pgµç×Ó¹ÙÍøÔÆ¹Ù·½É̳Ç
ÌìÔªÊý¾ÝÍø
ÔÆERP¹Ù·½É̳Ç
×÷ΪÖйú×î¾ßÓ°ÏìÁ¦µÄITÆ·ÅÆÖ®Ò»£¬pgµç×Ó¹ÙÍø½èÅÌËãÖ®Á¦£¬´òÔ컥Áª»¥Í¨µÄÊý¾ÝÉú̬£¬ÒÔÊý¾ÝÖ®Ãû£¬¿ªÆôÈ«ÐÂÕ³̵ÄÊÀ½çÎÄÃ÷¡£
¼ì²ì¸ü¶àÊÓÆµ >pgµç×Ó¹ÙÍøÃñÕþÔÆÆ½Ì¨Æ¾¾ÝÈ«¹úÃñÕþϵͳÁìÏÈ¡¢Õþ¸®²¿·ÖÒ»Á÷µÄ±ê×¼¼Æ»®Éè¼Æ£¬Æ½Ì¨ÈÚºÏÃñÕþÒµÎñÖÎÀí¡¢¹«¹²Ð§ÀÍ¡¢´óÊý¾Ý×ÊԴЧÀÍ¡£
Á˽âÏêÇé >pgµç×Ó¹ÙÍøÔÆ¹Ù·½É̳Ç
ÌìÔªÊý¾ÝÍø
ÔÆERP¹Ù·½É̳Ç
QEMU USBÄ£ÄâÆ÷Öб£´æÒ»¸öÔ½½ç¶Áд©¶´£¨CVE-2020-14364£©£¬´Ë©¶´ÓÉÓÚQEMU USBÄ£¿éÖеÄÊý×éÔ½½ç¶ÁдÔì³É£¬Â©¶´Î»ÓÚ¡°./hw/usb/core.c¡± ÖС£¹¥»÷ÕßÔÚÓµÓÐÔÆÇé¿öÐéÄâ»ú²Ù×÷ϵͳȨÏÞµÄÇé¿öÏ£¬¿ÉÒÔÀûÓøÃ©¶´»ñÈ¡ËÞÖ÷»úȨÏÞ£¬½ø¶ø¹¥»÷ÐéÄâ»úËùÔÚ×ÊÔ´³ØËùÓÐ×â»§Ö÷»ú¡£
2020.06.10£¬Ó¢ÌضûÐû²¼ÁËijЩ´¦ÀíÆ÷ÖÐDZÔÚµÄÄþ¾²Â©¶´£¬¸Ã©¶´¿ÉÄܵ¼ÖÂÐÅϢй¶¡£
intel-sa-00320£ºCVE-2020-0543
Ò»ÖÖ³ÆÎªÌØÊâ¼Ä´æÆ÷»º³åÇøÊý¾Ý²ÉÑù£¨SRBDS£©µÄÐÂÓòÈÆ¹ý˲ִ̬Ðй¥»÷¿ÉÄÜÔÊÐíͨ¹ýÔÚCPUµÄÈκν¹µãÉÏÖ´ÐжñÒâ´úÂëÍÆ¶ÏÀ´×ÔÌØÊâ¼Ä´æÆ÷µÄÊý¾ÝÖµ¡£
Intel CSME¡¢TXEºÍSPSÖеÄ×Óϵͳ±£´æÕûÊýÒç³ö©¶´CVE-2020-0545¡£ÍâµØÌØÈ¨Óû§¿ÉÀûÓøÃ©¶´Ôì³É¾Ü¾øÐ§ÀÍ¡£
Äþ¾²Ñо¿¹«Ë¾ EclypsiumÆØ¹âÁËLinux Grub2Òýµ¼¼ÓÔØ³ÌÐòÖÐÒ»¸öÃûΪ¡°BootHole¡±£¨CVE-2020-10713£©µÄ©¶´¡£´Ë©¶´ÔÊÐí¹¥»÷Õß½Ù³ÖÒýµ¼½ø³Ì²¢ÔÚϵͳÆô¶¯ÆÚ¼äÖ´ÐжñÒâ´úÂ룬×ÝȻʹÓÃUEFI Secure BootµÄϵͳҲ¿ÉÒÔʹÓôË©¶´Èƹý¡£
