ÓÅ·¢¹ú¼ÊÍøÕ¾¹ÙÍøÌṩÎó²îɨÃèºÍÏû¿Ø¼Æ»®
Ðû²¼Ê±¼ä 2023-02-22Apache Tomcat¹Ù·½Åû¶1¸ö±£´æÓÚApache Commons FileUploadÖеľܾø·þÎñÎó²î£¬ÆäÖбàºÅCVE-2023-24998Ϊ¸ßΣÎó²î¡£ÓÅ·¢¹ú¼ÊÍøÕ¾¹ÙÍøµÚһʱ¼ä¶ÔApache Commons FileUpload¹Ù·½Ðû²¼µÄÇ徲ͨ¸æ¾ÙÐÐÆÊÎöÑÐÅУ¬ÍŽáÌ©ºÏÅ̹Åƽ̨£¨THPangu-OS£©µÄµ××ùÄÜÁ¦£¬Îª¿í´óÓû§ÌṩӦ¼±´¦Öóͷ£Ö¸Òý¼Æ»®¡£
ÓÉÓÚ Apache Commons FileUpload °æ±¾ 1.5 ֮ǰδÏÞÖÆÒª´¦Öóͷ£µÄÇëÇ󲿷ֵÄÊýÄ¿£¬µ¼Ö¿ÉÒÔͨ¹ý¶ñÒâÉÏ´«»òһϵÁÐÉÏ´«À´´¥·¢¾Ü¾ø·þÎñ¡£²¢ÇÒ Apache Tomcat ʹÓà Apache Commons FileUpload µÄ´ò°üÖØÃüÃû¸±ÔÀ´Ìṩ Jakarta Servlet ¹æ·¶Öнç˵µÄÎļþÉÏ´«¹¦Ð§£¬Òò´Ë Apache Tomcat Ò×Êܵ½¸ÃÎó²îÓ°Ïì¡£
ÏÖÔÚ¸ÃÎó²îPOC£¨¿´·¨ÑéÖ¤´úÂ룩δ¹ûÕ棬µ«Ëæʱ±£´æ±»ÍøÂçºÚ²ú·¢Ã÷²¢ÖÆÔì¹¥»÷ÐÐΪµÄΣº¦¡£Apache Commons ÊÇÒ»¸öרעÓÚ¿ÉÖØÓà Java ×é¼þ¿ª·¢µÄ Apache ÏîÄ¿£¬¸ÃÏîÄ¿ÓÉ Commons Proper¡¢The Commons Sandbox ºÍThe Commons DormantÈý¸ö²¿·Ö×é³É¡£Apache Commons-FileUpload ÊÇ Commons Proper ÖеÄÒ»¸ö×é¼þ£¬Ö¼ÔÚʵÏÖÎļþÉÏ´«¡£ÖÁ´Ë×ÛÊö¸ÃÎó²îµÄ×ÛºÏÆÀ¼¶Îª¡°¸ßΣ¡±¡£
ÐÞ¸´½¨Òé
¹Ù·½ÒѾÕë¶ÔÎó²îÐû²¼ÁËÈí¼þ¸üУ¬ÏÂÔصصãÈçÏ£º
Apache Commons FileUpload£º
°æ±¾ >= 1.5
ÏÂÔØÁ´½Ó£º
https://commons.apache.org/proper/commons-fileupload/download_fileupload.cgi
Apache Tomcat£º
Apache Tomcat °æ±¾ >= 11.0.0-M3
Apache Tomcat °æ±¾ >= 10.1.5
Apache Tomcat °æ±¾ >= 9.0.71
Apache Tomcat °æ±¾ >= 8.5.85
ÏÂÔØÁ´½Ó£º
https://tomcat.apache.org/index.html
×¢£ºApache Tomcat 11.0.0-M2 δÐû²¼¡£¸ÃÎó²îÒÑÔÚ Apache Commons FileUpload °æ±¾ >= 1.5 ÖÐÐÞ¸´£¬µ«ÐÂÉèÖÃÑ¡Ïî (FileUploadBase#setFileCountMax) ĬÈÏÇéÐÎÏÂδÆôÓ㬱ØÐèÃ÷È·ÉèÖá£
ÓÅ·¢¹ú¼ÊÍøÕ¾¹ÙÍø½â¾ö¼Æ»®
Ò»£º»ùÓÚÎó²îɨÃè²úÆ·¾¡¿ì¶Ô×ʲú¾ÙÐÐÎó²îÆÀ¹À
ÓÅ·¢¹ú¼ÊÍøÕ¾¹ÙÍøÌ쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳÒѽôÆÈÐû²¼Õë¶Ô¸ÃÎó²îµÄÉý¼¶°ü£¬Ö§³Ö¶Ô¸ÃÎó²î¾ÙÐÐÊÚȨɨÃ裬Óû§Éý¼¶±ê×¼Îó²î¿âºó¼´¿É¶Ô¸ÃÎó²î¾ÙÐÐɨÃè¡£
6070°æ±¾Éý¼¶°üΪ607000488£¬Éý¼¶°üÏÂÔصص㣺
