Ó¦¶Ô΢ÈíÔ¶³Ì×ÀÃæÐ§À͸ßΣÎó²î¡°BlueKeep¡±£¨CVE-2019-0708£©×îÈ«½â¾ö¼Æ»®

Ðû²¼Ê±¼ä 2019-05-22
2019Äê5ÔÂ14ÈÕ£¬ £¬£¬£¬£¬Î¢ÈíÐû²¼²¹¶¡ÐÞ¸´ÁËÒ»¸öÔ¶³Ì×ÀÃæÐ§À͸ßΣÎó²î£¨CVE-2019-0708£©£¨ÓÖÃû£ºBlueKeep£©¡£¡£¡£¡£¡£¸ÃÎó²îÓ°Ïì°üÀ¨ Windows XP£¬ £¬£¬£¬£¬Windows7£¬ £¬£¬£¬£¬Windows2003£¬ £¬£¬£¬£¬Windows2008£¬ £¬£¬£¬£¬Windows2008R2 µÈÔÚÄڵij£ÓÃWindows×ÀÃæÒÔ¼°Ð§ÀÍÆ÷²Ù×÷ϵͳ¡£¡£¡£¡£¡£µ±Î´¾­Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßʹÓÃÔ¶³Ì×ÀÃæÅþÁ¬µ½Ä¿µÄϵͳ²¢·¢ËÍÌØÖÆÇëÇóʱ£¬ £¬£¬£¬£¬¿ÉÒÔÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£´ËÎó²îÊÇÔ¤Éí·ÝÑéÖ¤£¬ £¬£¬£¬£¬ÎÞÐèÓû§½»»¥¡£¡£¡£¡£¡£
 
΢Èí½«´ËÎó²î½ç˵ΪÑÏÖØ¼¶±ð£¬ £¬£¬£¬£¬Ç¿ÁÒ½¨Òé¿í´óÓû§ÊµÊ±¸üУ¬ £¬£¬£¬£¬ÒÔÃâÔâÊܹ¥»÷¡£¡£¡£¡£¡£ÏÖÔÚ£¬ £¬£¬£¬£¬»¥ÁªÍøÉÏÒѾ­·ºÆðÁËһЩƾ֤Îó²î²¹¶¡ÐγɵÄÉв»¿ÉÊìµÄPOC´úÂë¡£¡£¡£¡£¡£Ëæ×ÅÎó²îµÄÉîÈëÑо¿£¬ £¬£¬£¬£¬Ïà¶Ô³ÉÊì²¢ÇÒ¿ÉʹÓõÄPOC»òºÜ¿ì·ºÆð£¬ £¬£¬£¬£¬Ò»µ©±»ºÚ¿Í´ó¹æÄ£Ê¹Ó㬠£¬£¬£¬£¬½«»áÔì³ÉÀàËÆ2017Äê¡°WannaCry¡±ÀÕË÷È䳿µÄÑÏÖØÐ§¹û¡£¡£¡£¡£¡£
 
¿­·¢k8ÒѾ­Ðû²¼×èÖ¹ÏÖÔÚ×îÈ«µÄ²úÆ·¼¶Ó¦¶Ô¼Æ»®£¬ £¬£¬£¬£¬ÒÔÓ¦¶Ô¿ÉÄܵ½À´µÄ´ó¹æÄ£¹¥»÷¡£¡£¡£¡£¡£



01¡¢²úÆ·½â¾ö¼Æ»®


1¡¢Îó²îɨÃè

¿­·¢k8Ì쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳV6.0ÓÚ2019Äê5ÔÂ14ÈÕ½ôÆÈÐû²¼Õë¶Ô¸ÃÎó²îµÄÉý¼¶°ü£¬ £¬£¬£¬£¬Ö§³Ö¶Ô¸ÃÎó²î¾ÙÐмì²â£¬ £¬£¬£¬£¬Óû§Éý¼¶Ì쾵©ɨ²úÆ·Îó²î¿âºó¼´¿É¶Ô¸ÃÎó²î¾ÙÐÐɨÃè¡£¡£¡£¡£¡£6070°æ±¾Éý¼¶°üΪ607000220£¬ £¬£¬£¬£¬Éý¼¶°üÏÂÔØµØµã£º
/article/type/1/146.html
 
