ÐÅÏ¢Çå¾²Öܱ¨-2021ÄêµÚ10ÖÜ

Ðû²¼Ê±¼ä 2021-03-08

> ±¾ÖÜÇå¾²Ì¬ÊÆ×ÛÊö


2021Äê03ÔÂ01ÈÕÖÁ03ÔÂ07ÈÕ¹²ÊÕ¼Çå¾²Îó²î60¸ö£¬£¬£¬£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇMicrosoft Exchange Server CVE-2021-27078Ô¶³Ì´úÂëÖ´ÐÐÎó²î£»£»£»£»Google Chrome TabStrip¶ÑÒç³ö´úÂëÖ´ÐÐÎó²î£»£»£»£»CGAL libcgal CGAL PM_io_parser::read_vertex()Ô½½ç¶Á¾Ü¾øÐ§ÀÍÎó²î£»£»£»£»Courier Management System MULTIPART street×¢ÈëÎó²î£»£»£»£»Rockwell Automation WEB½Ó¿Ú¿çÕ¾¾ç±¾Îó²î ¡£¡£¡£¡£¡£¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊÇRockwell AutomationµÄPLC±£´æÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î£»£»£»£»ºÚ¿ÍÔÚ°µÍø³öÊÛ3¿îVPNÈí¼þµÄ2100ÍòµÄÓû§Êý¾Ý£»£»£»£»UHSÉù³ÆÈ¥ÄêµÄRyukÀÕË÷¹¥»÷Ôì³É6700ÍòÃÀÔªµÄËðʧ£»£»£»£»SolarWinds¸ß¹Ü³ÆÆäÔâµ½µÄ¹©Ó¦Á´¹¥»÷Ô´ÓÚÈõ¿ÚÁîй¶£»£»£»£»ÂíÀ´Î÷ÑǺ½¿Õ¹«Ë¾³ÆÆä»áÔ±ÐÅÏ¢ÒÑй¶³¤´ï¾ÅÄêÖ®¾Ã ¡£¡£¡£¡£¡£¡£


ƾ֤ÒÔÉÏ×ÛÊö£¬£¬£¬£¬£¬£¬±¾ÖÜÇå¾²ÍþвΪÖÐ ¡£¡£¡£¡£¡£¡£


> Ö÷ÒªÇå¾²Îó²îÁбí


1.Microsoft Exchange Server CVE-2021-27078Ô¶³Ì´úÂëÖ´ÐÐÎó²î


Microsoft Exchange Server±£´æÇå¾²Îó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬¿ÉÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë ¡£¡£¡£¡£¡£¡£

https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-27078


2.Google Chrome TabStrip¶ÑÒç³ö´úÂëÖ´ÐÐÎó²î


Google Chrome TabStrip±£´æ¶ÑÒç³öÎó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄWEBÒ³£¬£¬£¬£¬£¬£¬ÓÕʹÓû§ÆÊÎö£¬£¬£¬£¬£¬£¬¿ÉʹӦÓóÌÐò±ÀÀ£»£»£»£»òÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë ¡£¡£¡£¡£¡£¡£

https://chromereleases.googleblog.com/2021/03/stable-channel-update-for-desktop.html


3.CGAL libcgal CGAL PM_io_parser::read_vertex()Ô½½ç¶Á¾Ü¾øÐ§ÀÍÎó²î


Laurent Rineau CGAL PM_io_parser::read_vertex()±£´æÔ½½ç¶ÁÎó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬¿ÉʹӦÓóÌÐòÍ߽⠡£¡£¡£¡£¡£¡£

https://talosintelligence.com/vulnerability_reports/TALOS-2020-1225


4.Courier Management System MULTIPART street×¢ÈëÎó²î


SourceCodester Courier Management System MULTIPART street×ֶδ¦Öóͷ£±£´æSQL×¢ÈëÎó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄSQLÇëÇ󣬣¬£¬£¬£¬£¬²Ù×÷Êý¾Ý¿â£¬£¬£¬£¬£¬£¬¿É»ñÈ¡Ãô¸ÐÐÅÏ¢»òÖ´ÐÐí§Òâ´úÂë ¡£¡£¡£¡£¡£¡£

https://www.exploit-db.com/exploits/49242


5.Rockwell Automation WEB½Ó¿Ú¿çÕ¾¾ç±¾Îó²î


Rockwell Automation WEB½Ó¿Ú±£´æ¿çÕ¾¾ç±¾Îó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²î×¢Èë¶ñÒâ¾ç±¾»òHTML´úÂ룬£¬£¬£¬£¬£¬µ±¶ñÒâÊý¾Ý±»Éó²éʱ£¬£¬£¬£¬£¬£¬¿É»ñÈ¡Ãô¸ÐÐÅÏ¢»òÐ®ÖÆÓû§»á»° ¡£¡£¡£¡£¡£¡£

https://www.suse.com/support/update/announcement/2020/suse-su-202014502-1/


> Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö


1¡¢Rockwell AutomationµÄPLC±£´æÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î


