¡¾Íþвͨ¸æ¡¿Windows?Active?Directory?Óò·þÎñȨÏÞÌáÉýÎó²îͨ¸æ
2021-12-16
Ò». Îó²î¸ÅÊö
12ÔÂ13ÈÕ£¬AG¹«Ë¾¿Æ¼¼CERT¼à²â·¢Ã÷ÓÐÑо¿Ö°Ô±¹ûÕæÁËActive Directory Domain ServicesȨÏÞÌáÉýÎó²î£¨CVE-2021-42287¡¢CVE-2021-42278£©µÄ PoC¡£Î¢Èí¹Ù·½ÒÑÔÚ11ÔµÄÇå¾²¸üÐÂÐû²¼ÁËÒÔÉÏÎó²îµÄÐÞ¸´²¹¶¡£¬ÇëÏà¹ØÓû§¾¡¿ì½ÓÄɲ½·¥¾ÙÐзÀ»¤¡£
CVE-2021-42287£¨CVSS 3.0ÆÀ·Ö8.8£©£ºÓÉÓÚActive DirectoryûÓжÔÓòÖÐÅÌËãÆ÷Óë·þÎñÆ÷Õ˺ÅÃû¾ÙÐÐÑéÖ¤£¬¾ÓÉÉí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷ÕßʹÓøÃÎó²îÈÆ¹ýÇå¾²ÏÞÖÆ£¬¿É½«ÓòÖÐͨË×Óû§È¨ÏÞÌáÉýΪÓòÖÎÀíԱȨÏÞ²¢Ö´ÐÐí§Òâ´úÂë¡£
CVE-2021-42278 £¨CVSS 3.0ÆÀ·Ö8.8£©£ºÓÉÓÚÓ¦ÓóÌÐòȱÉÙ¶Ô Active Directory Domain ServicesµÄÇå¾²ÏÞÖÆ£¬¾ÓÉÉí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷ÕßʹÓøÃÎó²îÈÆ¹ýÇå¾²ÏÞÖÆ£¬µ¼ÖÂÔÚÄ¿µÄϵͳÉÏÌáÉýΪÖÎÀíԱȨÏÞ²¢Ö´ÐÐí§Òâ´úÂë¡£
Ô˶¯Ä¿Â¼£¨Active Directory£©ÊÇÃæÏòWindows Standard Server¡¢Windows Enterprise ServerÒÔ¼° Windows Datacenter ServerµÄĿ¼·þÎñ¡£Active Directory´æ´¢ÁËÓйØÍøÂ繤¾ßµÄÐÅÏ¢£¬²¢ÇÒÈÃÖÎÀíÔ±ºÍÓû§Äܹ»ÇáËɵزéÕÒºÍʹÓÃÕâЩÐÅÏ¢¡£Active DirectoryʹÓÃÁËÒ»Öֽṹ»¯µÄÊý¾Ý´æ´¢·½·¨£¬²¢ÒÔ´Ë×÷Ϊ»ù´¡¶ÔĿ¼ÐÅÏ¢¾ÙÐкϺõÂß¼µÄ·Ö²ã×éÖ¯¡£
²Î¿¼Á´½Ó£º
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42287
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42278
¶þ. Ó°Ïì¹æÄ£
|
Îó²î±àºÅ |
ÊÜÓ°Ïì²úÆ·°æ±¾ |
|
CVE-2021-42287 |
Windows Server 2012 R2 (Server Core installation) Windows Server 2012 (Server Core installation) Windows Server 2012 Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation) Windows Server 2008 R2 for x64-based Systems Service Pack 1 Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation) Windows Server 2008 for x64-based Systems Service Pack 2 Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation) Windows Server 2016 (Server Core installation) Windows Server 2016 Windows Server, version 2004 (Server Core installation) Windows Server 2022 (Server Core installation) Windows Server 2022 Windows Server 2019 (Server Core installation) Windows Server 2019 |
