×ðÁú¿­¹ÙÍøÈë¿ÚÌṩÎó²îɨÃèºÍÏû¿Ø¼Æ»®

Ðû²¼Ê±¼ä 2023-02-22

Apache Tomcat¹Ù·½Åû¶1¸ö±£´æÓÚApache Commons FileUploadÖеľܾø·þÎñÎó²î £¬ÆäÖбàºÅCVE-2023-24998Ϊ¸ßΣÎó²î¡£×ðÁú¿­¹ÙÍøÈë¿ÚµÚһʱ¼ä¶ÔApache Commons FileUpload¹Ù·½Ðû²¼µÄÇ徲ͨ¸æ¾ÙÐÐÆÊÎöÑÐÅÐ £¬ÍŽáÌ©ºÏÅÌ¹ÅÆ½Ì¨£¨THPangu-OS£©µÄµ××ùÄÜÁ¦ £¬Îª¿í´óÓû§ÌṩӦ¼±´¦Öóͷ£Ö¸Òý¼Æ»®¡£


ÓÉÓÚ Apache Commons FileUpload °æ±¾ 1.5 ֮ǰδÏÞÖÆÒª´¦Öóͷ£µÄÇëÇ󲿷ֵÄÊýÄ¿ £¬µ¼Ö¿ÉÒÔͨ¹ý¶ñÒâÉÏ´«»òһϵÁÐÉÏ´«À´´¥·¢¾Ü¾ø·þÎñ¡£²¢ÇÒ Apache Tomcat ʹÓà Apache Commons FileUpload µÄ´ò°üÖØÃüÃû¸±Ô­À´Ìṩ Jakarta Servlet ¹æ·¶Öнç˵µÄÎļþÉÏ´«¹¦Ð§ £¬Òò´Ë Apache Tomcat Ò×Êܵ½¸ÃÎó²îÓ°Ïì¡£


×ðÁú¿­Ê± - ÈËÉú¾ÍÊDz«!


ÏÖÔÚ¸ÃÎó²îPOC£¨¿´·¨ÑéÖ¤´úÂ룩δ¹ûÕæ £¬µ«ËæÊ±±£´æ±»ÍøÂçºÚ²ú·¢Ã÷²¢ÖÆÔì¹¥»÷ÐÐΪµÄΣº¦¡£Apache Commons ÊÇÒ»¸öרעÓÚ¿ÉÖØÓà Java ×é¼þ¿ª·¢µÄ Apache ÏîÄ¿ £¬¸ÃÏîÄ¿ÓÉ Commons Proper¡¢The Commons Sandbox ºÍThe Commons DormantÈý¸ö²¿·Ö×é³É¡£Apache Commons-FileUpload ÊÇ Commons Proper ÖеÄÒ»¸ö×é¼þ £¬Ö¼ÔÚʵÏÖÎļþÉÏ´«¡£ÖÁ´Ë×ÛÊö¸ÃÎó²îµÄ×ÛºÏÆÀ¼¶Îª¡°¸ßΣ¡±¡£


 ÐÞ¸´½¨Òé 


¹Ù·½ÒѾ­Õë¶ÔÎó²îÐû²¼ÁËÈí¼þ¸üР£¬ÏÂÔØµØÖ·ÈçÏ£º

Apache Commons FileUpload£º

°æ±¾ >= 1.5

ÏÂÔØÁ´½Ó£º

https://commons.apache.org/proper/commons-fileupload/download_fileupload.cgi


Apache Tomcat£º

Apache Tomcat °æ±¾ >= 11.0.0-M3

Apache Tomcat °æ±¾ >= 10.1.5

Apache Tomcat °æ±¾ >= 9.0.71

Apache Tomcat °æ±¾ >= 8.5.85

ÏÂÔØÁ´½Ó£º

https://tomcat.apache.org/index.html


×¢£ºApache Tomcat 11.0.0-M2 δÐû²¼¡£¸ÃÎó²îÒÑÔÚ Apache Commons FileUpload °æ±¾ >= 1.5 ÖÐÐÞ¸´ £¬µ«ÐÂÉèÖÃÑ¡Ïî (FileUploadBase#setFileCountMax) ĬÈÏÇéÐÎÏÂδÆôÓà £¬±ØÐèÃ÷È·ÉèÖá£


