¸ÃÎó²îÓÉÆ滢360Ñо¿Ö°Ô±·¢Ã÷¡£
¹¥»÷ÕßÔÚÓµÓÐÔÆÇéÐÎÐéÄâ»ú²Ù×÷ϵͳȨÏÞµÄÇéÐÎÏ£¬¿ÉÒÔʹÓøÃÎó²î»ñÈ¡ËÞÖ÷»úȨÏÞ£¬½ø¶ø¹¥»÷ÐéÄâ»úËùÔÚ×ÊÔ´³ØËùÓÐ×⻧Ö÷»ú
QEMU USBÄ£ÄâÆ÷Öб£´æÒ»¸öÔ½½ç¶ÁдÎó²î£¨CVE-2020-14364£©£¬´ËÎó²îÓÉÓÚQEMU USBÄ£¿éÖеÄÊý×éÔ½½ç¶ÁдÔì³É£¬Îó²îλÓÚ¡°./hw/usb/core.c¡± ÖС£¹¥»÷ÕßÔÚÓµÓÐÔÆÇéÐÎÐéÄâ»ú²Ù×÷ϵͳȨÏÞµÄÇéÐÎÏ£¬¿ÉÒÔʹÓøÃÎó²î»ñÈ¡ËÞÖ÷»úȨÏÞ£¬½ø¶ø¹¥»÷ÐéÄâ»úËùÔÚ×ÊÔ´³ØËùÓÐ×⻧Ö÷»ú¡£
CVSSÆÀ·Ö£º
CVE | V3.1 Vector(Base) | Base Score | V3.1 Vector(Temporal Score) | Temporal Score |
CVE-2020-10713 | AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H | 8.2 | E:U/RL:O/RC:C | 7.1 |
ÊÜÓ°Ïì²úÆ·£º
²úÆ·Ãû³Æ | ÊÜÓ°Ïì²úÆ·°æ±¾ | ÐÞ¸´²¹¶¡°ü/Éý¼¶°ü°æ±¾ |
ICS | ICS<=5.8.1 |
V5.8.1°æ±¾Í¨¹ý²¹¶¡¾ÙÐÐÐÞ¸´£¬²¹¶¡°üÃû³Æ£º
IncloudSphere-V5R08B017-b1-M001.hotfix.zip
IncloudSphere-V5R08B017-b1-S001.hotfix.zip£»
СÓÚV5.8.1°æ±¾²úÆ·£¬ÐèÒªÏÈÉý¼¶µ½v5.8.1°æ±¾£¬ÔÙͨ¹ý²¹¶¡¾ÙÐÐÐÞ¸´¡£
|
ICOS | ICOS<=5.8 | ICOS-CVE-2020-14364.rar |
Îó²îÔµ¹ÊÔÓÉ£ºµ±s->setup_len »ñµÃµÄÖµ´óÓÚsizeof(s->data_buf) ʱ£¬·µ»ØʱûÓн«s->setup_lenµÄÖµÇåÁã¡£µ¼ÖºóÐøÔÚº¯Êýdo_token_in »ò do_token_outʹÓÃs->setup_lenʱ·ºÆðÔ½½ç¶ÁдÎó²î¡£
Îó²î½â¾ö¼Æ»®£ºICOS¡¢ICSÓû§Ö±½ÓÁªÏµÖ§³ÖÖ°Ô±»ñÈ¡²¹¶¡ÒÔ¼°Ïà¹ØµÄÊÖÒÕÐÖú¡£
FAQ£ºÎÞ
¸üмͼ£º20201001-V1.0-Initial Release
K8¿·¢¡¤¹ú¼Ê¹Ù·½ÍøÕ¾Çå¾²Ó¦¼±ÏìÓ¦¶ÔÍâ·þÎñ£º»ñÈ¡ÊÖÒÕÖ§³Ö£º/lcjtww/2317452/2317456/2317460/index.html
±¾ÎĵµÌṩµÄËùÓÐÊý¾ÝºÍÐÅÏ¢½ö¹©²Î¿¼£¬ÇÒ"°´ÔÑù"Ìṩ£¬²»ÔÊÐíÈκÎÕÑʾ¡¢Ä¬Ê¾ºÍ·¨¶¨µÄµ£±££¬°üÀ¨(µ«²»ÏÞÓÚ)¶ÔÊÊÏúÐÔ¡¢ÊÊÓÃÐÔ¼°²»ÇÖȨµÄµ£±£¡£ÔÚÈκÎÇéÐÎÏ£¬K8¿·¢¡¤¹ú¼Ê¹Ù·½ÍøÕ¾»òÆäÖ±½Ó»ò¼ä½Ó¿ØÖƵÄ×Ó¹«Ë¾£¬»òÆ乩ӦÉÌ£¬¾ù²î³ØÈκÎÒ»·½ÒòÒÀÀµ»òʹÓñ¾ÐÅÏ¢¶øÔâÊܵÄÈκÎËðʧ¼ç¸ºÔðÈΣ¬°üÀ¨Ö±½Ó£¬¼ä½Ó£¬ÎÞÒ⣬һ¶¨µÄÉÌÒµÀûÈóËðʧ»òÌØÊâËðʧ¡£K8¿·¢¡¤¹ú¼Ê¹Ù·½ÍøÕ¾±£´æËæʱ¸ü¸Ä»ò¸üдËÎĵµµÄȨÁ¦¡£