ÐÅÏ¢°²È«Öܱ¨-2019ÄêµÚ22ÖÜ
°ä²¼¹¦·ò 2019-06-10±¾Öܰ²È«Ì¬ÊÆ×ÛÊö
2019Äê6ÔÂ03ÈÕÖÁ09ÈÕ¹²ÊÕ¼°²È«·ì϶51¸ö£¬£¬£¬£¬£¬£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇVimºÍNeovim OSºÅÁî×¢Èë·ì϶£»£»£»£»£»£»£»£»Exim deliver_message() ´úÂëÖ´Ðзì϶£»£»£»£»£»£»£»£» Citrix Workspace app and Receiver for WindowsÔ¶³Ì´úÂëÖ´Ðзì϶£»£»£»£»£»£»£»£»PHP php_jpg_get16¶ÑÒç¶Âí½Å£»£»£»£»£»£»£»£»NETGEAR Insight post-authenticationºÅÁî×¢Èë·ì϶¡£¡£¡£¡£¡£¡£±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊÇGandCrabÖÕ³¡ÔËÓª£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß°ä·¢¹Ø¹ØRaaS·þÎñ£»£»£»£»£»£»£»£»AMCAÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂ1190ÍòQuest Diagnostics»¼ÕßÐÅϢй¶£»£»£»£»£»£»£»£»WestpacÒøÐÐÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬Ô¼10ÍòÃû¿Í»§ÐÅϢй¶£»£»£»£»£»£»£»£»Windows RDPÐÂ0day£¬£¬£¬£¬£¬£¬£¬£¬¿É½Ù³ÖÔ¶³Ì×ÀÃæ»á»°£»£»£»£»£»£»£»£»AMCAÊý¾Ýй¶»¹²¨¼°Ô¼770ÍòLabCorp¿Í»§¡£¡£¡£¡£¡£¡£
³ÁÒª°²È«·ì϶Áбí
VimºÍNeovim getchar.cÎļþ´æÔÚÊäÈëÑéÖ¤·ì϶£¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÎļþÒªÇ󣬣¬£¬£¬£¬£¬£¬£¬ÓÕʹÓû§½âÎö£¬£¬£¬£¬£¬£¬£¬£¬Äܹ»ÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâOSºÅÁî¡£¡£¡£¡£¡£¡£
https://github.com/vim/vim/commit/53575521406739cf20bbe4e384d88e7dca11f040
2. Exim deliver_message() ´úÂëÖ´Ðзì϶
Exim deliver_message()²»ÕýÈ·ÑéÖ¤½Ó¹ÜÈëµØÖ··ì϶£¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬£¬£¬ÒÔÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£
https://exim.org/static/doc/security/CVE-2019-10149.txt
3. Citrix Workspace app and Receiver for WindowsÔ¶³Ì´úÂëÖ´Ðзì϶
Citrix Workspace app and Receiver for Windows´æÔÚ°²È«·ì϶£¬£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚδǿÔìÖ´Ðб¾µØÇý¶¯Æ÷½Ó¼ûÊ×Ñ¡Ï£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÄܹ»¶Ô¿Í»§¶Ë±¾µØÇý¶¯Æ÷½øÐжÁ/д½Ó¼û£¬£¬£¬£¬£¬£¬£¬£¬½ø¶øÔÚ¿Í»§¶ËÉ豸ÉϵĴúÂëÖ´ÐС£¡£¡£¡£¡£¡£
https://support.citrix.com/article/CTX251986
4. PHP php_jpg_get16¶ÑÒç¶Âí½Å
PHP php_jpg_get16´æÔÚ¶ÑÒç¶Âí½Å£¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶¿ÉÌá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬£¬£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»£»£»£»£»£»£»£»òÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£
https://bugs.php.net/bug.php?id=77988
5. NETGEAR Insight post-authenticationºÅÁî×¢Èë·ì϶
NETGEAR Insight Cloud post-authentication´æÔÚÊäÈëÑéÖ¤·ì϶£¬£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬£¬£¬¿ÉÖ´ÐÐËÁÒâºÅÁî¡£¡£¡£¡£¡£¡£
https://kb.netgear.com/000060977/Security-Advisory-for-Post-Authentication-Command-Injection-on-Insight-Cloud-PSV-2018-0366
³ÁÒª°²È«ÊÂÎñ×ÛÊö