Grub2 boot loaderͨ¹ýgrub.cfgÎļþÅäÖ㬸ÃÎļþÖаüÀ¨¶à¸ötokens×Ö·û´®¡£ÔÚ³õʼÒýµ¼¼ÓÔØ³ÌÐò£¨³ÆÎªshim£©¼ÓÔØÖ®ºó£¬¿ªÊ¼¼ÓÔØÏ¢ÕùÎögrub.cfgÅäÖÃÎļþ¡£ÔÚ½âÎö½×¶Î£¬ÅäÖÃÎļþµÄÄÚÈݱ»¸´ÖƵ½ÄÚ´æµÄÄÚ²¿»º³åÇøÖд洢¡£µ±tokens³¤¶È´óÓÚÄÚ²¿»º³åÇø¾Þϸʱ»áµ¼Ö»º³åÇøÒç³öÎÊÌâ¡£¹¥»÷Õß¿ÉÒÔÀûÓôË©¶´Ö´ÐÐÈÎÒâ´úÂ룬½øÒ»²½½Ù³ÖÅÌËã»úµÄÒýµ¼Àú³Ì²¢ÈƹýSecure Boot±£»¤¡£
CVE-2020-11651£ºSaltStackÈÏÖ¤ÈÆ¹ý©¶´,¹¥»÷Õßͨ¹ý½á¹¹¶ñÒâÇëÇ󣬿ÉÒÔÈÆ¹ýSalt MasterµÄÑéÖ¤Âß¼£¬Å²ÓÃÏà¹ØÎ´ÊÚȨº¯Êý¹¦Ð§£¬´Ó¶ø¿ÉÒÔÔì³ÉÔ¶³ÌÃüÁîÖ´ÐЩ¶´¡£
CVE-2020-11652£ºSalt MasterĿ¼±éÀú©¶´£¬¹¥»÷Õßͨ¹ý½á¹¹¶ñÒâÇëÇ󣬶ÁȡЧÀÍÆ÷ÉÏÈÎÒâÎļþ¡£
ÆäËûµÚÈý·½×é¼þ©¶´£º
CVE-2015-5589£ºPHPÔ¶³Ì¾Ü¾øÐ§ÀÍ©¶´
CVE-2016-2554£ºPHP»ùÓÚÕ»µÄ»º³åÇøÒç³ö©¶´
CVE-2018-7584£ºPHPÕ»»º³åÇøÒç³ö©¶´
CVE-2016-7568£ºPHPÕûÊýÒç³ö©¶´
CVE-2019-9023£ºPHP»º³åÇø¹ýʧ©¶´
CVE-2017-12933£ºPHP¶Ñ»º³åÇøÒç³ö©¶´
2020Äê01ÔÂ27ÈÕ£¬Ó¢ÌضûÐû²¼Äþ¾²¸üУ¬Åû¶2¸öintel´¦ÀíÆ÷Äþ¾²Â©¶´£¬CVE±àºÅΪCVE-2020-0548ºÍCVE-2020-0549£¬¿Éµ¼ÖÂÐÅϢй¶µÈ¡£Â©¶´ÏêϸÐÅÏ¢ÈçÏ£º
CVE-2020-0549£ºL1D Eviction Sampling
ÔÚijЩ΢Ìåϵ½á¹¹Ìõ¼þϵÄijЩ´¦ÀíÆ÷ÉÏ£¬À´×Ô×î½ü³·»ØµÄÐ޸ĵÄL1Êý¾Ý¸ßËÙ»º´æ£¨L1D£©ÐеÄÊý¾Ý¿ÉÄܻᴫË͵½Î´Ê¹ÓõÄÎÞЧµÄL1DÌî³ä»º³åÇøÖС£ ÔÚÊÜ΢Ìåϵ½á¹¹Êý¾Ý²ÉÑù£¨MDS£©»òÊÂÎñÐÔÒì²½ÖÐÖ¹£¨TAA£©Ó°ÏìµÄ´¦ÀíÆ÷ÉÏ£¬¿ÉÒÔʹÓÃÕâÁ½ÖÖÊý¾Ý²ÉÑù±ßÐŵÀÒªÁìÖ®Ò»À´ÍƶÏÀ´×ÔL1DÌî³ä»º³åÇøµÄÊý¾Ý¡£ ͨ¹ý½«ÕâÁ½ÖÖÐÐΪ×éºÏÔÚÒ»Æð£¬¹¥»÷Õß¾ÍÓпÉÄÜ´ÓÏÈǰ´ÓL1Êý¾Ý¸ßËÙ»º´æÖÐÖð³öµÄÐ޸ĺóµÄ¸ßËÙ»º´æÐÐÖÐÍÆ¶Ï³öÊý¾ÝÖµ¡£
