ÐÅÏ¢Äþ¾²Öܱ¨-2019ÄêµÚ46ÖÜ

Ðû²¼Ê±¼ä 2019-11-25

>±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö



2019Äê11ÔÂ18ÈÕÖÁ24ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´50¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇApache Solr solr.in.shÔ¶³Ì´úÂëÖ´ÐЩ¶´; Apache Shiro "remember me" Oracle Padding¹¥»÷©¶´£»ISC BIND TCP¿Í»§¶ËÊýÁ¿ÏÞÖƾܾø·þÎñ©¶´£»Fortinet FortiOS SSL VPNÃÅ»§¾Ü¾ø·þÎñ©¶´£»Qualcomm QCA6174_9377 Bluetooth HOSTȨÏÞÌáÉý©¶´¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊÇNowSecureÅû¶Android libpac¿âÖеÄRCE©¶´£»AndroidÏà»ú©¶´¿ÉÃØÃÜÅÄÕÕ¼°Â¼ÖÆÊÓƵ£»ºÚ¿ÍÔÚÍøÉÏÐû²¼¿ªÂüÒøÐеÄ2TBÊý¾Ý£»WordPress Jetpack²å¼þ©¶´Ó°ÏìÊý°ÙÍòÍøÕ¾£»Oracle EBS·ÃÎÊ¿ØÖƲ»Íש¶´Ó°ÏìÉÏÍò¼ÒÆóÒµ¡£


ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖС£


>ÖØÒªÄþ¾²Â©¶´Áбí



1. Apache Solr solr.in.shÔ¶³Ì´úÂëÖ´ÐЩ¶´
Apache SolrûÓÐÄþ¾²µØÉèÖÃĬÈÏsolr.in.shÅäÖÃÎļþµÄENABLE_REMOTE_JMX_OPTSÅäÖÃÑ¡ÏÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó£¬Î´ÊÚȨÉÏ´«´úÂë²¢Ö´ÐС£
https://lists.apache.org/thread.html/6640c7e370fce2b74e466a605a46244ccc40666ad9e3064a4e04a85d@%3Csolr-user.lucene.apache.org%3E

2. Apache Shiro "remember me" Oracle Padding¹¥»÷©¶´
Apache Shiro "remember me"´æÔÚOracle Padding©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ɻñÈ¡Ãô¸ÐÐÅÏ¢¡£
https://lists.apache.org/thread.html/c9db14cfebfb8e74205884ed2bf2e2b30790ce24b7dde9191c82572c@%3Cdev.shiro.apache.org%3E

3. ISC BIND TCP¿Í»§¶ËÊýÁ¿ÏÞÖƾܾø·þÎñ©¶´
ISC BIND TCP¿Í»§¶ËÊýÁ¿ÏÞÖÆ´¦ÖôæÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»µ¥¸öÁ´½ÓÉÏͨ¹ýÒ»¸öTCP¿Í»§¶Ë·¢ËÍ´óÁ¿DNSÇëÇ󣬿ÉʹϵͳÍ߽⡣
https://access.redhat.com/security/cve/cve-2019-6477

4. Fortinet FortiOS SSL VPNÃÅ»§¾Ü¾ø·þÎñ©¶´
Fortinet FortiOS SSL VPN´æÔÚÊäÈëÑé֤©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉʹSSL VPN·þÎñÍ߽⡣
https://www.auscert.org.au/bulletins/ESB-2019.4388/

5. Qualcomm QCA6174_9377 Bluetooth HOSTȨÏÞÌáÉý©¶´
Qualcomm QCA6174_9377 Bluetooth HOSTȨÏÞ´¦ÖôæÔÚÄþ¾²Â©¶´£¬ÔÊÐíµÍȨÏÞ¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó£¬Ð´¶ñÒâ×¢²áÊý¾Ý£¬ÌáÉýȨÏÞ¡£
https://www.qualcomm.com/company/product-security/bulletins/october-2019-bulletin