ÀÕË÷Èí¼þGandCrabµÄ¿ª·¢ÕßÔÚºÚ¿ÍÂÛ̳Éϰ䷢½«ÔÚÒ»¸öÔÂÄÚ¹Ø¹ØÆäRaaS£¨ÀÕË÷Èí¼þ¼´·þÎñ£©ÒµÎñ£¬£¬£¬£¬£¬£¬£¬£¬×Ô2018Äê1ÔÂÕýÊ½ÍÆ³öÒÔÀ´£¬£¬£¬£¬£¬£¬£¬£¬GandCrab RaaSÒ»ÏòÔÚ¸ÃÂÛ̳ÉÏÐû´«×Ô¼ºµÄ·þÎñ¡£¡£¡£¡£¡£¡£¹¥»÷Õß°µÊ¾ËûÃÇÒѾ¿¿¸ÃÀÕË÷Èí¼þ׬ȡÁ˳¬¹ý20ÒÚÃÀÔªµÄÊê½ð£¬£¬£¬£¬£¬£¬£¬£¬Òò¶ø¾ö¶¨¡°ÍËÐÝ¡±£¬£¬£¬£¬£¬£¬£¬£¬µ«ÕâÒ»Êý×ÖµÄÕæÊµÐÔ´æÒÉ¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹°µÊ¾½«É¾³ýËùÓеĽâÃÜÃÜÔ¿£¬£¬£¬£¬£¬£¬£¬£¬Ê¹µÃÊܺ¦ÕßÎÞ·¨¸´ÔÎļþ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/gandcrab-ransomware-operation-says-its-shutting-down/
2¡¢AMCAÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂ1190ÍòQuest Diagnostics»¼ÕßÐÅϢй¶
ÃÀ¹úÕ˵¥·þÎñ¹«Ë¾AMCAÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÊÂÎñµ¼ÖÂѪҺ¼ì²â¹«Ë¾Quest DiagnosticsµÄ1190Íò»¼ÕßÐÅϢй¶¡£¡£¡£¡£¡£¡£Æ¾¾ÝAMCAµÄ²¼¸æ£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÊÂÎñ²úÉúÔÚ2018Äê8ÔÂ1ÈÕÖÁ2019Äê3ÔÂ30ÈÕÆÚ¼ä£¬£¬£¬£¬£¬£¬£¬£¬Î´¾ÊÚȨµÄ¹¥»÷Õß½Ó¼ûÁËAMCAµÄϵͳ£¬£¬£¬£¬£¬£¬£¬£¬¸ÃϵͳÔ̺¬Quest DiagnosticsµÄ»¼ÕßÐÅÏ¢¡£¡£¡£¡£¡£¡£Ð¹Â¶µÄÐÅÏ¢Ô̺¬ÒøÐÐÕË»§Êý¾ÝºÍÐÅÓþ¿¨ºÅµÈ²ÆÕþÐÅÏ¢ÒÔ¼°Ò½ÁÆÐÅÏ¢ºÍÉç»á°²È«ºÅÂëµÈÓ×ÎÒÐÅÏ¢¡£¡£¡£¡£¡£¡£QuestºÍAMCAÔÚ¶Ô´ËÊÂÎñ½øÐе÷²é¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/billing-details-for-119m-quest-diagnostics-clients-exposed/
3¡¢WestpacÒøÐÐÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬Ô¼10ÍòÃû¿Í»§ÐÅϢй¶
ÔÎÄÁ´½Ó£º
https://au.finance.yahoo.com/news/100-000-australians-reportedly-risk-232227017.html
4¡¢Windows RDPÐÂ0day£¬£¬£¬£¬£¬£¬£¬£¬¿É½Ù³ÖÔ¶³Ì×ÀÃæ»á»°
¿¨ÄÚ»ù÷¡CERT/CCÅû¶Windows RDP·þÎñÖеÄÒ»¸ö佨¸´µÄ0day£¨CVE-2019-9510£©£¬£¬£¬£¬£¬£¬£¬£¬¸Ã·ì϶¿ÉÔÊÐí¹¥»÷ÕßÈÆ¹ýÔ¶³Ì×ÀÃæ»á»°ÖÐµÄÆÁÄ»Ëø¶¨²¢½Ù³Ö»á»°¡£¡£¡£¡£¡£¡£¸Ã·ì϶ÓëRDPµÄÍøÂçÉí·ÝÑéÖ¤NLAÓйأ¬£¬£¬£¬£¬£¬£¬£¬CERTÃèÊöµÄ¹¥»÷³¡¾°Îª£ºÓû§Ê¹ÓÃRDPÏνӵ½Windows 10 1803»òServer 2019»ò¸üеÄϵͳ£¬£¬£¬£¬£¬£¬£¬£¬¶øºóËø¶¨Ô¶³Ì×ÀÃæ»á»°²¢ÍÑÀë¿Í»§¶Ë£¬£¬£¬£¬£¬£¬£¬£¬´Ëʱ¹¥»÷Õß¿ÉÖжÏRDPÍøÂçÏνӣ¬£¬£¬£¬£¬£¬£¬£¬Õ⽫µ¼ÖÂËü×Ô¶¯³ÁÁ¬²¢ÈƹýWindowsÆÁÄ»Ëø¶¨£¬£¬£¬£¬£¬£¬£¬£¬´Ó¶ø½øÐз¸·¨½Ó¼û¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/remote-desktop-zero-day-bug-allows-attackers-to-hijack-sessions/
5¡¢AMCAÊý¾Ýй¶»¹²¨¼°Ô¼770ÍòLabCorp¿Í»§
LabCorpÒ²Êܵ½µÚÈý·½¹©¸øÉÌAMCAÊý¾Ýй¶ÊÂÎñµÄÓ°Ï죬£¬£¬£¬£¬£¬£¬£¬Ô¼770Íò¿Í»§ÐÅϢй¶¡£¡£¡£¡£¡£¡£Ð¹Â¶µÄÐÅÏ¢Ô̺¬ÐÕÃû¡¢µ®ÉúÈÕÆÚ¡¢µØÖ·¡¢µç»°ºÅÂë¡¢·þÎñÈÕÆÚÒÔ¼°ÐÅÓþ¿¨ºÍÒøÐÐÐÅÏ¢µÈ¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñ²úÉúÔÚ2018Äê8ÔÂ1ÈÕÖÁ2019Äê3ÔÂ30ÈÕÖ®¼ä£¬£¬£¬£¬£¬£¬£¬£¬´Ëǰ±íý±¨Â·Quest DiagnosticsµÄ¿Í»§ÐÅÏ¢ÔÚ¸ÃÊÂÎñÖÐй¶¡£¡£¡£¡£¡£¡£LabCorp°µÊ¾¿Í»§µÄÉç»á°²È«ºÅÂ벢δй¶£¬£¬£¬£¬£¬£¬£¬£¬´Ë±í¿Í»§µÄ¼ì²âÁ˾֡¢Ò½ÁÆÕï¶ÏÐÅϢҲδй¶¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://cyware.com/news/around-77-million-labcorp-customers-impacted-from-amca-data-breach-c3edd754


¾©¹«Íø°²±¸11010802024551ºÅ