OpenSSL¹Ù·½Ðû²¼
¾Ü¾ø·þÎñ
¿ËÈÕ£¬OpenSSL¹Ù·½Ðû²¼Çå¾²¸üУ¬ÐÞ¸´ÁËOpenSSL¾Ü¾ø·þÎñÎó²î£¨CVE-2022-0778£©¡£¸ÃÎó²îÊÇÓÉÓÚÖ¤ÊéÆÊÎöʱʹÓÃµÄ BN_mod_sqrt() º¯Êý±£´æÒ»¸ö¹ýʧ£¬Ëü»áµ¼ÖÂÔÚ·ÇÖÊÊýµÄÇéÐÎÏÂÓÀԶѻ·¡£¿Éͨ¹ýÌìÉú°üÀ¨ÎÞЧµÄÏÔʽÇúÏß²ÎÊýµÄÖ¤ÊéÀ´´¥·¢ÎÞÏÞÑ»·¡£ÓÉÓÚÖ¤ÊéÆÊÎöÊÇÔÚÑéÖ¤Ö¤ÊéÊðÃû֮ǰ¾ÙÐеģ¬Òò´ËÈκÎÆÊÎöÍⲿÌṩµÄÖ¤ÊéµÄ³ÌÐò¶¼¿ÉÄÜÊܵ½¾Ü¾ø·þÎñ¹¥»÷¡£
CVSSÆÀ·Ö£º
CVE | V3.1 Vector(Base) | Base Score | V3.1 Vector(Temporal Score) | Temporal Score |
CVE-2022-0778 | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H | 7.8 | E:P/RL:O/RC:C | 6.7 |
ÊÜÓ°Ïì²úÆ·£º
²úÆ·Ãû³Æ | ÊÜÓ°Ïì²úÆ·°æ±¾ | ²¹¶¡°ü/Éý¼¶°ü |
ICS | ICS <= 6.5.0 | InCloudSphere-V6R05B114-b1-x86_64-M001-b1.upgrade.zip InCloudSphere-V6R05B114-b1-x86_64-S001-b1.upgrade.zip |
ICM | ICM<=5.6.3 | CVE-2022-0778.zip |
ICKS | ICKS<=2.5 | CVE-2022-0778.zip |
ICOS | ICOS<=5.8.2 | CVE-2022-0778.zip |
InClousOS | InCloudOS<=6.0.3 | cloud_security_set.tar.gz |
ÎÞ
Îó²î½â¾ö¼Æ»®£ºÇëÓû§Ö±½ÓÁªÏµ¿Í»§·þÎñÖ°Ô±£¬»ñÈ¡²¹¶¡ÒÔ¼°Ïà¹ØµÄÊÖÒÕÖ§³Ö¡£
FAQ£ºÎÞ
¸üмͼ£º20220530-V1.0-Initial Release
20220614-V1.1-Update ÔöÌíÊÜÓ°Ïì²úÆ·
20221107-V1.2-Update ÔöÌíÊÜÓ°Ïì²úÆ·
»ñÈ¡ÊÖÒÕÖ§³Ö£º/lcjtww/2317452/2317456/2317460/index.html
±¾ÎĵµÌṩµÄËùÓÐÊý¾ÝºÍÐÅÏ¢½ö¹©²Î¿¼£¬ÇÒ"°´ÔÑù"Ìṩ£¬²»ÔÊÐíÈκÎÕÑʾ¡¢Ä¬Ê¾ºÍ·¨¶¨µÄµ£±££¬°üÀ¨(µ«²»ÏÞÓÚ)¶ÔÊÊÏúÐÔ¡¢ÊÊÓÃÐÔ¼°²»ÇÖȨµÄµ£±£¡£ÔÚÈκÎÇéÐÎÏ£¬K8¿·¢¡¤¹ú¼Ê¹Ù·½ÍøÕ¾»òÆäÖ±½Ó»ò¼ä½Ó¿ØÖƵÄ×Ó¹«Ë¾£¬»òÆ乩ӦÉÌ£¬¾ù²î³ØÈκÎÒ»·½ÒòÒÀÀµ»òʹÓñ¾ÐÅÏ¢¶øÔâÊܵÄÈκÎËðʧ¼ç¸ºÔðÈΣ¬°üÀ¨Ö±½Ó£¬¼ä½Ó£¬ÎÞÒ⣬һ¶¨µÄÉÌÒµÀûÈóËðʧ»òÌØÊâËðʧ¡£K8¿·¢¡¤¹ú¼Ê¹Ù·½ÍøÕ¾±£´æËæʱ¸ü¸Ä»ò¸üдËÎĵµµÄȨÁ¦¡£