¸ü¶à Ñ¡ÔñÓïÑÔ
< ·µ»ØÖ÷²Ëµ¥
Çå¾²Ô¤¾¯-Linux TCPÔ¶³Ì¾Ü¾ø·þÎñÎó²î
Ô¤¾¯±àºÅ£ºINSPUR-SA-201907-001
³õʼÐû²¼Ê±¼ä£º2019-07-09 10:13:24
¸üÐÂÐû²¼Ê±¼ä£º2019-07-15 16:58:46
Îó²îȪԴ£º

Íⲿ¹ûÕæÅû¶

Îó²îÓ°Ï죺

¹¥»÷Õßͨ¹ý½á¹¹Ìض¨µÄSACK°ü £¬Ô¶³Ì´¥·¢Linux·þÎñÆ÷ÄÚºËÄ £¿éÒç³öÎó²î £¬µ¼ÖÂÄ¿µÄ·þÎñÆ÷±ÀÀ£»ò·þÎñ²»¿ÉÓá£

Îó²îÐÎò£º

Netflix ÐÅÏ¢Çå¾²ÍŶÓÑо¿Ô±Jonathan Looney·¢Ã÷ Linux ÒÔ¼° FreeBSD µÈϵͳÄÚºËÉϱ£´æÑÏÖØÔ¶³ÌDoSÎó²î£¨CVE±àºÅ£ºCVE-2019-11477,CVE-2019-11478,CVE-2019-11479£©¡£Linux ÄÚºË2.6.29¼°Ö®ºó°æ±¾ÔÚ´¦Öóͷ£TCP SACK»úÖÆʱ±£´æȱÏÝ £¬µ¼ÖÂÕûÊýÒç³öÎó²î £¬¹¥»÷Õß¿ÉÒԽṹÌض¨µÄSACK°ü £¬Ô¶³Ì´¥·¢Linux·þÎñÆ÷ÄÚºËÄ £¿éÒç³öÎó²î £¬µ¼ÖÂÄ¿µÄ·þÎñÆ÷±ÀÀ£»ò·þÎñ²»¿ÉÓá£

CVSSÆÀ·Ö£º

ʹÓÃCVSSv3±ê×¼ÆÀ·Ö£¨https://www.first.org/cvss/calculator/3.0£©
CVE-2019-11477£º
CVSS Base Score: 7.5£¨AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H£©
CVSS Temporal Score£º6.7 (E:P/RL:O/RC:C)
CVE-2019-11478£º
CVSS Base Score: 7.5£¨AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H£©
CVSS Temporal Score£º6.7 (E:P/RL:O/RC:C)
CVE-2019-11479£º
CVSS Base Score: 7.5£¨AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H£©
CVSS Temporal Score£º6.7 (E:P/RL:O/RC:C)

ÊÜÓ°Ïì²úÆ·£º

 ²úÆ·Ãû³Æ  ÊÜÓ°Ïì²úÆ·°æ±¾  ÐÞ¸´²¹¶¡°ü/Éý¼¶°ü°æ±¾
 ICOS  ICOS 5.2.x
 ICOS 5.5.x
 ICOS 5.6.x
 Icos_Update_2019062601
 ICM  ICM5.2
 ICM5.6
 Kernel-3.10.0-957-centos7.2
 ICS  ICS 5.6  IncloudSphere-V5R06B08M002
 IncloudSphere-V5R06B08S002
 AS13000  3.6.x.x
 3.7.x.x < 3.7.4.3
 Kernel-3.10.0-327.79.2
 Kernel-3.10.0-693.50.3

ÊÖÒÕϸ½Ú£º

1. Ìõ¼þÌõ¼þ£º
Linux ÄÚºË2.6.29¼°Ö®ºó°æ±¾ £¬ÆôÓÃSACK»úÖƹ¦Ð§£¨Ä¬ÈÏ¿ªÆô£©
2. ¹¥»÷°ì·¨£º
ÔÚijЩ³¡¾°Ï £¬¹¥»÷Õß¿ÉÒԽṹÌض¨µÄSACK°ü £¬Ô¶³Ì´¥·¢Linux·þÎñÆ÷ÄÚºËÄ £¿éÒç³öÎó²î £¬µ¼ÖÂÄ¿µÄ·þÎñÆ÷±ÀÀ£»ò·þÎñ²»¿ÉÓá£