1.jpg


Ñо¿Ö°Ô±·¢Ã÷Rockwell AutomationµÄ¿É±à³ÌÂß¼­¿ØÖÆÆ÷£¨PLC£©Öб£´æÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î ¡£¡£¡£¡£¡£¡£¸ÃÎó²î±»×·×ÙΪCVE-2021-22681£¬£¬£¬£¬£¬£¬CVSSÆÀ·ÖΪ10£¬£¬£¬£¬£¬£¬Æä±£´æÓÚLogix DesignerÈí¼þÖУ¬£¬£¬£¬£¬£¬ÊÇÓÉÓÚÑéÖ¤¿ØÖÆÆ÷ͨѶµÄ˽ÓÐÃÜÔ¿±£»£»£»£»¤È±·¦µ¼Ö嵀 ¡£¡£¡£¡£¡£¡£Î´¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß¿ÉʹÓøÃÎó²îÈÆ¹ýÑéÖ¤»úÖÆÀ´ÅþÁ¬Logix¿ØÖÆÆ÷ ¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬Ê¹ÓôËÎó²îºÍµÚÈý·½¹¤¾ß»¹Äܸü¸Ä¿ØÖÆÆ÷µÄÉèÖúÍÓ¦ÓóÌÐò´úÂë ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/115085/ics-scada/rockwell-automation-software-flaw.html


2¡¢ºÚ¿ÍÔÚ°µÍø³öÊÛ3¿îVPNÈí¼þµÄ2100ÍòµÄÓû§Êý¾Ý


2.jpg


ºÚ¿ÍÔÚ°µÍø³öÊÛ3¿îAndroid VPNЧÀÍ£¨SuperVPN¡¢GeckoVPNºÍChatVPN£©µÄÓû§Æ¾Ö¤ºÍ×°±¸Êý¾Ý£¬£¬£¬£¬£¬£¬×ܹ²Éæ¼°2100ÍòÓû§ ¡£¡£¡£¡£¡£¡£Ð¹Â¶µÄÓû§ÐÅÏ¢°üÀ¨µç×ÓÓʼþµØµã¡¢Óû§Ãû¡¢ÐÕÃû¡¢¹úÃû¡¢Ëæ»úÌìÉúµÄÃÜÂë×Ö·û´®¡¢¸¶¿îÏà¹Ø×ÊÁϺ͸߼¶»áÔ±Éí·Ý¼°ÆäÓÐÓÃÆÚµÈ£¬£¬£¬£¬£¬£¬×°±¸Êý¾Ý°üÀ¨×°±¸ÐòÁкš¢ÊÖ»úÀàÐͺÍÖÆÔìÉÌ¡¢×°±¸IDºÍ×°±¸IMSI±àºÅµÈ ¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÉù³ÆÒÑ»ñµÃ¶ÔVPNЧÀÍÆ÷µÄÔ¶³Ì»á¼ûȨÏÞ£¬£¬£¬£¬£¬£¬ÏÖÔÚ³öÊÛ¼ÛǮδ֪ ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://cybernews.com/security/one-of-the-biggest-android-vpns-hacked-data-of-21-million-users-from-3-android-vpns-put-for-sale-online/