ÇëʹÓÃÌ쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳV6.0²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾£¬ £¬£¬£¬£¬ÊµÊ±¶Ô¸ÃÎó²î¾ÙÐмì²â£¬ £¬£¬£¬£¬ÒԱ㾡¿ì½ÓÄÉÌá·À²½·¥¡£¡£¡£¡£¡£
 
¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾

 
2¡¢ÍøÂç½çÏß¼ì²â

ÒѰ²ÅÅ¿­·¢k8IDS¡¢IPS¡¢WAF¡¢APT²úÆ·µÄ¿Í»§ÇëÉý¼¶µ½×îÐÂÊÂÎñ¿â£¬ £¬£¬£¬£¬²¢È·ÈÏÈçÏÂÊÂÎñ¹æÔòÒѾ­Ï·¢²¢Ó¦Ó㬠£¬£¬£¬£¬¼´¿ÉÓÐÓüì²â»ò×è¶Ï¹¥»÷£º
TCP_΢ÈíÔ¶³Ì×ÀÃæÐ§ÀÍÔ¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2019-0708]


3¡¢Ó¦¼±´¦Öóͷ£
 
¿­·¢k8¡°Ìì¾µÍøÂçÇå¾²ÊÂÎñÓ¦¼±´¦Öóͷ£¹¤¾ßÏ䡱²úÆ·£¬ £¬£¬£¬£¬Õë¶Ô2019Äê5ÔÂ14ÈÕÅû¶µÄ΢ÈíÔ¶³Ì×ÀÃæÐ§ÀÍÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2019-0708£¬ £¬£¬£¬£¬µÚһʱ¼äÓ¦¼±ÏìÓ¦¸ÃÎó²îµÄ´¦Öóͷ£Ô¤°¸£¬ £¬£¬£¬£¬²¢Ðû²¼×îеIJúÆ·Éý¼¶°ü°æ±¾Îª600070080£¬ £¬£¬£¬£¬Îª¿Í»§´øÀ´µÚÒ»ÊÖµÄÓ¦¼±´¦Öóͷ£¼Æ»®¡£¡£¡£¡£¡£

ÇëʹÓá°Ìì¾µÍøÂçÇå¾²ÊÂÎñÓ¦¼±´¦Öóͷ£¹¤¾ßÏ䡱²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾£¬ £¬£¬£¬£¬ÊµÊ±¶Ô¸ÃÎó²î¾ÙÐÐÓ¦¼±´¦Öóͷ££¬ £¬£¬£¬£¬ÓÐÓÃÌá·À¸ÃÎó²î´øÀ´µÄÇ徲Σº¦ºÍ¾­¼ÃËðʧ¡£¡£¡£¡£¡£
 
¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾
 

02¡¢¹Ù·½½â¾ö¼Æ»®


1¡¢Î¢ÈíÒѾ­Ðû²¼Õë¶Ô¸ÃÎó²îµÄ²¹¶¡£¬ £¬£¬£¬£¬ÇëʹÓÃÉÏÊöÊÜÓ°ÏìµÄ²Ù×÷ϵͳÓû§ÊµÊ±¸üС£¡£¡£¡£¡£

¡ôÕë¶ÔWindows XP£¬ £¬£¬£¬£¬Windows2003ϵͳµÄ²¹¶¡ÏÂÔØÒ³Ãæ£º
https://support.microsoft.com/en-us/help/4500705/customer-guidance-for-cve-2019-0708

¡ôÕë¶ÔWindows 7£¬ £¬£¬£¬£¬Windows Server 2008 R2£¬ £¬£¬£¬£¬Windows Server 2008ϵͳµÄ²¹¶¡ÏÂÔØÒ³Ãæ£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0708

2¡¢¹ØÓÚÎÞ·¨ÊµÊ±¸üв¹¶¡µÄÓû§£¬ £¬£¬£¬£¬ÇëÖ»¹Ü¹Ø±ÕÔ¶³Ì×ÀÃæÐ§ÀÍ£¬ £¬£¬£¬£¬×èÖ¹Ö÷»ú±»Ö±½Ó̻¶ÔÚ»¥ÁªÍøÉÏ¡£¡£¡£¡£¡£

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