 ×ðÁú¿­¹ÙÍøÈë¿Ú½â¾ö¼Æ»® 


Ò»£º»ùÓÚÎó²îɨÃè²úÆ·¾¡¿ì¶Ô×ʲú¾ÙÐÐÎó²îÆÀ¹À


×ðÁú¿­¹ÙÍøÈë¿ÚÌ쾵ųÈõÐÔɨÃèÓë¹ÜÀíϵͳÒѽôÆÈÐû²¼Õë¶Ô¸ÃÎó²îµÄÉý¼¶°ü £¬Ö§³Ö¶Ô¸ÃÎó²î¾ÙÐÐÊÚȨɨÃè £¬Óû§Éý¼¶±ê×¼Îó²î¿âºó¼´¿É¶Ô¸ÃÎó²î¾ÙÐÐɨÃè¡£


6070°æ±¾Éý¼¶°üΪ607000488 £¬Éý¼¶°üÏÂÔØµØÖ·£º

https://venustech.download.venuscloud.cn/


Éý¼¶ºóÒÑÖ§³Ö¸ÃÎó²î.png


ÇëʹÓÃ×ðÁú¿­¹ÙÍøÈë¿ÚÌ쾵ųÈõÐÔɨÃèÓë¹ÜÀíϵͳ²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾 £¬ÊµÊ±¶Ô¸ÃÎó²î¾ÙÐмì²â £¬ÒԱ㾡¿ì½ÓÄÉÌá·À²½·¥¡£


¶þ£º×ðÁú¿­¹ÙÍøÈë¿Ú×ʲúÓëųÈõÐÔ¹ÜÀíÆ½Ì¨(ASM)ÅŲéÊÜÓ°Ïì×ʲú


×ðÁú¿­¹ÙÍøÈë¿Ú×ʲúÓëųÈõÐÔ¹ÜÀíÆ½Ì¨ÊµÊ±ÊÕÂÞ²¢¸üÐÂÇ鱨ÐÅÏ¢ £¬¶ÔÈë¿â×ʲúÎó²îApache Commons FileUpload¾Ü¾ø·þÎñÎó²î£¨CVE-2023-24998£©¾ÙÐйÜÀí £¬ÈçͼËùʾ£º


Ç鱨¹ÜÀíÄ£¿éÒÑÈë¿âµÄApache Commons FileUpload¾Ü¾ø·þÎñÎó²î.png


×ʲúÓëųÈõÐÔ¹ÜÀíÆ½Ì¨Æ¾Ö¤Ç鱨ÐÅÏ¢¸üеÄÎó²îÊÜÓ°ÏìʵÌ广ÔòÒÔ¼°ÏÖ³¡×ʲú¹ÜÀíʵÀýµÄ°æ±¾ÐÅÏ¢¾ÙÐÐ×Ô¶¯»¯Åöײ £¬¿ÉµÚһʱ¼äÖÀÖÐÊܸÃÎó²îÓ°ÏìµÄ×ʲú £¬ÈçͼËùʾ£º


Ç鱨ÖÀÖеÄ×ʲúÐÅÏ¢.png


Èý£º»ùÓÚÇå¾²¹ÜÀíºÍÌ¬ÊÆ¸Ð֪ƽ̨¾ÙÐйØÁªÆÊÎö


¿í´óÓû§¿ÉÒÔͨ¹ýÌ©ºÏÇå¾²¹ÜÀíºÍÌ¬ÊÆ¸Ð֪ƽ̨ £¬¾ÙÐйØÁªÕ½ÂÔÉèÖà £¬ÍŽáÏÖÕæÏàÐÎÖÐϵͳÈÕÖ¾ºÍÇå¾²×°±¸µÄ¸æ¾¯ÐÅÏ¢¾ÙÐÐÒ»Á¬¼à¿Ø £¬´Ó¶ø·¢Ã÷¡°Apache Commons FileUpload¾Ü¾ø·þÎñ¡±µÄÎó²îʹÓù¥»÷ÐÐΪ¡£


