Ç徲ͨ¸æ
-
×ÛÊö¿ËÈÕ£¬F5¹Ù·½Ðû²¼Í¨¸æÐÞ¸´ÁËÒ»¸öÁ÷Á¿ÖÎÀíÓû§½çÃæ£¨TMUI£©±£´æÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-5902£©¡£´ËÎó²îÔÊÐíδ¾Éí·ÝÑéÖ¤µÄ¹¥»÷Õß»ò¾ÓÉÉí·ÝÑéÖ¤µÄÓû§Í¨¹ýBIG-IPÖÎÀí¶Ë¿ÚºÍ »ò×ÔÉíIP¶ÔTMUI¾ÙÐÐÍøÂç»á¼û£¬ÒÔÖ´ÐÐí§ÒâϵͳÏÂÁ½¨Éè»òɾ³ýÎļþ£¬½ûÓ÷þÎñºÍ »òÖ´ÐÐí§Òâ²Ù×÷Java´úÂë¡£´ËÎó²î¿ÉÄܵ¼ÖÂÍêÕûµÄϵͳΣº¦¡£ÏÖÔÚ¼à²âµ½ÍøÂçÉÏÒѾÓÐPOC£¬²¢ÇÒÒÑÓÐʹÓøÃÎó²îµÄ¹¥»÷ÐÐΪ·ºÆð£¬½¨ÒéÓû§¾¡¿ìÉý¼¶¾ÙÐзÀ»¤¡£F5 BIG-I
¸ü¶à -
×ÛÊö±±¾©Ê±¼ä7ÔÂ1ÈÕ£¬Î¢ÈíÐû²¼ÔÝʱͨ¸æ³ÆÐÞ¸´ÁË2¸öWindows±à½âÂëÆ÷¿â£¨Microsoft Windows Codecs Library£©Öб£´æµÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-1425,CVE-2020-1457£©¡£¹¥»÷Õß¿ÉÒÔͨ¹ýÒ»¸öÌØÖÆµÄͼÏñÎļþÀ´´¥·¢¸ÃÎó²î£¬´Ó¶øÖ´ÐдúÂë¡£ÏÖÔÚ΢ÈíÒѾÐû²¼²¹¶¡¾ÙÐÐÁËÐÞ¸´¡£²Î¿¼Á´½Ó£ºhttps: portal msrc microsoft com en-us security-guidance advisory CVE-2020-1425https: portal msrc microsoft com en-us security-guidan
¸ü¶à -
×ÛÊö6ÔÂ23ÈÕ£¬AG¹«Ë¾¿Æ¼¼Ðû²¼ÁËApache DubboµÄÒ»¸ö·´ÐòÁл¯µ¼ÖµÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-1948£©Í¨¸æ¡£http: blog nsfocus net apache-dubbo-0623 Apache Dubbo ÊÇÒ»¿î¸ßÐÔÄÜJava RPC¿ò¼Ü¡£Îó²î±£´æÓÚ Apache DubboĬÈÏʹÓõķ´ÐòÁл¯¹¤¾ß hessian ÖУ¬¹¥»÷Õß¿ÉÄÜ»áͨ¹ý·¢ËͶñÒâ RPC ÇëÇóÀ´´¥·¢Îó²î£¬ÕâÀà RPC ÇëÇóÖÐͨ³£»á´øÓÐÎÞ·¨Ê¶±ðµÄ·þÎñÃû»òÒªÁìÃû£¬ÒÔ¼°Ò»Ð©¶ñÒâµÄ²ÎÊý¸ºÔØ¡£µ±¶ñÒâ²ÎÊý±»·´ÐòÁл¯Ê±£¬µÖ´ï
¸ü¶à -
Ò»¡¢Íþвͨ¸æApache Dubbo ProviderĬÈÏ·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐÐÎó²î¡¾Ðû²¼Ê±¼ä¡¿2020-06-23 17:00:00 GMT¡¾¸ÅÊö¡¿2020Äê6ÔÂ23ÈÕ£¬Apache DubboÐû²¼Ç徲ͨ¸æÅû¶ProviderĬÈÏ·´ÐòÁл¯µ¼ÖµÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-1948£©£¬¹¥»÷Õß¿ÉÒÔ·¢ËÍ´øÓÐÎÞ·¨Ê¶±ðµÄ·þÎñÃû»òÒªÁìÃû¼°Ä³Ð©¶ñÒâ²ÎÊý¸ºÔصÄRPCÇëÇ󣬵±¶ñÒâ²ÎÊý±»·´ÐòÁл¯Ê±½«µ¼Ö´úÂëÖ´ÐС£¡¾Á´½Ó¡¿http: blog nsfocus net apache-dubbo-0623 ¶þ¡¢ÈÈÃÅ×ÊѶ1 ¹¥»÷ÕßʹÓÃI
¸ü¶à -
×ÛÊö¿ËÈÕ£¬Apache DubboÐû²¼ÁËÒ»¸ö·´ÐòÁл¯µ¼ÖµÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-1948£©¡£Apache Dubbo ÊÇÒ»¿î¸ßÐÔÄÜJava RPC¿ò¼Ü¡£Îó²î±£´æÓÚ Apache DubboĬÈÏʹÓõķ´ÐòÁл¯¹¤¾ß hessian ÖУ¬¹¥»÷Õß¿ÉÄÜ»áͨ¹ý·¢ËͶñÒâ RPC ÇëÇóÀ´´¥·¢Îó²î£¬ÕâÀà RPC ÇëÇóÖÐͨ³£»á´øÓÐÎÞ·¨Ê¶±ðµÄ·þÎñÃû»òÒªÁìÃû£¬ÒÔ¼°Ò»Ð©¶ñÒâµÄ²ÎÊý¸ºÔØ¡£µ±¶ñÒâ²ÎÊý±»·´ÐòÁл¯Ê±£¬µÖ´ï´úÂëÖ´ÐеÄÄ¿µÄ¡£²Î¿¼Á´½Ó£ºhttps: www mail-archive com dev@
¸ü¶à -
Ò»¡¢ÈÈÃÅ×ÊѶ1 Operation In(ter)ceptionÕë¶Ô×ÅÃûº½¿Õº½ÌìºÍ¾üʹ«Ë¾µÄ¹¥»÷¡¾¸ÅÊö¡¿Operation In(ter)ceptionÐж¯Öй¥»÷Õß½¨ÉèαÔìµÄLinkedInÕÊ»§£¬Ã°³äº½¿Õº½ÌìºÍ¹ú·À¹¤ÒµÖÐ×ÅÃû¹«Ë¾µÄHR´ú±í£¬ÒÔ×ÅÃûְλµÄн×ÊÐÅϢΪÓÕ¶üÏòÄ¿µÄ¹«Ë¾Ô±¹¤·Ö·¢¶ñÒâÈí¼þ£¬²¢ÇÒÊÔͼͨ¹ýÉÌÒµµç×ÓÓʼþй¶£¨BEC£©¹¥»÷À´Í¨¹ýÊܺ¦Õߵĵç×ÓÓʼþÕÊ»§×¬Ç®¡£¡¾²Î¿¼Á´½Ó¡¿https: www welivesecurity com 2020 06 17 operation-interception-aerospace-mil
¸ü¶à