CVE-2020-0548£º
Ä³Ð©Ó¢ÌØ¶û´¦ÀíÆ÷ÖеÄÇå³ý¹ýʧ£¬¿ÉÄܵ¼Ö¾¹ýÉí·ÝÑéÖ¤µÄÓû§Í¨¹ýÍâµØ»á¼û»ñÈ¡ÐÅÏ¢¡£¸Ã©¶´intel¸ø³öµÄCVSSÆÀ·ÖΪ2.8£¬µÍΣ©¶´¡£
2019Äê12ÔÂ10ÈÕ£¬Ó¢ÌضûÐû²¼Äþ¾²¸üУ¬Åû¶¶à¸öÄþ¾²Â©¶´£¬ÆäÖÐintel Processors©¶´CVE-2019-11157ºÍCVE-2019-14607¿Éµ¼ÖÂȨÏÞÌáÉý»òÐÅϢй¶µÈ¡£Â©¶´ÏêϸÐÅÏ¢ÈçÏ£º
INTEL-SA-00289£ºCVE-2019-11157
ijЩIntel£¨R£©´¦ÀíÆ÷µÄµçѹÉèÖÃÄ£¿é£¨voltage settings£©Òò¼ì²éÌõ¼þ²»µ±¿ÉÄÜ»áʹ¾¹ýÉí·ÝÑéÖ¤µÄÓû§Í¨¹ýͨ¹ýÍâµØ»á¼ûÌáÉýȨÏÞºÍ/»ò»ñÈ¡Ãô¸ÐÐÅÏ¢¡£
INTEL-SA-00317£ºCVE-2019-14607
¶à¸öintel´¦ÀíÆ÷Òò²»ÕýÈ·µÄÌõ¼þ¼ì²â¿ÉÄÜ»áÔÊÐí¾¹ýÉí·ÝÑéÖ¤µÄÓû§Í¨¹ýͨ¹ýÍâµØ»á¼ûÌáÉýȨÏÞºÍ/»ò»ñÈ¡Ãô¸ÐÐÅÏ¢¡£
pgµç×Ó¹ÙÍøÊÜÓ°Ïì²úÆ·¼°¶ÔÓ¦ÐÞ¸´°æ±¾¼ûÏÂ±í¡£Ëæ×ÅÏà¹ØÊÂÇéµÄÁ¬Ðø½øÐУ¬pgµç×Ó¹ÙÍøPSIRT»áËæÊ±¸üиÃÄþ¾²Ô¤¾¯£¬ÇëÁ¬Ðø¹Ø×¢¡£
2019Äê11ÔÂ12ºÅ£¬Intel¹ûÕæÁ˶à¸öÄþ¾²Â©¶´£¬¿ÉÄܵ¼ÖÂÌØÈ¨ÌáÉý£¬Ð§À;ܾø»òÐÅϢй¶¡£Ó¢ÌضûÒÑÐû²¼¹Ì¼þºÍÈí¼þ¸üУ¬ÒÔ»º½âÕâЩDZÔÚ©¶´¡£Â©¶´ÏêϸÐÅÏ¢ÈçÏ£º
Intel-SA-00240: CVE-2019-0151
Intel(R) Core Processors ºÍ Intel(R) Xeon(R) ProcessorsÓÉÓÚIntel(R) TXT¶ÔÄÚ´æ±£»¤È±·¦£¬¿ÉÄÜ»áʹÒÑÊÚȨÓû§Í¨¹ýÍâµØ»á¼ûÌáÉýȨÏÞ¡£
