ÓÅ·¢¹ú¼ÊÍøÕ¾¹ÙÍøADLab£º²©Í¨Wi-FiÇý¶¯¶à¸öÇå¾²Îó²îÖÒÑÔ
Ðû²¼Ê±¼ä 2019-04-21²©Í¨ÊÇÈ«ÇòÎÞÏß×°±¸µÄÖ÷Òª¹©Ó¦ÉÌÖ®Ò»£¬²©Í¨µÄ43ϵÁеÄwifiоƬ±»ÆÕ±éÓ¦ÓÃÓÚÖÇÄÜÊÖ»ú¡¢Ìõ¼Ç±¾µçÄÔ¡¢ÖÇÄܵçÊÓºÍÎïÁªÍø×°±¸¡£¿ËÈÕ£¬US-CERTÐû²¼Á˶à¸ö²©Í¨wi-FiоƬÇý¶¯µÄÇå¾²Ô¤¾¯£¨CVE-2019-9500¡¢CVE-2019-9501¡¢CVE-2019-9502¡¢CVE-2019-9503£©¡£
²©Í¨WIFIоƬ43xxxÇý¶¯³ÌÐò¼¯·ÖΪ¿ªÔ´ºÍרÓÐÁ½Àà¡£
¿ªÔ´ |
b43£¨Linux£© brcmsmac£¨SoftMAC / Linux£© brcmfmac£¨FullMAC / Linux£© bcmdhd£¨FullMAC / Android£© |
רÓÐ |
broadcom-sta(wl) ( SoftMAC && FullMAC / Linux) |
ͼ1 ²©Í¨Ð¾Æ¬Çý¶¯¼°Ó¦ÓÃϵͳ
Îó²îÆÊÎö
brcmfmacÇý¶¯Á½¸öÎó²î£¨CVE-2019-9503¡¢CVE-2019-9500£©
²©Í¨Wi-FiоƬÓëÖ÷»úµÄÊäÈëÊä³ö½Ó¿Ú½ÓÄÉUSB£¬SDIOºÍPCIeÈýÖÖBus×ÜÏß·½·¨¡£ÔÚÈí¼þ²ãÃ棬Çý¶¯ºÍÖ÷»úµÄÊý¾ÝͨѶÓÐÁ½ÖÖ·½·¨£¬Ò»ÖÖÊÇIOCTRL£¬Ò»ÖÖÊÇEventÊÂÎñ֪ͨ¡£Wi-FiоƬʹÓù̼þÊÂÎñÀ´Í¨ÖªÖ÷»ú²î±ðµÄÊÂÎñ£ºÉ¨ÃèЧ¹û¡¢¹ØÁª/ɨ³ý¹ØÁª¡¢Éí·ÝÑéÖ¤µÈ¡£
CVE-2019-9503
ͼ2 is_wlc_event_frameº¯ÊýÎÊÌâʾÒâ
CVE-2019-9500
ͼ3 brcmf_wowl_nd_resultsº¯ÊýÎÊÌâʾÒâ
²©Í¨wlÇý¶¯ÖÐÁ½¸öÎó²î£¨CVE-2019-9501¡¢ CVE-2019-9502£©
ͼ4 wlÇý¶¯Îó²îʾÒâͼ
CVE-2019-9501
APÏòStation·¢Ë͵ÄEAPOL M3ÐÂÎÅÖУ¬ÈôÊÇvendor information×ֶγ¤¶È´óÓÚ32×Ö½Úʱ£¬½«»áÔÚwlc_wpa_sup_eapolº¯Êý´¥·¢¶ÑÒç³öÎó²î¡£
CVE-2019-9502
ÊÜÓ°Ïì²úÆ·
²©Í¨¹«Ë¾
²©Í¨¹«Ë¾Ã»ÓÐÌṩÊÜÓ°Ïì²úÆ·ÐÅÏ¢¡£
Synology¹«Ë¾
Synology¹«Ë¾µÄRT1900ac²úÆ·ÊÜÓ°Ïì¡£¸ÃÎó²îÔÚRT1900ac²úÆ·ÖÉñ¬Èϲ»±»´¥·¢£¬µ±²úÆ·¿ÉÒÔÓÉÖÎÀíÔ±ÉèÖÃÆôÓÃijÏîÉèÖÃʱ£¬²Å»áÊÜÓ°Ïì¡£Òò´Ë£¬Synology¹«Ë¾ÒÔΪRT1900acÖиÃÎó²îÓÐÒ»¶¨µÄ¾ÖÏÞÐÔ£¬Ö»ÓÐÔÚÌض¨µÄÇéÐÎϲŻª´¥·¢¡£
Apple¹«Ë¾
½â¾ö¼Æ»®
Apple¹«Ë¾µÄbrcmfmacÇý¶¯µÄÎó²îÒÑÐÞ¸´£¬Óû§¿ÉÒÔ¸üÐÂÏà¹ØµÄ²¹¶¡£¬Íê³ÉÐÞ¸´ÊÂÇé¡£
²©Í¨¹«Ë¾ÐÞ¸´ÁËLinuxÄÚºËbrcmfmacÇý¶¯ÖеÄCVE-2019-9503¼°CVE-2019-9500Á½¸öÎó²î£¬Óû§¿ÉÒÔ¸üÐÂÏà¹ØµÄ²¹¶¡£¬Íê³ÉÐÞ¸´ÊÂÇé¡£
ʹÓÿÉÐŵÄWI-FIÍøÂ磬ÌØÊâÊDz»ÒªÔÚ¹«¹²³¡ºÏÅþÁ¬²»Çå¾²µÄwifiÈÈÃÅ¡£
²Î¿¼Á´½Ó
2.https://kb.cert.org/vuls/id/166939/
3.https://support.apple.com/en-us/HT209600
4.https://www.synology.cn/zh-cn/security/advisory/Synology_SA_19_18
5.https://git.kernel.org/linus/a4176ec356c73a46c07c181c6d04039fafa34a9f
6.https://git.kernel.org/linus/1b5e2423164b3670e8bc9174e4762d297990deff