Ç徲ͨ¸æ
-
ZABBIX·þÎñÆ÷×Ô¶¯´úÂë×·×ÙÆ÷Ô¶³Ì´úÂëÖ´ÐÐÎó²î
2017-05-03
¿ËÈÕ£¬Zabbix Server 2 4 XµÄtrapperÏÂÁЧÖб»ÆØ³ö±£´æ¿ÉʹÓõĴúÂëÖ´ÐÐÎó²î£¨CVE-2017-2824£©¡£ Ò»×éÌØÖÆµÄÊý¾Ý°ü¿ÉÄܵ¼ÖÂÏÂÁî×¢È룬µ¼ÖÂÔ¶³ÌÖ´ÐдúÂë¡£ ¹¥»÷Õß¿ÉÒÔ´ÓÔ˶¯µÄZabbix Proxy·¢³öÇëÇóÒÔ´¥·¢´ËÎó²î¡£¸ÃÎó²îλÓÚZabbix´úÂëµÄ“Trapper”²¿·Ö£¬ÕâÊÇÔÊÐíÊðÀíºÍ·þÎñÆ÷ͨѶµÄÍøÂç·þÎñ£¨TCP¶Ë¿Ú10051£©¡£ CVSSV3 SCORE£º 9 0 ¨C CVSS:3 0 AV:N AC:H PR:N UI:N S:C C:H I:H A:H ²Î¿¼Á´½Ó£º http: www talo
¸ü¶à -
HPÖÇÄÜÖÎÀíÖÐÐĶà¸öδָ¶¨µÄÔ¶³ÌÖ´ÐдúÂëÎó²î
2017-05-02
¿ËÈÕ£¬HP¹Ù·½Ðû²¼Ç徲ͨ¸æ£¬ÔÚHPEÖÇÄÜÖÎÀíÖÐÐÄ£¨iMC£©PLATÖÐÒѾ·¢Ã÷ÁËDZÔÚµÄÇå¾²Îó²î¡£ÕâЩÎó²î¿ÉÒÔÔ¶³ÌʹÓã¬ÒÔÔÊÐí´úÂëÖ´ÐС£ CVE±àºÅΪCVE-2017-5804£¬CVE-2017-5805£¬CVE-2017-5806£¬CVSSÆÀ·ÖÈçÏ£º Õë¶Ô±¾´ÎÇå¾²ÎÊÌ⣬HP¹Ù·½ÒѾÐû²¼Ð°汾¡£ ²Î¿¼Á´½Ó£º https: h20564 www2 hpe com hpsc doc public display?docId=emr_na-hpesbhf03738en_us http: www securityfocus com bid 98088 info ÊÜÓ°ÏìµÄ°æ±¾ ¹Ù
¸ü¶à -
2017-05-02
ÍâµØÊ±¼ä5ÔÂ1ÈÕ£¨±±¾©Ê±¼ä5ÔÂ2ÈÕÉÏÎ磩£¬Ó¢Ìضû£¨Intel£©¹Ù·½Ðû²¼Ç徲ͨ¸æ£¬Í¨¸æÅú×¢IntelÆìϲúÆ·Ó¢ÌØ¶û×Ô¶¯ÖÎÀíÊÖÒÕ£¨AMT£©£¬Ó¢Ìضû±ê×¼¿ÉÖÎÀíÐÔ£¨ISM£©ºÍÓ¢ÌØ¶ûСÐÍÆóÒµÊÖÒÕ°æ±¾ÖеĹ̼þ°æ±¾6 x£¬7 x£¬8 x 9 x£¬10 x£¬11 0£¬11 5ºÍ11 6±£´æÌáȨÎó²î£¬¿ÉÒÔʹÎÞÌØÈ¨¹¥»÷Õß»ñÈ¡ÕâЩ²úÆ·µÄ¸ß¼¶ÖÎÀí¹¦Ð§È¨ÏÞ£¬CVE±àºÅ£ºCVE-2017-5689¡£ ͨË×Óû§»ùÓÚIntelµÄPC²»ÊÜÓ°Ïì¡£ ²Î¿¼Á´½Ó£º https: www us-cert gov ncas current-
¸ü¶à -
2017-04-29