Intel-SA-00241: CVE-2019-11090£¨fTPM©¶´£©, CVE-2019-11109
Intel£¨R£©SPS×ÓϵͳÄþ¾²ÎÊÌ⣨Improper directory permissions¡¢Cryptographic timing conditions£©
Intel-SA-00270: CVE-2019-11135
ʹÓÃÍÆ²âÖ´ÐеÄijЩCPUÉϵÄTSXÒì²½ÖÐÖ¹Ìõ¼þ£¨TAA£©¿ÉÄÜÔÊÐí¾¹ýÉí·ÝÑéÖ¤µÄÓû§Í¨¹ý±ßÐŵÀ¹¥»÷»ñÈ¡Ãô¸ÐÐÅÏ¢¡£
Intel-SA-00271: CVE-2019-11139
ijЩIntel(R) Xeon(R) ¿ÉÀ©Õ¹´¦ÀíÆ÷ÔÚVoltage Setting Modulation£¨µçѹÉèÖõ÷ÖÆ£©Öв»µ±µÄÌõ¼þ¼ì²â£¬¿ÉÄÜ»áʹÒÑÊÚȨÓû§Í¨¹ýÍâµØ»á¼ûÔì³É¾Ü¾øÐ§ÀÍ¡£
Intel-SA-00280: CVE-2019-11136, CVE-2019-11137
ijЩIntel(R) Xeon(R) ¿ÉÀ©Õ¹´¦ÀíÆ÷ÓÉÓÚÊäÈëÑé֤ȱ·¦/»á¼û¿ØÖÆÈ±·¦£¬¿ÉÄÜ»áʹÒÑÊÚȨÓû§Í¨¹ýÍâµØ»á¼ûÔì³ÉÌØÈ¨Éý¼¶£¬¾Ü¾øÐ§ÀͺÍ/»òÐÅϢй¶¡£
ÓÉÓÚÔÚReids 4.x¼°ÒÔÉϰ汾ÖÐÐÂÔöÁËÄ£¿é¹¦Ð§£¬¹¥»÷Õß¿Éͨ¹ýÍâ²¿ÍØÕ¹£¬ÔÚRedisÖÐʵÏÖÒ»¸öеÄRedisÃüÁî¡£¹¥»÷Õß¿ÉÒÔÀûÓøù¦Ð§ÒýÈëÄ£¿é£¬ÔÚδÊÚȨ»á¼ûµÄÇé¿öÏÂʹ±»¹¥»÷ЧÀÍÆ÷¼ÓÔØ¶ñÒâ.so Îļþ£¬´Ó¶øÊµÏÖÔ¶³Ì´úÂëÖ´ÐС£
ÓÉÓÚVHOST/VHOST_NETȱÉÙ¶ÔÄں˻º³åÇøµÄÑϸñ»á¼û½çÏÞУÑ飬¹¥»÷Õß¿Éͨ¹ýÔÚÐéÄâ»úÖиü¸ÄVIRTIO networkǰ¶ËÇý¶¯£¬ÔÚ¸ÃÐéÄâ»ú±»ÈÈÇ¨ÒÆÊ±£¬´¥·¢Äں˻º³åÇøÒç³öʵÏÖÐéÄâ»úÌÓÒÝ£¬»ñµÃÔÚËÞÖ÷»úÄÚºËÖÐÈÎÒâÖ´ÐдúÂëµÄȨÏÞ£¬¹¥»÷ÕßÒ²¿É´¥·¢ËÞÖ÷»úÄÚºËÍß½âʵÏ־ܾøÐ§À͹¥»÷¡£
ЧÀÍÆ÷¡¢´æ´¢¡¢ÍøÂç²úÆ·¹ºÖÃÈÈÏߣº
ERP¡¢ÖÎÀíÈí¼þ¹ºÖÃÈÈÏߣº
ÔÆÐ§ÀͲúÆ·ÏúÊÛÈÈÏߣº
pgµç×Ó¹ÙÍøÍøÂçÊÛºóÈÈÏߣº