>ÖØÒªÄþ¾²Ê¼þ×ÛÊö



1¡¢NowSecureÅû¶Android libpac¿âÖеÄRCE©¶´


×ðÁú¶¶È¦ - Ϊdu¶øÉú


NowSecureÑо¿ÈËÔ±·¢ÏÖAndroidϵͳʹÓõÄlibpac¿âÖдæÔÚRCE©¶´£¨CVE-2019-2205£©¡£libpacÊÇÒ»¸ö»ùÓÚChromiumÏîÄ¿´úÂëµÄ¿â£¬¸Ã¿âʹÓþ²Ì¬Á´½ÓµÄV8 JSÒýÇæÀ´½âÎöJavaScript£¬ÕâΪƽ̨ӦÓ÷¨Ê½´øÀ´Á˾޴óµÄ¹¥»÷Ãæ¡£Ñо¿ÈËÔ±·¢ÏÖJSº¯ÊýFindProxyForUrlÉÏÏÂÎÄÖеÄArrayBuffers·ÖÅäÆ÷ÉùÃ÷²»ÕýÈ·£¬¿ÉÖÂÕ»ÉϵÄVPTR±»ÁýÕÖ£¬Õâ¿ÉÄܱ»ÓÃÓÚÖ´ÐÐÈÎÒâ´úÂë¡£¹È¸èÔÚ11ÔÂAndroidÄþ¾²¸üÐÂÖÐÐÞ¸´Á˸鶴¡£

Ô­ÎÄÁ´½Ó£º
https://www.nowsecure.com/blog/2019/11/13/nowsecure-discovers-critical-android-vuln-that-may-lead-to-remote-code-execution/

2¡¢AndroidÏà»ú©¶´¿ÉÃØÃÜÅÄÕÕ¼°Â¼ÖÆÊÓƵ


×ðÁú¶¶È¦ - Ϊdu¶øÉú


CheckmarxµÄÑо¿ÈËÔ±ÔÚAndroidÏà»úÓ¦ÓÃÖз¢ÏÖÒ»¸öЩ¶´£¬¼´APP¿ÉÔÚûÓÐȨÏÞµÄÇé¿öÏÂÅÄÕÕ¡¢Â¼ÖÆÊÓƵ»ò»ñÈ¡É豸µÄλÖ᣸鶴£¨CVE-2019-2234£©Ï൱ΣÏÕ£¬ÒòΪËü¿ÉÒÔʹAPPÔÚÊÖ»úËøÆÁµÄ״̬ÏÂÃØÃÜÅÄÕպͼÏñ£¬Ò²¿ÉÒÔ´Ó´æ´¢µÄÕÕƬÖÐÌáÈ¡GPSλÖÃÊý¾Ý£¬»¹¿ÉÒÔ½«ÕâЩÊý¾Ý·¢Ëͻع¥»÷ÕßµÄÔ¶³Ì·þÎñÆ÷¡£Æ¾¾ÝGoogleµÄ˵·¨£¬Ïà»úÓ¦ÓÃÒÑÓÚ2019Äê7ÔÂͨ¹ýGoogle PlayÉ̵ê¸üÐÂÐÞ¸´ÁË´Ë©¶´¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/android-camera-app-bug-lets-apps-record-video-without-permission/

3¡¢ºÚ¿ÍÔÚÍøÉÏÐû²¼¿ªÂüÒøÐеÄ2TBÊý¾Ý


×ðÁú¶¶È¦ - Ϊdu¶øÉú


ºÚ¿Í´Ó¿ªÂüÒøÐÐÇÔÈ¡ÁË2TBµÄÊý¾Ý²¢Ðû²¼ÔÚÍøÉÏ¡£¾Ý³ÆÕâЩÊý¾ÝÊÇÓɺڿͻòºÚ¿ÍÍÅ»ïPhineas FisherÇÔÈ¡µÄ£¬²¢Í¨¹ýDistributed Denial of SecretsÏîÄ¿Ðû²¼¡£Êý¾Ý¼¯ÖаüÂÞ¿ªÂüÒøÐÐΪÆäÈ«Çò¿Í»§¹ÜÀíµÄÁè¼Ý3800¼Ò¹«Ë¾¡¢ÐÅÍк͸öÈËÕË»§µÄÏêϸ²ÆÕþÐÅÏ¢£¬ÉõÖÁ°üÂÞÕË»§Óà¶î¡£¿ªÂüÒøÐв¢Î´ÈÏ¿ÉÊý¾Ýй¶£¬µ«Äþ¾²×¨¼Ò×¢Òâµ½ÆäÐí¶à·þÎñÓÚ11ÔÂ17ÈÕÒò¡°ÖØ´óÉý¼¶ºÍά»¤¡±¶ø´¦ÓÚ²»ÐÐÓÃ״̬¡£

