q(mie)执行代码漏洞(yue)全预(ju)通告
理?nbsp; | 2019/5/24 9:58:13q程执行代码漏洞安全(guai)预警通告
W一?安全通告
2019q?(lian)?5日微软发(fa)布(fu)(pan)全补(juan)复(zhan)(jian)CVE~号(juan)CVE-2019-0708的Windowsq(mie)桌(yue)(lian)务QR(ya)DPQ远E(yu)码执行漏z,该漏z(tai)(juan)(zui)w䆾(huan)认证的情况(dian)卛_q(mie)触发(fa)Q危(mei)(yue)与(qian)(bian)面极(lai)大?/span>
通过(beng)分析(jian)(hong)现(bang)国(jie)共有154万(yuan)(hong)C(ban)机(hong)(chan)(yi)?389(ku)口Q可能(jie)到此漏洞影响(chen)(mo)?/span>
W二?/span> 漏洞(huo)(qi)息
2.1 漏洞(huo)描述
Windows q程桌面服务Q?/span>RDPQ主(fu)要用于管理(ru)h员(hua) Windows 服务器进行远E管理,使用极ؓ普遍。近日微软官Ҏ?/span>Windows(juan)的q程桌面(kui)服务(juan)存(she)远E代(hu)码执行(shen)z,未经w(tao)䆾认证的攻击(hun)可(huan)(kua)RDP协议q接到目标系lƈ发送精心构造的h可触发该漏洞?/span>
2.2(jie)洞危害
一旦攻击者成功利用此漏洞Q可在目标系l上执行L代码Q安装应用程序,创徏完全讉K权限的新账户{。攻击者还可以对系l中的重要文件和数据使用勒烦病毒q行加密Q如果系l接入到内网环境中,可能q会造成对内|的各类l端机器的造成q一步感染,造成更加严重的后果?/span>
2.3风险{
风险评Q高?/span>
预警{Q?/span>蓝色预(ju)Q(ben)一般事Ӟ(ji)
W三?影响版本
l Windows 7 for 32-bit Systems Service Pack 1
l Windows 7 for x64-based Systems Service Pack 1
l Windows Server 2008 for 32-bit Systems Service Pack 2
l Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation)
l Windows Server 2008 for Itanium-Based Systems Service Pack 2
l Windows Server 2008 for x64-based Systems Service Pack 2
l Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation)
l Windows Server 2008 R2 for Itanium-Based Systems Service Pack 1
l Windows Server 2008 R2 for x64-based Systems Service Pack 1
l Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)
W三?/span> 处置(wu)
官方补丁Q?/span>微Y(jiang)(yue)(kui)已(cha)(tong)推出(yue)全更新请(feng)考()下(pin)方安(wei)通告下蝲q安装最新补丁:
//support.microsoft.com/zh-cn/help/4500705/customer-guidance-for-cve-2019-0708
//portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0708
或根(di)据以(hu)(juan)表格查扑֯应的p(fei)ȝ(hun)版本(juan)蝲(jiao)(lian)新补(juan)(guang)




~解措施Q?/span>
1.(ru)无法更新补丁(guang)可以过系(chen)l(zi)(cuan)()启动NLAQ网l别n份认证)暂时规避该漏z风险?/span>
2.在企业边界防火墙LTCP协(xi)inbound 3389的连接,(ren)或只允许可信IPq行q接?/span>
3.如无明确需(cha),可选择(fu)(quan)3389端口Q远E桌面服务)?/span>
、(huai)阛_名注(chang)册、(huai)阌(chong)Y(jiang)(xi)开发、(gui)高U技提醒(qi)息来源(zan)Q(yang)(huai)阛_(jing)|(xiang)(shi)(juan)(juan)信(jun)息安全信(jun)息通(dong)(gou)(juan)(juan)心

