¶«Éƽ̨ADLab£º²©Í¨Wi-FiÇý¶¯¶à¸öÄþ¾²Â©¶´¾¯¸æ
Ðû²¼Ê±¼ä 2019-04-21²©Í¨ÊÇÈ«ÇòÎÞÏßÉ豸µÄÖ÷Òª¹©Ó¦ÉÌÖ®Ò»£¬²©Í¨µÄ43ϵÁеÄwifiоƬ±»¹ã·ºÓ¦ÓÃÓÚÖÇÄÜÊÖ»ú¡¢Ìõ¼Ç±¾µçÄÔ¡¢ÖÇÄܵçÊÓºÍÎïÁªÍøÉ豸¡£½üÈÕ£¬US-CERTÐû²¼Á˶à¸ö²©Í¨wi-FiоƬÇý¶¯µÄÄþ¾²Ô¤¾¯£¨CVE-2019-9500¡¢CVE-2019-9501¡¢CVE-2019-9502¡¢CVE-2019-9503£©¡£
²©Í¨WIFIоƬ43xxxÇý¶¯·¨Ê½¼¯·ÖΪ¿ªÔ´ºÍרÓÐÁ½Àà¡£
¿ªÔ´ |
b43£¨Linux£© brcmsmac£¨SoftMAC / Linux£© brcmfmac£¨FullMAC / Linux£© bcmdhd£¨FullMAC / Android£© |
רÓÐ |
broadcom-sta(wl) ( SoftMAC && FullMAC / Linux) |
ͼ1 ²©Í¨Ð¾Æ¬Çý¶¯¼°Ó¦ÓÃϵͳ
©¶´·ÖÎö
brcmfmacÇý¶¯Á½¸ö©¶´£¨CVE-2019-9503¡¢CVE-2019-9500£©
²©Í¨Wi-FiоƬÓëÖ÷»úµÄÊäÈëÊä³ö½Ó¿Ú½ÓÄÉUSB£¬SDIOºÍPCIeÈýÖÖBus×ÜÏß·½Ê½¡£ÔÚÈí¼þ²ãÃ棬Çý¶¯ºÍÖ÷»úµÄÊý¾ÝͨÐÅÓÐÁ½ÖÖ·½Ê½£¬Ò»ÖÖÊÇIOCTRL£¬Ò»ÖÖÊÇEventʼþ֪ͨ¡£Wi-FiоƬʹÓù̼þʼþÀ´Í¨ÖªÖ÷»ú²îÒìµÄʼþ£ºÉ¨Ãè½á¹û¡¢¹ØÁª/½â³ý¹ØÁª¡¢Éí·ÝÑéÖ¤µÈ¡£
CVE-2019-9503
ͼ2 is_wlc_event_frameº¯ÊýÎÊÌâʾÒâ
CVE-2019-9500
ͼ3 brcmf_wowl_nd_resultsº¯ÊýÎÊÌâʾÒâ
²©Í¨wlÇý¶¯ÖÐÁ½¸ö©¶´£¨CVE-2019-9501¡¢ CVE-2019-9502£©
ͼ4 wlÇý¶¯Â©¶´Ê¾Òâͼ
CVE-2019-9501
APÏòStation·¢Ë͵ÄEAPOL M3ÏûÏ¢ÖУ¬Èç¹ûvendor information×ֶγ¤¶È´óÓÚ32×Ö½Úʱ£¬½«»áÔÚwlc_wpa_sup_eapolº¯Êý´¥·¢¶ÑÒç³ö©¶´¡£
CVE-2019-9502
ÊÜÓ°Ïì²úÎï
²©Í¨¹«Ë¾
²©Í¨¹«Ë¾Ã»ÓÐÌṩÊÜÓ°Ïì²úÎïÐÅÏ¢¡£
Synology¹«Ë¾
Synology¹«Ë¾µÄRT1900ac²úÎïÊÜÓ°Ïì¡£¸Ã©¶´ÔÚRT1900ac²úÎïÖÐĬÈϲ»±»´¥·¢£¬µ±²úÎï¿ÉÒÔÓɹÜÀíÔ±ÅäÖÃÆôÓÃijÏîÅäÖÃʱ£¬²Å»áÊÜÓ°Ïì¡£Òò´Ë£¬Synology¹«Ë¾ÈÏΪRT1900acÖи鶴ÓÐÒ»¶¨µÄ¾ÖÏÞÐÔ£¬Ö»ÓÐÔÚÌض¨µÄÇé¿öϲÅÆø´¥·¢¡£
Apple¹«Ë¾
½â¾ö·½°¸
Apple¹«Ë¾µÄbrcmfmacÇý¶¯µÄ©¶´ÒÑÐÞ¸´£¬Óû§¿ÉÒÔ¸üÐÂÏà¹ØµÄ²¹¶¡£¬Íê³ÉÐÞ¸´ÊÂÇé¡£
²©Í¨¹«Ë¾ÐÞ¸´ÁËLinuxÄÚºËbrcmfmacÇý¶¯ÖеÄCVE-2019-9503¼°CVE-2019-9500Á½¸ö©¶´£¬Óû§¿ÉÒÔ¸üÐÂÏà¹ØµÄ²¹¶¡£¬Íê³ÉÐÞ¸´ÊÂÇé¡£
ʹÓÿÉÐŵÄWI-FIÍøÂ磬ÌرðÊDz»ÒªÔÚ¹«¹²³¡ËùÁ¬½Ó²»Äþ¾²µÄwifiÈȵ㡣
²Î¿¼Á´½Ó
2.https://kb.cert.org/vuls/id/166939/
3.https://support.apple.com/en-us/HT209600
4.https://www.synology.cn/zh-cn/security/advisory/Synology_SA_19_18
5.https://git.kernel.org/linus/a4176ec356c73a46c07c181c6d04039fafa34a9f
6.https://git.kernel.org/linus/1b5e2423164b3670e8bc9174e4762d297990deff