Ô­ÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/94136/data-breach/cayman-national-bank-data-leak.html

4¡¢WordPress Jetpack²å¼þ©¶´Ó°ÏìÊý°ÙÍòÍøÕ¾


×ðÁú¶¶È¦ - Ϊdu¶øÉú


Jetpack¿ª·¢ÍŶӶشÙWordPressÍøÕ¾¹ÜÀíÔ±Á¢¿ÌÓ¦ÓÃJetpack 7.9.1Òªº¦Äþ¾²¸üУ¬ÒÔÐÞ¸´Ò»¸öÒªº¦Â©¶´¡£ËäÈ»¸ÃÍŶÓûÓÐÅû¶Óйظ鶴µÄÏêϸÐÅÏ¢£¬µ«Æ¾¾ÝJetpackµÄͨ¸æ£¬¸Ã©¶´Ó°ÏìÁË´Ó5.1µ½2017Äê7ÔÂÒÔÀ´µÄËùÓа汾¡£¿ª·¢ÈËÔ±ÌåÏÖûÓз¢Ïָ鶴±»Ò°ÍâÀûÓõÄÖ¤¾Ý¡£JetpackÊÇÒ»¸öÊÜ»¶Ó­µÄWordPress²å¼þ£¬ËüΪ¹ÜÀíÔ±ÌṩÃâ·ÑµÄÄþ¾²ÐÔºÍÕ¾µã¹ÜÀí¹¦Ð§£¬¸Ã²å¼þµÄ»îÔ¾°²×°Á¿ÎªÁè¼Ý500Íò£¬¿ª·¢ÍŶÓÌåÏÖÒÑÓÐÁè¼Ý400ÍòÍøÕ¾°²×°Á˸üС£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/millions-of-sites-exposed-by-flaw-in-jetpack-wordpress-plugin/

5¡¢Oracle EBS·ÃÎÊ¿ØÖƲ»Íש¶´Ó°ÏìÉÏÍò¼ÒÆóÒµ

×ðÁú¶¶È¦ - Ϊdu¶øÉú


Oracleµç×ÓÉÌÎñÌ×¼þ£¨EBS£©ÖеÄÁ½¸öÒªº¦Â©¶´¿Éµ¼Ö¹¥»÷ÕßÍêÈ«¿ØÖƹ«Ë¾µÄERP½â¾ö·½°¸¡£¸Ã©¶´±»¹éÀàΪCWE-284£º·ÃÎÊ¿ØÖƲ»Í×£¬ÆäCVSSµÃ·ÖΪ9.9·Ö£¬±»¸ú×ÙΪCVE-2019-2638ºÍCVE-2019-2633¡£Èç¹ûÀÖ³ÉÀûÓÃÕâÁ½¸ö©¶´£¬Î´¾­ÊÚȨµÄ¹¥»÷Õß¿ÉÀûÓõç×Ó»ã¿îÁ÷³Ì²¢´òÓ¡ÒøÐÐ֧Ʊ¶ø²»±»·¢ÏÖ¡£OracleÔÚ4ÔÂÖØÒª²¹¶¡¸üÐÂÖÐÐÞ¸´Á˸鶴£¬µ«Æ¾¾ÝOnapsisÑо¿ÍŶӵÄÔ¤¼Æ£¬µ±Ç°Ô¼ÓÐ50£¥µÄOracle EBS¿Í»§ÉÐδ²¿Ê𲹶¡£¨¿ÉÄܶà´ï1Íò¸öÆóÒµ£©¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/thousands-of-enterprises-at-risk-due-to-oracle-ebs-critical-flaws/