3¡¢UHSÉù³ÆÈ¥ÄêµÄRyukÀÕË÷¹¥»÷Ôì³É6700ÍòÃÀÔªµÄËðʧ


3.jpg


Universal Health Services£¨UHS£©Éù³ÆÈ¥Äê9ÔµÄRyukÀÕË÷¹¥»÷¸øÆäÔì³ÉÁË6700ÍòÃÀÔªµÄËðʧ ¡£¡£¡£¡£¡£¡£UHSµÄ×Ó¹«Ë¾ÆÕ±éÃÀ¹ú38¸öÖÝ£¬£¬£¬£¬£¬£¬ÓµÓÐ26¼Ò¼±ÕïÒ½ÔºÒÔ¼°42¼ÒÃÅÕïÉèÊ©ºÍÃÅÕïЧÀÍÖÐÐÄ£¬£¬£¬£¬£¬£¬Òò´ËÍøÂç¹¥»÷µÄÓ°ÏìÉîÔ¶ ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖ£¬£¬£¬£¬£¬£¬´ó²¿·ÖÓ°ÏìÓëÆä¼±ÕïЧÀÍÓйØ£¬£¬£¬£¬£¬£¬ÀýÈçÒò»¼Õ߻ïÔÌ­ÒÔ¼°Ïà¹ØµÄÕʵ¥ÑÓ³Ù¶øµ¼ÖµÄÓªÒµÊÕÈëµÄËðʧ ¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬ITЧÀÍÌṩÉÌCognizantºÍÂÁÉú²úÉÌNorsk HydroÈ¥ÄêÒ²Åû¶ÁËÀàËÆµÄÊÂÎñ£¬£¬£¬£¬£¬£¬Ëðʧ»®·Ö¸ß´ï7000ÍòÃÀÔªºÍ4000ÍòÃÀÔª ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/universal-health-services-lost-67-million-due-to-ryuk-ransomware-attack/


4¡¢SolarWinds¸ß¹Ü³ÆÆäÔâµ½µÄ¹©Ó¦Á´¹¥»÷Ô´ÓÚÈõ¿ÚÁîй¶


4.jpg


Èí¼þ¹«Ë¾SolarWindsµÄÒ»Ãû¸ß¹Ü³ÆÆäÔâµ½¹©Ó¦Á´¹¥»÷µÄ»ù´¡Ôµ¹ÊÔ­ÓÉÊÇÒ»ÃûʵϰÉúʹÓÃÁËÈõÃÜÂë ¡£¡£¡£¡£¡£¡£³õ³ÌÐò²éÏÔʾ£¬£¬£¬£¬£¬£¬×Ô2018Äê6ÔÂ17ÈÕÒÔÀ´£¬£¬£¬£¬£¬£¬ÉèÖùýʧµÄGitHub´æ´¢¿âй¶ÁËÃÜÂësolarwinds123£¬£¬£¬£¬£¬£¬¸ÃÎÊÌâÒÑÔÚ2019Äê11ÔÂ22ÈÕ½â¾ö£¬£¬£¬£¬£¬£¬¶ø×î³õµÄ¹¥»÷¿ÉÄܱ¬·¢ÓÚ2019Äê9ÔÂ4ÈÕ ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾µÄCEOÌåÏÖ£¬£¬£¬£¬£¬£¬Õâ¿ÉÄÜÊÇÒ»ÃûʵϰÉúÓÚ2017ÄêÔÚËûµÄһ̨ЧÀÍÆ÷ÉÏʹÓõÄÃÜÂ룬£¬£¬£¬£¬£¬²¢Ë½×Ô½«ÃÜÂëÐû²¼µ½ÁËÆäÄÚ²¿Github˽ÈËÕÊ»§ÉÏ ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/115134/security/solarwinds-intern-solarwinds123-password-leak.html


5¡¢ÂíÀ´Î÷ÑǺ½¿Õ¹«Ë¾³ÆÆä»áÔ±ÐÅÏ¢ÒÑй¶³¤´ï¾ÅÄêÖ®¾Ã


5.jpg


ÂíÀ´Î÷ÑǺ½¿Õ¹«Ë¾³ÆÆäEnrich³£ÓοÍÍýÏëÖлáÔ±µÄСÎÒ˽¼ÒÐÅÏ¢ÒÑй¶³¤´ï¾ÅÄêÖ®¾Ã ¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖÆäÊÕµ½À´×ÔµÚÈý·½ITЧÀÍÌṩÉ̵Ä֪ͨ£¬£¬£¬£¬£¬£¬Ö¸³ö¸Ã¹«Ë¾ÔÚ2010Äê3ÔÂÖÁ2019Äê6ÔÂʱ´ú±¬·¢ÁËÊý¾Ýй¶£¬£¬£¬£¬£¬£¬Ð¹Â¶µÄÊý¾Ý°üÀ¨»áÔ±µÄÃû³Æ¡¢ÁªÏµÐÅÏ¢¡¢³öÉúÈÕÆÚ¡¢ÐԱ𡢳£ÓοͺÅÂ롢״̬ºÍ½±ÀøÆ·¼¶ ¡£¡£¡£¡£¡£¡£ÏÖÔÚÉв»ÇåÎúÊÜÓ°Ïì»áÔ±µÄ¹æÄ££¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾Ò²Î´Ðû²¼¸ü¶àÓйش˴ÎÊÂÎñµÄÐÅÏ¢ ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/malaysia-airlines-discloses-a-nine-year-long-data-breach/