Ç徲ͨ¸æ
-
×ÛÊö¿ËÈÕ£¬Git±»·¢Ã÷±£´æÒ»¸öDZÔÚµÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2018-11235£©£¬¸ÃÎó²îÔ´ÓÚÔÚÓÃgit cloneʱûÓжÔsubmoduleµÄÎļþ¼ÐÃüÃû×ö×ã¹»µÄÑéÖ¤£¬µ±Óû§ÔÚʹÓà ¡®git clone ¨Crecurse-submodules¡¯ ʱ ¹¥»÷Õß¿ÉÒÔͨ¹ý½á¹¹Ò»¸ö¶ñÒâµÄ gitmodulesÎļþ´Ó¶øÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£²Î¿¼Á´½Ó£ºhttps: blogs msdn microsoft com devops 2018 05 29 announcing-the-may-2018-git-security-vulnerability ÊÜÓ°ÏìµÄ°æ±¾ Git version
¸ü¶à -
¿ËÈÕ£¬ÓÐÒ»¿îÃûΪVPNFilterµÄ¶ñÒâÈí¼þ±»·¢Ã÷ѬȾÁËÖÁÉÙ50ÍòµÄÍøÂç×°±¸£¬TalosÍŶÓÔÚ½ü¼¸¸öÔÂÀ´Ò»Ö±ÔÚÓë¸÷ÍþвÇ鱨³§É̺ÍÖ´·¨»ú¹¹ÏàÖú£¬Í¨¹ýÑо¿ºó·¢Ã÷£¬Õâ¿î¶ñÒâÈí¼þÊ®·ÖÏȽø£¬¿ÉÄÜÊÇÓɹú¼Ò×ÊÖú»òÓë¹ú¼Ò¼¶±ðµÄ¹¥»÷ÕßÌᳫµÄ£¬ÊÇÒ»ÖÖÏȽøµÄÄ£¿é»¯¶ñÒâÈí¼þϵͳ£¨modular malware system£©¡£ ±¾ÎÄÕ¹ÏÖÁ˸öñÒâÈí¼þµÄÊÖÒÕϸ½Ú²¢Ìá³öÁË·À»¤²½·¥¡£ ËäÈ»ÏÖÔÚÑо¿»¹Ã»ÓÐÍêÈ«Íê³É£¬¿ÉÊǹûÕæµÄÐÅÏ¢Ó¦¸Ã»áÓÐÖúÓÚÊÜÓ°ÏìµÄ¿Í»§¿ÉÒÔʵʱµÄ
¸ü¶à -
×ÛÊö ÍâµØÊ±¼ä4ÔÂ17ÈÕ£¬±±¾©Ê±¼ä4ÔÂ18ÈÕÆÆÏþ£¬Oracle¹Ù·½Ðû²¼ÁË4Ô·ݵÄÒªº¦²¹¶¡¸üÐÂCPU£¨Critical Patch Update£©ÆäÖаüÀ¨Ò»¸ö¸ßΣµÄWeblogic·´ÐòÁл¯Îó²î(CVE-2018-2628)£¬Í¨¹ý¸ÃÎó²î£¬¹¥»÷Õß¿ÉÒÔÔÚδÊÚȨµÄÇéÐÎÏÂÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£ ²Î¿¼Á´½Ó£º http: www oracle com technetwork security-advisory cpuapr2018-3678067 htmlÎó²îÓ°Ïì¹æÄ£ lWeblogic 10 3 6 0 lWeblogic 12 1 3 0 lWeblogic 12 2 1 2 lWeblogic
¸ü¶à -
΢ÈíÐû²¼4Ô²¹¶¡ÐÞ¸´67¸öÇå¾²ÎÊÌâ
2018-04-12
΢ÈíÓÚÖܶþÐû²¼ÁË4ÔÂÇå¾²¸üв¹¶¡£¬ÐÞ¸´ÁË67¸ö´Ó¼òÆÓµÄÓÕÆ¹¥»÷µ½Ô¶³ÌÖ´ÐдúÂëµÄÇå¾²ÎÊÌ⣬²úÆ·Éæ¼°Adobe Flash Player¡¢Internet Explorer¡¢Microsoft Browsers¡¢Microsoft Devices¡¢Microsoft Edge¡¢Microsoft Graphics Component¡¢Microsoft JET Database Engine¡¢Microsoft Malware Protection Engine¡¢Microsoft Office¡¢Microsoft scripting Engine¡¢Microsoft Windows¡¢Visual Studio¡¢Windows Hyp
¸ü¶à -
Cisco TalosÍŶÓÐû²¼Í¨¸æ£¬Allen-BradleyµÄMicroLogix 1400 PLC±£´æ¶à¸öÎó²î£¬°üÀ¨¸ßΣµÄ»á¼û¿ØÖÆÎó²îµÈ£¬¹¥»÷Õßͨ¹ýÕâЩÎó²î¿ÉÒÔ¶ÔÊÜÓ°ÏìµÄ×°±¸¾ÙÐоܾø·þÎñ¹¥»÷¡£ Îó²î¹éÄÉ×ÛºÏÈçÏÂ±í£º CVE±àºÅ Îó²îÃû³Æ Ó°ÏìµÄ×°±¸ CVSS 3 0 CVE-2017-12088 ÒÔÌ«Íø¿¨ÌØÖÆÊý¾Ý°ü¾Ü¾ø·þÎñÎó²î Allen Bradley Micrologix 1400 Series B FRN 21 2¼°ÒÔϰ汾 8 6 CVE-2017-12089 ÌÝÐÎͼÂß¼³ÌÐòÏÂÔØ×°±¸¹ÊÕϾܾø·þÎñÎó²î 8 6
¸ü¶à -
Pivotal Spring¹Ù·½Ðû²¼Ç徲ͨ¸æ£¬Spring Data Commons×é¼þÖб£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2018-1273£©£¬¹¥»÷Õ߿ɽṹ°üÀ¨ÓжñÒâ´úÂëµÄSPEL±í´ïʽʵÏÖÔ¶³Ì´úÂë¹¥»÷£¬Ö±½Ó»ñÈ¡·þÎñÆ÷¿ØÖÆÈ¨ÏÞ¡£ Spring DataÊÇÒ»¸öÓÃÓÚ¼ò»¯Êý¾Ý¿â»á¼û£¬²¢Ö§³ÖÔÆ·þÎñµÄ¿ªÔ´¿ò¼Ü°üÀ¨Commons¡¢Gemfire¡¢JPA¡¢JDBC¡¢MongoDBµÈÄ£¿é¡£´ËÎó²î±¬·¢ÓÚSpring Data Commons×é¼þ£¬¸Ã×é¼þΪÌṩ¹²ÏíµÄ»ù´¡¿ò¼Ü£¬Êʺϸ÷¸ö×ÓÏîĿʹÓã¬Ö§³Ö¿çÊý¾Ý¿â³¤ÆÚ»¯¡£
¸ü¶à