|
CVE-2021-42278 |
Windows Server 2012 R2 (Server Core installation) Windows Server 2012 Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation) Windows Server 2008 R2 for x64-based Systems Service Pack 1 Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation) Windows Server 2008 for x64-based Systems Service Pack 2 Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation) Windows Server 2008 for 32-bit Systems Service Pack 2 Windows Server 2016 (Server Core installation) Windows Server 2016 Windows Server, version 20H2 (Server Core Installation) Windows Server 2022 Windows Server 2019 (Server Core installation) Windows Server 2019 |
Èý. Îó²î·À»¤
3.1 ²¹¶¡¸üÐÂ
ÏÖÔÚ΢Èí¹Ù·½ÒÑÕë¶ÔÊÜÖ§³ÖµÄ²úÆ·°æ±¾Ðû²¼ÁËÐÞ¸´ÒÔÉÏÎó²îµÄÇå¾²²¹¶¡£¬Ç¿ÁÒ½¨ÒéÊÜÓ°ÏìÓû§¾¡¿ì×°Öò¹¶¡¾ÙÐзÀ»¤£¬¹Ù·½ÏÂÔØÁ´½Ó£º
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42287
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-42278
×¢£ºÓÉÓÚÍøÂçÎÊÌâ¡¢ÅÌËã»úÇéÐÎÎÊÌâµÈÔµ¹ÊÔÓÉ£¬Windows UpdateµÄ²¹¶¡¸üпÉÄÜ·ºÆðʧ°Ü¡£Óû§ÔÚ×°Öò¹¶¡ºó£¬Ó¦ÊµÊ±¼ì²é²¹¶¡ÊÇ·ñÀֳɸüС£
ÓÒ¼üµã»÷Windowsͼ±ê£¬Ñ¡Ôñ“ÉèÖÃ(N)”£¬Ñ¡Ôñ“¸üкÍÇå¾²”-“Windows¸üД£¬Éó²é¸ÃÒ³ÃæÉϵÄÌáÐÑÐÅÏ¢£¬Ò²¿Éµã»÷“Éó²é¸üÐÂÀúÊ·¼Í¼”Éó²éÀúÊ·¸üÐÂÇéÐΡ£
Õë¶ÔδÀÖ³É×°ÖõĸüУ¬¿Éµã»÷¸üÐÂÃû³ÆÌø×ªµ½Î¢Èí¹Ù·½ÏÂÔØÒ³Ãæ£¬½¨ÒéÓû§µã»÷¸ÃÒ³ÃæÉϵÄÁ´½Ó£¬×ªµ½“Microsoft¸üÐÂĿ¼”ÍøÕ¾ÏÂÔØ×ÔÁ¦³ÌÐò°ü²¢×°Öá£
3.2 ÔÝʱ·À»¤²½·¥
ÈôÏà¹ØÓû§ÔÝʱÎÞ·¨×°Öò¹¶¡£¬¿ÉÏÈÓÃÏÂÁв½·¥¾ÙÐÐÔÝʱ»º½â£º
ͨ¹ýÓò¿ØµÄ ADSI ±à¼Æ÷¹¤¾ß½« AD ÓòµÄMAQÉèÖÃΪ0£¬¿ÉÖÐÖ¹´ËÎó²îµÄʹÓÃÁ´¡£
ÉùÃ÷
±¾Ç徲ͨ¸æ½öÓÃÀ´ÐÎò¿ÉÄܱ£´æµÄÇå¾²ÎÊÌ⣬AG¹«Ë¾¿Æ¼¼²»Îª´ËÇ徲ͨ¸æÌṩÈκΰü¹Ü»òÔÊÐí¡£ÓÉÓÚÈö²¥¡¢Ê¹ÓôËÇ徲ͨ¸æËùÌṩµÄÐÅÏ¢¶øÔì³ÉµÄÈκÎÖ±½Ó»òÕß¼ä½ÓµÄЧ¹û¼°Ëðʧ£¬¾ùÓÉʹÓÃÕß×Ô¼ºÈÏÕæ£¬AG¹«Ë¾¿Æ¼¼ÒÔ¼°Ç徲ͨ¸æ×÷Õß²»Îª´Ë¼ç¸ºÈκÎÔðÈΡ£
AG¹«Ë¾¿Æ¼¼ÓµÓжԴËÇ徲ͨ¸æµÄÐÞ¸ÄÏ¢ÕùÊÍȨ¡£ÈçÓû×ªÔØ»òÈö²¥´ËÇ徲ͨ¸æ£¬±ØÐè°ü¹Ü´ËÇ徲ͨ¸æµÄÍêÕûÐÔ£¬°üÀ¨°æÈ¨ÉùÃ÷µÈËùÓÐÄÚÈÝ¡£Î´¾AG¹«Ë¾¿Æ¼¼ÔÊÐí£¬²»µÃí§ÒâÐ޸ĻòÕßÔö¼õ´ËÇ徲ͨ¸æÄÚÈÝ£¬²»µÃÒÔÈκη½·¨½«ÆäÓÃÓÚÉÌҵĿµÄ¡£

AG¹«Ë¾ÔÆ







