΢ÈíÆ¾Ö¤Çå¾²Ö§³ÖÌṩÐÒ飨CredSSP£©Îó²î £¨CVE-2018-0886£©
2018-03-15
×ÛÊö
΢ÈíµÄƾ֤Çå¾²Ö§³ÖÌṩÐÒ飨CredSSP£©±»ÆØ±£´æÒ»¸öÎó²î(CVE-2018-0886)£¬Í¨¹ýÎó²î£¬¹¥»÷Õß¿ÉÒÔ¿ØÖÆÓòÃû·þÎñÆ÷ºÍÍøÂçÉÏµÄÆäËûϵͳ¡£
¸ÃÎó²îÔ´ÓÚCredSSPÖеÄÒ»´¦¼ÓÃÜÂß¼ÎÊÌ⣬µ±¿Í»§¶ËÅÌËã»úºÍ·þÎñÆ÷ͨ¹ýÔ¶³Ì×ÀÃæÐÒ飨RDP£©ºÍWindowsÔ¶³ÌÖÎÀí£¨WinRM£©ÅþÁ¬ÐÒéÏ໥Ñé֤ʱ£¬¹¥»÷Õß¿ÉÒÔͨ¹ýÖÐÐÄÈ˹¥»÷£¨man-in-the-middle£©À´Ê¹ÓøÃÎó²î¡£Î¢ÈíÒѾÔÚ×òÈÕÐû²¼µÄ3Ô·ݸüÐÂÖнâ¾öÁËÕâ¸öÎÊÌâ¡£
Ïà¹ØÁ´½Ó£º
https://support.microsoft.com/en-us/help/4093492/credssp-updates-for-cve-2018-0886-march-13-2018
https://www.darkreading.com/endpoint/microsoft-remote-access-protocol-flaw-affects-all-windows-machines/d/d-id/1331257
ÊÜÓ°ÏìµÄ°æ±¾
- δװÖÃ3Ô·ÝÇå¾²¸üеÄWindows°æ±¾
²»ÊÜÓ°ÏìµÄ°æ±¾
- ×°Öùý3Ô·ÝÇå¾²¸üеÄWindows°æ±¾
½â¾ö¼Æ»®
΢Èí¹Ù·½ÒѾÔÚ×òÈÕÐû²¼µÄ3Ô·ÝÇå¾²²¹¶¡ÖÐÐÞ¸´ÁËÉÏÊöÎó²î£¬Óû§Ó¦Á¬Ã¦Í¨¹ýWindows×Ô¶¯¸üзþÎñÀ´ÏÂÔØ¸üÐÂÇå¾²²¹¶¡¾ÙÐзÀ»¤¡£
²Î¿¼Á´½Ó£º
https://support.microsoft.com/zh-cn/help/12373/windows-update-faq
https://support.microsoft.com/en-us/help/4093492/credssp-updates-for-cve-2018-0886-march-13-2018
Éù Ã÷
±¾Ç徲ͨ¸æ½öÓÃÀ´ÐÎò¿ÉÄܱ£´æµÄÇå¾²ÎÊÌ⣬¾ÅÓÎÀÏ¸ç¿Æ¼¼²»Îª´ËÇ徲ͨ¸æÌṩÈκΰü¹Ü»òÔÊÐí¡£ÓÉÓÚÈö²¥¡¢Ê¹ÓôËÇ徲ͨ¸æËùÌṩµÄÐÅÏ¢¶øÔì³ÉµÄÈκÎÖ±½Ó»òÕß¼ä½ÓµÄЧ¹û¼°Ëðʧ£¬¾ùÓÉʹÓÃÕß×Ô¼ºÈÏÕæ£¬¾ÅÓÎÀÏ¸ç¿Æ¼¼ÒÔ¼°Ç徲ͨ¸æ×÷Õß²»Îª´Ë¼ç¸ºÈκÎÔðÈΡ£¾ÅÓÎÀÏ¸ç¿Æ¼¼ÓµÓжԴËÇ徲ͨ¸æµÄÐÞ¸ÄÏ¢ÕùÊÍȨ¡£ÈçÓû×ªÔØ»òÈö²¥´ËÇ徲ͨ¸æ£¬±ØÐè°ü¹Ü´ËÇ徲ͨ¸æµÄÍêÕûÐÔ£¬°üÀ¨°æÈ¨ÉùÃ÷µÈËùÓÐÄÚÈÝ¡£Î´¾¾ÅÓÎÀÏ¸ç¿Æ¼¼ÔÊÐí£¬²»µÃí§ÒâÐ޸ĻòÕßÔö¼õ´ËÇ徲ͨ¸æÄÚÈÝ£¬²»µÃÒÔÈκη½·¨½«ÆäÓÃÓÚÉÌҵĿµÄ¡£

¾ÅÓÎÀϸçÔÆ