https://venustech.download.venuscloud.cn/
ÇëʹÓÃÓÅ·¢¹ú¼ÊÍøÕ¾¹ÙÍøÌ쾵ųÈõÐÔɨÃèÓëÖÎÀíϵͳ²úÆ·µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾£¬ÊµÊ±¶Ô¸ÃÎó²î¾ÙÐмì²â£¬ÒԱ㾡¿ì½ÓÄÉÌá·À²½·¥¡£
¶þ£ºÓÅ·¢¹ú¼ÊÍøÕ¾¹ÙÍø×ʲúÓëųÈõÐÔÖÎÀíƽ̨(ASM)ÅŲéÊÜÓ°Ïì×ʲú
ÓÅ·¢¹ú¼ÊÍøÕ¾¹ÙÍø×ʲúÓëųÈõÐÔÖÎÀíƽ̨ʵʱÊÕÂÞ²¢¸üÐÂÇ鱨ÐÅÏ¢£¬¶ÔÈë¿â×ʲúÎó²îApache Commons FileUpload¾Ü¾ø·þÎñÎó²î£¨CVE-2023-24998£©¾ÙÐÐÖÎÀí£¬ÈçͼËùʾ£º
×ʲúÓëųÈõÐÔÖÎÀíƽ̨ƾ֤Ç鱨ÐÅÏ¢¸üеÄÎó²îÊÜÓ°ÏìʵÌå¹æÔòÒÔ¼°ÏÖ³¡×ʲúÖÎÀíʵÀýµÄ°æ±¾ÐÅÏ¢¾ÙÐÐ×Ô¶¯»¯Åöײ£¬¿ÉµÚһʱ¼äÖÀÖÐÊܸÃÎó²îÓ°ÏìµÄ×ʲú£¬ÈçͼËùʾ£º
Èý£º»ùÓÚÇå¾²ÖÎÀíºÍ̬ÊƸÐ֪ƽ̨¾ÙÐйØÁªÆÊÎö
¿í´óÓû§¿ÉÒÔͨ¹ýÌ©ºÏÇå¾²ÖÎÀíºÍ̬ÊƸÐ֪ƽ̨£¬¾ÙÐйØÁªÕ½ÂÔÉèÖã¬ÍŽáÏÖÕæÏàÐÎÖÐϵͳÈÕÖ¾ºÍÇå¾²×°±¸µÄ¸æ¾¯ÐÅÏ¢¾ÙÐÐÒ»Á¬¼à¿Ø£¬´Ó¶ø·¢Ã÷¡°Apache Commons FileUpload¾Ü¾ø·þÎñ¡±µÄÎó²îʹÓù¥»÷ÐÐΪ¡£
ÔÚÌ©ºÏÇå¾²ÖÎÀíºÍ̬ÊƸÐ֪ƽ̨ÖУ¬Í¨¹ýųÈõÐÔ·¢Ã÷¹¦Ð§Õë¶Ô¡°Apache_Commons_FileUpload_¾Ü¾ø·þÎñÎó²î£¨CVE-2023-24998£©¡±Ö´ÐÐÎó²îɨÃèʹÃü£¬ÅŲéÖÎÀíÍøÂçÖÐÊÜ´ËÎó²îÓ°ÏìµÄÖ÷Òª×ʲú¡£
ÔÚƽ̨¡°¹ØÁªÆÊÎö¡±Ä£¿éÖУ¬Ìí¼Ó¡°L2_Apache_Commons_¾Ü¾ø·þÎñÎó²îʹÓá±£¬Í¨¹ýÓÅ·¢¹ú¼ÊÍøÕ¾¹ÙÍø¼ì²â×°±¸¡¢Ä¿µÄÖ÷»úϵͳµÈ×°±¸µÄ¸æ¾¯ÈÕÖ¾£¬·¢Ã÷Íⲿ¹¥»÷ÐÐΪ£º
̫ͨ¹ýÎö¹æÔò×Ô¶¯½«Apache Commons FileUpload¾Ü¾ø·þÎñʹÓõĿÉÒÉÐÐΪԴµØµãÌí¼Óµ½ÊÓ²ìÁÐ±í¡°¸ßΣº¦ÅþÁ¬¡±ÖУ¬×÷ΪÄÚ²¿Ç鱨Êý¾ÝʹÓã»
Ìí¼Ó¡°L3_Apache_Commons_¾Ü¾ø·þÎñÎó²îʹÓÃÀֳɡ±£¬Ìõ¼þÈÕÖ¾Ãû³Æ¼´ÊÇ¡°L2_Apache_Commons_¾Ü¾ø·þÎñÎó²îʹÓá±£¬¹¥»÷Ч¹û¼´ÊÇ¡°¹¥»÷Àֳɡ±£¬Ä¿µÄµØµãÒýÓÃ×ʲúÎó²î»òÔ´µØµãÆ¥ÅäÍþвÇ鱨£¬´Ó¶øÌáÉý¹ØÁª¹æÔòµÄÖÃÐŶȡ£
ËÄ£ºATT&CK¹¥»÷Á´ÌõÆÊÎöÓëSOAR´¦Öóͷ£½¨Òé
1¡¢ATT&CK¹¥»÷Á´ÆÊÎö
ƾ֤¶ÔApache Commons FileUpload¾Ü¾ø·þÎñÎó²îµÄ¹¥»÷ʹÓÃÀú³Ì¾ÙÐÐÆÊÎö£¬¹¥»÷Á´Éæ¼°µÄATT&CKÕ½ÊõºÍÊÖÒս׶ΰüÀ¨£º
Ó°ÏìTA0040£º¶Ëµã¾Ü¾ø·þÎñT1499
2¡¢´¦Öóͷ£¼Æ»®½¨æźÍSOAR¾ç±¾±àÅÅ
ͨ¹ýÌ©ºÏÇå¾²ÖÎÀíºÍ̬ÊƸÐ֪ƽ̨ÄÚÖÃSOAR×Ô¶¯»¯»ò°ë×Ô¶¯»¯±àÅÅÁª¶¯ÏìÓ¦´¦Öóͷ£ÄÜÁ¦£¬Õë¶Ô¸ÃÎó²îʹÓõĸ澯ÊÂÎñ±àÅž籾£¬¾ÙÐÐ×Ô¶¯»¯´¦Öóͷ£¡£