©¶´¹¥»÷ÁË°üÂÞ¶íÂÞ˹ºÍÒÁÀÊÔÚÄڵĶà¸ö¹ú¼ÒÍøÂç»ù´¡ÉèÊ©¡£±»¹¥»÷µÄCisco·ÓÉÆ÷µÄÅäÖÃÎļþstartup.config»á±»ÁýÕÖ£¬Â·ÓÉÆ÷½«ÖØÐÂÆô¶¯¡£³ýÁ˵¼Ö´óÃæ»ýÍøÂçÖжÏÒÔÍ⣬¹ÜÀíÔ±»¹»á·¢ÏÖ·ÓÉÆ÷ÅäÖÃÎļþ±»¸ü¸Ä³É£º¡°Don't mess with our elections.... -JHT usafreedom_jht@tutanota.com¡±¡£


½ñÌ죬ÎÒÃǽÐøÊÕµ½¶à¸ö¹úÄÚ»ú¹¹ÔâÊÜͬÑùµÄ¹¥»÷µÄÏûÏ¢¡£±»¹¥»÷µÄÉ豸³ý̱»¾Í⣬ÅäÖÃÎļþ»¹»áÏÔʾһ¸öÃÀ¹ú¹úÆì¡£

 

×ðÁú¶¶È¦ - Ϊdu¶øÉú

 

½â¾ö·½°¸


1.Cisco¹Ù·½ÒѾ­Ðû²¼Á˸üв¹¶¡£¬£¬½¨ÒéÏà¹ØÓû§¾¡¿ì¸üÐÂÉý¼¶¡££¨https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180328-smi2£©


2.¶¶È¦Îª¶Ä¶øÉúÒÑÓÚ4ÔÂ4ÈÕÉý¼¶Ê¼þ¿â£¬Ê¼þÃû³Æ£ºTCP_Cisco_SmartInstall_Ô¶³Ì´úÂëÖ´ÐЩ¶´(CVE-2018-0171)£¬Çë¹ã´óÓû§¼°Ê±Éý¼¶¡£


ÌìãÙÈëÇÖ¼ì²âϵͳ±¨¾¯½Øͼ£º

 

×ðÁú¶¶È¦ - Ϊdu¶øÉú

 

ÌìÇåÈëÇÖ·ÀÓùϵͳ±¨¾¯½Øͼ£º

 

×ðÁú¶¶È¦ - Ϊdu¶øÉú

 

 

ÌìÇåWebÓ¦ÓÃÄþ¾²Íø¹Ø±¨¾¯½Øͼ£º

 

×ðÁú¶¶È¦ - Ϊdu¶øÉú