ÔÚÌ©ºÏÇå¾²¹ÜÀíºÍÌ¬ÊÆ¸Ð֪ƽ̨ÖÐ £¬Í¨¹ýųÈõÐÔ·¢Ã÷¹¦Ð§Õë¶Ô¡°Apache_Commons_FileUpload_¾Ü¾ø·þÎñÎó²î£¨CVE-2023-24998£©¡±Ö´ÐÐÎó²îɨÃèʹÃü £¬ÅŲé¹ÜÀíÍøÂçÖÐÊÜ´ËÎó²îÓ°ÏìµÄÖ÷Òª×ʲú¡£


×ðÁú¿­Ê± - ÈËÉú¾ÍÊDz«!


ÔÚÆ½Ì¨¡°¹ØÁªÆÊÎö¡±Ä£¿éÖÐ £¬Ìí¼Ó¡°L2_Apache_Commons_¾Ü¾ø·þÎñÎó²îʹÓá± £¬Í¨¹ý×ðÁú¿­¹ÙÍøÈë¿Ú¼ì²â×°±¸¡¢Ä¿µÄÖ÷»úϵͳµÈ×°±¸µÄ¸æ¾¯ÈÕÖ¾ £¬·¢Ã÷Íⲿ¹¥»÷ÐÐΪ£º


×ðÁú¿­Ê± - ÈËÉú¾ÍÊDz«!


̫ͨ¹ýÎö¹æÔò×Ô¶¯½«Apache Commons FileUpload¾Ü¾ø·þÎñʹÓõĿÉÒÉÐÐΪԴµØÖ·Ìí¼Óµ½ÊÓ²ìÁÐ±í¡°¸ßΣº¦ÅþÁ¬¡±ÖÐ £¬×÷ΪÄÚ²¿Ç鱨Êý¾ÝʹÓã»


Ìí¼Ó¡°L3_Apache_Commons_¾Ü¾ø·þÎñÎó²îʹÓÃÀֳɡ± £¬Ìõ¼þÈÕÖ¾Ãû³Æ¼´ÊÇ¡°L2_Apache_Commons_¾Ü¾ø·þÎñÎó²îʹÓá± £¬¹¥»÷Ч¹û¼´ÊÇ¡°¹¥»÷Àֳɡ± £¬Ä¿µÄµØÖ·ÒýÓÃ×ʲúÎó²î»òÔ´µØÖ·Æ¥ÅäÍþвÇ鱨 £¬´Ó¶øÌáÉý¹ØÁª¹æÔòµÄÖÃÐŶÈ¡£


×ðÁú¿­Ê± - ÈËÉú¾ÍÊDz«!


ËÄ£ºATT&CK¹¥»÷Á´ÌõÆÊÎöÓëSOAR´¦Öóͷ£½¨Òé


1¡¢ATT&CK¹¥»÷Á´ÆÊÎö


ƾ֤¶ÔApache Commons FileUpload¾Ü¾ø·þÎñÎó²îµÄ¹¥»÷ʹÓÃÀú³Ì¾ÙÐÐÆÊÎö £¬¹¥»÷Á´Éæ¼°µÄATT&CKÕ½ÊõºÍÊÖÒս׶ΰüÀ¨£º

Ó°ÏìTA0040£º¶Ëµã¾Ü¾ø·þÎñT1499


×ðÁú¿­Ê± - ÈËÉú¾ÍÊDz«!


2¡¢´¦Öóͷ£¼Æ»®½¨æÅºÍSOAR¾ç±¾±àÅÅ


ͨ¹ýÌ©ºÏÇå¾²¹ÜÀíºÍÌ¬ÊÆ¸Ð֪ƽ̨ÄÚÖÃSOAR×Ô¶¯»¯»ò°ë×Ô¶¯»¯±àÅÅÁª¶¯ÏìÓ¦´¦Öóͷ£ÄÜÁ¦ £¬Õë¶Ô¸ÃÎó²îʹÓõĸ澯ÊÂÎñ±àÅž籾 £¬¾ÙÐÐ×Ô¶¯»¯´¦Öóͷ£¡£