CVE-2020-1301 | Windows SMB v1Ô¶³Ì´úÂëÖ´ÐÐÎó²îͨ¸æ

Ðû²¼Ê±¼ä 2020-06-10

0x00 Îó²î¸ÅÊö


CVE   ID

CVE-2020-1301

ʱ    ¼ä

2020-06-10

Àà    ÐÍ

RCE

µÈ    ¼¶

ÖÐΣ

Ô¶³ÌʹÓÃ

ÊÇ

Ó°Ïì¹æÄ£


0x01 Îó²îÏêÇé


ÍòÀû¹ú¼Ê¹ÙÍø(ÖйúÓÎ)ÓÐÏÞ¹«Ë¾



΢ÈíÓÚÖܶþÐû²¼ÁË6ÔÂÇå¾²¸üв¹¶¡£¬£¬£¬£¬ £¬£¬£¬ÐÞ¸´ÁË129¸öÎó²î¡£¡£¡£¡£¡£¡£ÆäÖаüÀ¨Ò»¸öWindows SMBÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-1301£©,Ö»¹Ü±¾Ô¸üеÄÎó²îÊýÄ¿Ðí¶à£¬£¬£¬£¬ £¬£¬£¬µ«ÔÚMicrosoft½ñÌìÐû²¼²¹¶¡Ö®Ç°£¬£¬£¬£¬ £¬£¬£¬»¹Ã»Óз¢Ã÷±»Ê¹ÓõÄÎó²î¡£¡£¡£¡£¡£¡£½¨ÒéÖÎÀíÔ±¾¡¿ì°²ÅŸüС£¡£¡£¡£¡£¡£

Server Message Block£¨SMB£©ÊÇΪÅÌËã»úÌṩÉí·ÝÑéÖ¤ÒÔ»á¼ûЧÀÍÆ÷ÉÏ´òÓ¡»úºÍÎļþϵͳµÄ×é¼þ¡£¡£¡£¡£¡£¡£¸ÃÎó²îÔ´ÓÚMicrosoft SMB 1.0 (SMBv1) ЧÀÍÆ÷ÔÚ´¦Öóͷ£Ä³Ð©ÇëÇóµÄÒªÁìÖб£´æ¹ýʧ£¬£¬£¬£¬ £¬£¬£¬µ¼ÖÂÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£

ÁíÍâµÄÓÀºãÖ®À¶¾ÍÊÇʹÓÃSMB v1Îó²î£¬£¬£¬£¬ £¬£¬£¬½¨Ò鹨±ÕSMB v1£¬£¬£¬£¬ £¬£¬£¬ÏëÒª´¥·¢´ËÎó²îÐèÒªÏÈͨ¹ýÉí·ÝÈÏÖ¤£¬£¬£¬£¬ £¬£¬£¬Î£º¦Æ·¼¶ÊôÓÚÖÐΣ¡£¡£¡£¡£¡£¡£


0x02 Ó°Ïì¹æÄ£


ÒÔÏÂÊÇCVE-2020-1301Îó²îÊÜÓ°ÏìµÄϵͳ°æ±¾£º

Windows 10 Version 1803 for 32-bit Systems

Windows 10 Version 1803 for x64-based Systems

Windows Server, version 1803 (Server Core Installation)

Windows 10 Version 1803 for ARM64-based Systems

Windows 10 Version 1809 for 32-bit Systems

Windows 10 Version 1809 for x64-based Systems

Windows 10 Version 1809 for ARM64-based Systems

Windows Server 2019

Windows Server 2019 (Server Core installation)

Windows 10 Version 1909 for 32-bit Systems

Windows 10 Version 1909 for x64-based Systems

Windows 10 Version 1909 for ARM64-based Systems

Windows Server, version 1909 (Server Core installation)

Windows 10 Version 1709 for 32-bit Systems

Windows 10 Version 1709 for x64-based Systems

Windows 10 Version 1709 for ARM64-based Systems

Windows 10 Version 1903 for 32-bit Systems

Windows 10 Version 1903 for x64-based Systems

Windows 10 Version 1903 for ARM64-based Systems

Windows Server, version 1903 (Server Core installation)

Windows 10 for 32-bit Systems

Windows 10 for x64-based Systems

Windows 10 Version 1607 for 32-bit Systems

Windows 10 Version 1607 for x64-based Systems

Windows Server 2016

Windows Server 2016 (Server Core installation)

Windows 7 for 32-bit Systems Service Pack 1

Windows 7 for x64-based Systems Service Pack 1

Windows 8.1 for 32-bit systems

Windows 8.1 for x64-based systems

Windows RT 8.1

Windows Server 2008 for 32-bit Systems Service Pack 2

Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation)