ÍâµØÊ±¼ä2017Äê4ÔÂ26ÈÕ£¨±±¾©Ê±¼ä2017Äê4ÔÂ27ÈÕ£©£¬Èí¼þ¼¯³Éƽ̨Jenkins¹Ù·½Ðû²¼ÁËÇ徲ͨ¸æ£¬°üÀ¨Á˸üÐÂÐÞ¸´³ÌÐò£¬ÐÞ¸´ÁËÊý¸öÇå¾²Îó²î£¨CVE-2017-1000356£¬CVE-2017-1000353£¬CVE-2017-1000354£¬CVE-2017-1000355£©¡£ ²Î¿¼Á´½Ó£º http: www securityfocus com bid 98056 info http: seclists org oss-sec 2017 q2 132 https: jenkins io security advisory 2017-04-26 Îó²î¼òÊö CVE-2017-1000356 °üÀ¨¶à¸öCSRFÎó²î
¸ü¶à -
˼¿Æ¼¯³ÉÖÎÀí¿ØÖÆÆ÷(IMC)Ô¶³Ì´úÂëÖ´ÐÐÎó²î
2017-04-21
ÍâµØÊ±¼ä2017Äê4ÔÂ19ÈÕ£¨±±¾©Ê±¼ä2017Äê4ÔÂ20ÈÕ£©£¬Ë¼¿Æ£¨Cisco£©¹Ù·½Ðû²¼Ò»ÌõÇ徲ͨ¸æ£¬Í¨¸æÏÔʾ˼¿Æ¼¯³ÉÖÎÀí¿ØÖÆÆ÷£¨Integrated Management Controller£©IMCµÄ»ùÓÚWebµÄGUIÖеÄÎó²î(CVE-2017-6616)ÔÊÐí¾ÓÉÉí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷ÕßÔÚÊÜÓ°ÏìµÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¸ÃÎó²îÊÇÓÉÓÚÊÜÓ°ÏìµÄÈí¼þûÓгä·Ö¹ýÂ˺ÍÎÞº¦»¯Óû§ÌṩµÄHTTPÇëÇóÖµ¡£ ¹¥»÷Õß¿ÉÒÔͨ¹ýÏòÊÜÓ°ÏìµÄÈí¼þ·¢ËÍÈ«ÐÄÉè¼ÆµÄHTTPÇëÇóÀ´Ê¹ÓôËÎó²î£¬´Ó¶øÔÚÊÜÓ°ÏìµÄϵͳ
¸ü¶à -
2017-04-20
ÍâµØÊ±¼ä2017Äê4ÔÂ19ÈÕ£¨±±¾©Ê±¼ä2017Äê4ÔÂ20ÈÕ£©£¬ARM ÆìϵÄmbedTLS±»±¬³ö±£´æÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2017-2784£©¡£ARM mbedTLS 2 4 0µÄx509Ö¤ÊéÆÊÎö´úÂëÖб£´æÎÞ¿ÉÓõÄÕ»Ö¸ÕëÎó²î¡£ ÓÉmbedTLS¿âÆÊÎöʱ£¬ÌØÖƵÄx509Ö¤Êé¿ÉÄÜÔì³ÉÎÞЧµÄÕ»Ö¸Õ룬´Ó¶øµ¼ÖÂDZÔÚµÄÔ¶³Ì´úÂëÖ´ÐС£ ʹÓôËÎó²î£¬¹¥»÷Õß¿ÉÒÔ³äµ±ÍøÂçÉϵĿͻ§¶Ë»ò·þÎñÆ÷£¬½«¶ñÒâx509Ö¤Êéת´ï¸øÒ×Êܹ¥»÷µÄÓ¦ÓóÌÐò¡£¹Ù·½ÒѾÐû²¼Ïà¹Ø²¹¶¡ÐÞ¸´Á˸ÃÎó²î¡£ ²Î
¸ü¶à