Îó²î½â¾ö¼Æ»®£º

ICM¡¢ICOS²¹¶¡°ü»ñÈ¡Á´½Ó£º/eportal/ui?pageId=2252797
ICS¡¢AS13000¡¢AS180000²úÆ· £¬ÇëÓû§Ö±½ÓÁªÏµÖ§³ÖÖ°Ô±»ñÈ¡²¹¶¡/¸üа汾 £¬ÒÔ¼°Ïà¹ØµÄÊÖÒÕЭÖú¡£

FAQ£º

ÎÞ

¸üмͼ£º

20190715-V1.1-Updated ¸üÐÂÒÑÍê³ÉÐÞ¸´µÄ²úÆ·°æ±¾

20190709-V1.0-Initial Release

K8¿­·¢¡¤¹ú¼Ê¹Ù·½ÍøÕ¾Çå¾²Ó¦¼±ÏìÓ¦¶ÔÍâ·þÎñ£º
K8¿­·¢¡¤¹ú¼Ê¹Ù·½ÍøÕ¾Ò»Ö±Ö÷Õž¡È«Á¦°ü¹Ü²úÆ·Óû§µÄ×îÖÕÀûÒæ £¬×ñÕÕÈÏÕæÈεÄÇå¾²ÊÂÎñÅû¶ԭÔò £¬²¢Í¨¹ý²úÆ·Çå¾²ÎÊÌâ´¦Öóͷ£»úÖÆ´¦Öóͷ£²úÆ·Çå¾²ÎÊÌâ¡£
·´ÏìK8¿­·¢¡¤¹ú¼Ê¹Ù·½ÍøÕ¾²úÆ·Çå¾²ÎÊÌ⣺ /lcjtww/psirt/vulnerability-management/index.html#report_ldbg

»ñÈ¡ÊÖÒÕÖ§³Ö£º/lcjtww/2317452/2317456/2317460/index.html

ÉùÃ÷

±¾ÎĵµÌṩµÄËùÓÐÊý¾ÝºÍÐÅÏ¢½ö¹©²Î¿¼ £¬ÇÒ"°´Ô­Ñù"Ìṩ £¬²»ÔÊÐíÈκÎÕÑʾ¡¢Ä¬Ê¾ºÍ·¨¶¨µÄµ£±£ £¬°üÀ¨(µ«²»ÏÞÓÚ)¶ÔÊÊÏúÐÔ¡¢ÊÊÓÃÐÔ¼°²»ÇÖȨµÄµ£±£¡£ÔÚÈκÎÇéÐÎÏ £¬K8¿­·¢¡¤¹ú¼Ê¹Ù·½ÍøÕ¾»òÆäÖ±½Ó»ò¼ä½Ó¿ØÖƵÄ×Ó¹«Ë¾ £¬»òÆ乩ӦÉÌ £¬¾ù²î³ØÈκÎÒ»·½ÒòÒÀÀµ»òʹÓñ¾ÐÅÏ¢¶øÔâÊܵÄÈκÎËðʧ¼ç¸ºÔðÈÎ £¬°üÀ¨Ö±½Ó £¬¼ä½Ó £¬ÎÞÒâ £¬Ò»¶¨µÄÉÌÒµÀûÈóËðʧ»òÌØÊâËðʧ¡£K8¿­·¢¡¤¹ú¼Ê¹Ù·½ÍøÕ¾±£´æËæʱ¸ü¸Ä»ò¸üдËÎĵµµÄȨÁ¦¡£

ÔÚ
Ïß
¿Í
·þ
?
Áª
ϵ
ÎÒ
ÃÇ
¡Á
k8¡¤¿­·¢(Öйú)ÌìÉúÓ®¼Ò¡¤Ò»´¥¼´·¢ ÁªÏµK8¿­·¢¡¤¹ú¼Ê¹Ù·½ÍøÕ¾
ERP¡¢ÆóÒµÈí¼þ¹ºÖÃÈÈÏß
400-018-7700
ÔÆ·þÎñ²úÆ·ÏúÊÛÈÈÏß
400-607-6657
¼¯ÍÅ¿Í»§Í¶ËßÈÈÏß
400-691-8711
ÖÇÄÜÖն˲úÆ·¿Í·þÈÈÏß
400-658-6111
ÍøÕ¾µØͼ