ÐÇ°Í¿Ë×°±Æ·¸ÖÕ½áÕß-Apple RCE©¶´£¨CVE-2018-4407£©

Ðû²¼Ê±¼ä 2018-10-31

¶«É­¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


ʱ¼äÏß


2018-08-09£º¹Ù·½ÊÕµ½Â©¶´Ï¸½Ú²¢È·ÈÏ
2018-09-17£ºAppleÐû²¼iOS 12£¬ÐÞ¸´¸Ã©¶´
2018-09-24£ºmacOS MojaveÓÉAppleÐû²¼£¬ÐÞ¸´¸Ã©¶´
2018-10-30£ºÂ©¶´¹ûÈ»


©¶´ÏêÇé


´Ë©¶´ÎÞÐèÈκÎÓû§½»»¥£¬¿ÉÒÔÔÚͬһÍøÂçÉÏÖØÆôÈκÎMac»òiOSÉ豸¡£AppleÒѽ«´Ë©¶´¹éÀàΪÄÚºËÖеÄÔ¶³ÌÖ´ÐдúÂ멶´£¬ÒòΪ¿ÉÄÜÀûÓûº³åÇøÒç³öÀ´Ö´ÐÐÄÚºËÖеÄÈÎÒâ´úÂë¡£


ÒÔÏÂϵͳ°æ±¾ºÍÉ豸Ò×Êܹ¥»÷£º
Apple iOS 11¼°¸üÔç°æ±¾£ºËùÓÐÉ豸£¨Éý¼¶µ½iOS 12£©
Apple macOS High Sierra£¬×î¸ß¿Éµ½10.13.6£ºËùÓÐÉ豸£¨ÔÚÄþ¾²¸üÐÂ2018-001Öдò²¹¶¡£©
Apple macOS Sierra£¬°üÂÞ10.12.6£ºËùÓÐÉ豸£¨ÔÚÄþ¾²¸üÐÂ2018-005Öдò²¹¶¡£©
Apple OS X El Capitan¼°¸üÔç°æ±¾£ºËùÓÐÉ豸


¸Ã©¶´ÊÇXNUϵͳÄÚºËÖеÄÍøÂç´úÂëÖеĶѻº³åÇøÒç³ö¡£iOSºÍmacOS¶¼Ê¹ÓÃXNU£¬Õâ¾ÍÊÇiPhone£¬iPadºÍMacbook¶¼Êܵ½Ó°ÏìµÄÔ­Òò¡£Òª´¥·¢´Ë©¶´£¬¹¥»÷ÕßÖ»Ð轫¶ñÒâIPÊý¾Ý°ü·¢Ë͵½Ä¿±êÉ豸µÄIPµØÖ·¼´¿É¡£ÎÞÐèÓû§½»»¥¡£¹¥»÷ÕßÖ»ÐèÒªÁ¬½Óµ½ÓëÄ¿±êÉ豸ÏàͬµÄÍøÂç¡£ÀýÈ磬Èç¹ûÄúÔÚ¿§·ÈµêʹÓÃÃâ·ÑWiFi£¬Ôò¹¥»÷Õß¿ÉÒÔ¼ÓÈëÏàͬµÄWiFiÍøÂç²¢ÏòÄúµÄÉ豸·¢ËͶñÒâÊý¾Ý°ü¡££¨Èç¹û¹¥»÷ÕßÓëÄúÔÚͬһÍøÂçÉÏ£¬ÔòËûÃǺÜÈÝÒ×ʹÓÃnmap·¢ÏÖÄúÉ豸µÄIPµØÖ·¡££©¸üÔã¸âµÄÊÇ£¬¸Ã©¶´ÊÇÍøÂç´úÂëµÄÒ»¸ö»ù±¾²¿ÃÅ£¬·´²¡¶¾Èí¼þÎÞ·¨±£»¤Äú£¬ÄúÔÚÉ豸ÉÏÔËÐеÄÈí¼þÒ²Î޹ؽôÒª - ¼´Ê¹ÄúûÓдò¿ªÈκζ˿Ú£¬¶ñÒâÊý¾Ý°üÈԻᴥ·¢Â©¶´¡£


»º½â´ëÊ©£º

¿ªÆômacOS·À»ðǽ²¢ÆôÓÃÃØÃÜÐж¯Ä£Ê½
²»ÒªÊ¹Óù«¹²WiFiÍøÂç¡£


²Î¿¼Á´½Ó£ºhttps://lgtm.com/blog/apple_xnu_icmp_error_CVE-2018-4407