Windows Server 2008 for Itanium-Based Systems Service Pack 2

Windows Server 2008 for x64-based Systems Service Pack 2

Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation)

Windows Server 2008 R2 for Itanium-Based Systems Service Pack 1

Windows Server 2008 R2 for x64-based Systems Service Pack 1

Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)

Windows Server 2012

Windows Server 2012 (Server Core installation)

Windows Server 2012 R2

Windows Server 2012 R2 (Server Core installation)

Windows 10 Version 2004 for x64-based Systems

Windows Server, version 2004 (Server Core installation)

Windows 10 Version 2004 for 32-bit Systems

Windows 10 Version 2004 for ARM64-based Systems


0x03 ´¦Öóͷ£½¨Òé


½¨Òé½ûÓÃSMB v1

¹ØÓÚÔËÐÐWindows VistaºÍ¸ü¸ß°æ±¾µÄÓû§£¬£¬£¬£¬ £¬£¬£¬Çë²Î¿¼Microsoft֪ʶ¿âÎÄÕÂ2696547¡£¡£¡£¡£¡£¡£

ÔËÐÐWindows 8.1»òWindows Server 2012 R2¼°¸ü¸ß°æ±¾µÄ¿Í»§¶Ë²Ù×÷ϵͳ£º

1. ·­¿ª¿ØÖÆÃæ°å£¬£¬£¬£¬ £¬£¬£¬µ¥»÷¡°³ÌÐò¡±£¬£¬£¬£¬ £¬£¬£¬È»ºóµ¥»÷¡°·­¿ª»ò¹Ø±ÕWindows¹¦Ð§¡±¡£¡£¡£¡£¡£¡£

2. ÔÚ¡°Windows¹¦Ð§¡±´°¿ÚÖУ¬£¬£¬£¬ £¬£¬£¬É¨³ý¡°SMB 1.0 / CIFSÎļþ¹²ÏíÖ§³Ö¡±¸´Ñ¡¿ò£¬£¬£¬£¬ £¬£¬£¬È»ºóµ¥»÷¡°È·¶¨¡±¹Ø±Õ¸Ã´°¿Ú¡£¡£¡£¡£¡£¡£

3. ÖØÐÂÆô¶¯ÏµÍ³¡£¡£¡£¡£¡£¡£

¹ØÓÚЧÀÍÆ÷²Ù×÷ϵͳ£º

1. ·­¿ªÐ§ÀÍÆ÷ÖÎÀíÆ÷£¬£¬£¬£¬ £¬£¬£¬È»ºóµ¥»÷¡°ÖÎÀí¡±²Ëµ¥£¬£¬£¬£¬ £¬£¬£¬È»ºóÑ¡Ôñ¡°É¾³ý½ÇÉ«ºÍ¹¦Ð§¡±¡£¡£¡£¡£¡£¡£

2. ÔÚ¡°¹¦Ð§¡±´°¿ÚÖУ¬£¬£¬£¬ £¬£¬£¬É¨³ý¡°SMB 1.0 / CIFSÎļþ¹²ÏíÖ§³Ö¡±¸´Ñ¡¿ò£¬£¬£¬£¬ £¬£¬£¬È»ºóµ¥»÷¡°È·¶¨¡±¹Ø±Õ¸Ã´°¿Ú¡£¡£¡£¡£¡£¡£

3. ÖØÐÂÆô¶¯ÏµÍ³¡£¡£¡£¡£¡£¡£

´Ë½â¾öÒªÁ콫µ¼ÖÂSMB v1ЭÒ齫ÔÚÄ¿µÄϵͳÉϱ»½ûÓᣡ£¡£¡£¡£¡£


0x04 Ïà¹ØÐÂÎÅ


https://www.zdnet.com/article/microsoft-june-2020-patch-tuesday-fixes-129-vulnerabilities/#ftag=RSSbaffb68


0x05 ²Î¿¼Á´½Ó


https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1301

https://docs.microsoft.com/en-us/windows-server/storage/file-server/troubleshoot/detect-enable-and-disable-smbv1-v2-v3

https://portal.msrc.microsoft.com/zh-cn/security-guidance


0x06 ʱ¼äÏß


2020-06-09 ΢Èí¸üÐÂÎó²î²¹¶¡

2020-06-10 VSRCÐû²¼Îó²îͨ¸æ


ÍòÀû¹ú¼Ê¹ÙÍø(ÖйúÓÎ)ÓÐÏÞ¹«Ë¾