VMware ESXi, WorkstationºÍFusion¾Ü¾øÐ§ÀÍÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2019-10-29Îó²î±àºÅºÍ¼¶±ð
CVE±àºÅ£ºCVE-2019-5536£¬£¬£¬£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£ºÖÐΣ£¬£¬£¬£¬£¬£¬£¬£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º6.5£¬£¬£¬£¬£¬£¬£¬£¬¹Ù·½Î´ÆÀ¶¨
Ó°Ïì°æ±¾
VMware ESXi 6.7°æ±¾£¬£¬£¬£¬£¬£¬£¬£¬6.5°æ±¾
VMware Workstation 15.x°æ±¾
VMware Fusion 11.x°æ±¾
Îó²î¸ÅÊö
VMware ESXiµÈ¶¼ÊÇÃÀ¹úÍþ¨VMware£©¹«Ë¾µÄ²úÆ·¡£¡£¡£¡£¡£¡£¡£¡£VMware ESXiÊÇÒ»Ì׿ÉÖ±½Ó×°ÖÃÔÚÎïÀíЧÀÍÆ÷ÉϵÄЧÀÍÆ÷ÐéÄ⻯ƽ̨¡£¡£¡£¡£¡£¡£¡£¡£VMware WorkstationÊÇÒ»Ì×ÐéÄâ»úÈí¼þ¡£¡£¡£¡£¡£¡£¡£¡£VMware FusionÊÇÒ»Ì×רÓÃÓÚÔÚÆ»¹û»ú£¨Mac£©ÉÏÔËÐÐWindowsÓ¦ÓóÌÐòµÄµÄÐéÄâ»úÈí¼þ¡£¡£¡£¡£¡£¡£¡£¡£
VMware ESXi¡¢VMware WorkstationºÍVMware FusionÖеÄshader¹¦Ð§±£´æÒ»¸ö¿ÉʹÓõľܾøÐ§ÀÍÎó²î¡£¡£¡£¡£¡£¡£¡£¡£ÌØÖƵÄÏñËØ×ÅÉ«Æ÷¿ÉÄܻᵼÖ¾ܾøÐ§ÀÍ¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÒÔÌá¹©ÌØÖÆµÄ×ÅÉ«Æ÷ÎļþÀ´´¥·¢´ËÎó²î¡£¡£¡£¡£¡£¡£¡£¡£¿£¿£¿£¿£¿ÉÒÔ´ÓVMware guestÐéÄâ»ú´¥·¢´ËÎó²î£¬£¬£¬£¬£¬£¬£¬£¬²¢ÇÒVMwareÖ÷»ú½«Êܵ½Ó°Ï죬£¬£¬£¬£¬£¬£¬£¬´Ó¶øµ¼ÖÂÖ÷»úÉϵÄVMwareÈÚºÏÀú³ÌÍ߽⡣¡£¡£¡£¡£¡£¡£¡£
Îó²îÑéÖ¤
POC: https://talosintelligence.com/vulnerability_reports/TALOS-2019-0848¡£¡£¡£¡£¡£¡£¡£¡£
ÐÞ¸´½¨Òé
ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î£¬£¬£¬£¬£¬£¬£¬£¬²¹¶¡»ñÈ¡Á´½Ó£ºhttps://www.vmware.com/security/advisories/VMSA-2019-0019.html¡£¡£¡£¡£¡£¡£¡£¡£
²Î¿¼Á´½Ó
https://blog.talosintelligence.com/2019/10/vuln-spotlight-vmware-fusion-oct-19-dos.html


¾©¹«Íø°²±¸11010802024551ºÅ