Windows RDP·þÎñ¸ßΣ·ì϶·ÖÎö£¨CVE-2019-0708£©
°ä²¼¹¦·ò 2019-05-292019Äê5ÔÂ14ÈÕ΢Èí¹Ù·½°ä²¼´¹Î£°²È«²¹¶¡£¬£¬£¬ÐÞ¸´ÁËWindowsÔ¶³Ì×ÀÃæ·þÎñµÄÔ¶³Ì´úÂëÖ´ÐиßΣ·ì϶CVE-2019-0708£¨CNVD-2019-14264¡¢CNNVD-201905-434£©£¬£¬£¬¸Ã·ì϶ӰÏìÁËijЩ¾É°æ±¾µÄWindowsϵͳ¡£ÓÉÓڸ÷ì϶ÎÞÐèÉí·ÝÑéÖ¤ÇÒÎÞÐèÓû§½»»¥£¬£¬£¬ËùÒÔÕâ¸ö·ì϶Äܹ»Í¨¹ýÍøÂçÈ䳿µÄ·½Ê½±»ÀûÓ㬣¬£¬ÀûÓô˷ì϶µÄ¶ñÒâÈí¼þÄܹ»´Ó±»Ï°È¾µÄÍÆËã»ú´«²¼µ½ÍøÂçÖÐÆäËûÒ×Êܹ¥»÷µÄÍÆËã»ú£¬£¬£¬´«²¼·½Ê½Óë2017ÄêWannaCry¶ñÒâÈí¼þµÄ´«²¼·½Ê½ÀàËÆ¡£
·ì϶ӰÏì°æ±¾
Windows 7
Windows XP
Windows 2003
Windows Server 2008
Windows Server 2008 R2
RDPºÍ̸¼ò½é
RDPÊÇ΢ÈíÖÕ¶Ë·þÎñÀûÓõĺÍ̸£¬£¬£¬·þÎñ¶Ë»ùÓÚWindows²Ù×÷ϵͳ£¬£¬£¬Windows´ÓNTÆðÍ·ÌṩÖÕ¶Ë·þÎñ¡£RDPºÍ̸»ùÓÚT.128£¨T.120ºÍ̸×壩Ìṩ¶àͨµÀͨѶ£¬£¬£¬²¢½øÐÐÁËÍØÕ¹¡£
RDPºÍ̸µÄÏνÓÁ÷³ÌÄܹ»·ÖΪ10¸ö·ÖÆçµÄ½×¶Î¡£ÕâÀïÎÒÃǹØ×¢Í¨µÀÏνÓÓйصö½×¶Î¡£
£¨1£©ConnectionInitiation£¨Ïνӳõʼ»¯£©
¿Í»§¶Ëͨ¹ýÏò·þÎñÆ÷·¢ËÍClass 0 X.224 ConnectionRequest PDUÆô¶¯ÏνÓÒªÇó¡£·þÎñÆ÷ʹÓÃClass 0 X.224 Connection Confirm PDU½øÐÐÏìÓ¦¡£Ö®ºó£¬£¬£¬¿Í»§¶ËºÍ·þÎñÆ÷Ö®¼ä·¢Ë͵ÄËùÓкóÐøÊý¾Ý¶¼±»°ü¹üÔÚX.224Êý¾ÝºÍ̸Êý¾Ýµ¥Ôª£¨PDU£©ÖС£
£¨2£© BasicSettings Exchange£¨»¥»»¸ù»ùÉèÖã©
ͨ¹ýʹÓÃMCS Connect Initial PDUºÍMCS Connect Response PDUÔÚ¿Í»§¶ËºÍ·þÎñÆ÷Ö®¼ä»¥»»¸ù»ùÉèÖá£GCCµÄÈ«³ÆÊÇ Generic Conference Control£¬£¬£¬GCC ×÷Ϊ T.124 µÄ³ß¶ÈºÍ̸£¬£¬£¬ÓÃÓÚÂ½Ðø´«Êä´óÁ¿Êý¾Ýʱ£¬£¬£¬½«Êý¾ÝÕû¶Ù·Ö¿é´«Êä¡£
£¨3£©Channel Connection £¨Ð鹹ͨµÀÏνӣ©
²¹¶¡·ÖÎö
ͨ¹ý²¹¶¡°ü·ÖÎö£¬£¬£¬ÎÒÃÇ·¢ÏÖ²¹¶¡Ç°ºó²î¾àÔÚÓÚtermdd.sysÎļþµÄIcaBindVirtualChannels¼°IcaReBindVirtualChannels£¬£¬£¬Ôö³¤Á˶ÔMS_T120ºÍ̸ͨµÀµÄÅж¨¡£ÈôÊÇÊÇͨµÀºÍ̸ÃûΪMS_T120£¬£¬£¬ÔòÉ趨IcaBindChannelµÄµÚÈý¸ö²ÎÊýΪ31¡£
·þÎñ¶ËÔÚ³õʼ»¯½×¶Î£¬£¬£¬»á´´½¨MS_T120, IndexΪ31µÄͨµÀ¡£ÔÚÊÕµ½MCS Connect InitialÊý¾Ý·â°üºó½øÐÐͨµÀ´´½¨ºÍ°ó¶¨²Ù×÷¡£
·ì϶µÀÀí·ÖÎö
ÎÒÃÇÔÚ¿Í»§¶ËMCS Connect InitialÊý¾Ý·â°üÖУ¬£¬£¬Ôö³¤Ò»¸öÃûΪMS_T120µÄͨµÀ¡£
½ÓÏÂÀ´£¬£¬£¬ÎÒÃÇ¿ªÊÍÕâ¸öChannel¡£ÎÒÃÇÏòMS_T120ͨµÀ·¢ËÍ»ú¹ØµÄÊý¾Ý£¬£¬£¬µ«ÓÉÓÚÕâ¸öͨµÀÒѾ±»°ó¶¨µ½ÄÚÖõÄMS_T120ͨµÀ£¬£¬£¬ËùÒÔÊý¾Ý×îÖÕ»áÅÉ·¢µ½ÏàÓ¦µÄ´¦Öú¯Êýrdpwsx!MCSProtDataÖУ¬£¬£¬¶øºóŲÓÃMCSChannelCloseº¯Êý¹Ø±ÕͨµÀ¡£
¶ûºó£¬£¬£¬ÎÒÃÇÏòϵͳµÄMS_T120ͨµÀ·¢ËÍÊý¾Ý£¬£¬£¬ÔÙ´ÎÒýÓñ»¹Ø±ÕµÄͨµÀ£¬£¬£¬´Ó¶øµ¼ÖÂUAF·ì϶¡£
½â¾ö¹æ»®
ĿǰOG¶«·½ÌüÒѾ°ä²¼Á˶ÔÓ¦µÄ²úµÈµÚ½â¾ö¹æ»®£¬£¬£¬ÓйØÁ´½ÓΪ£º/article/1/9148.html ¡£
¶ÔÓÚWindows 7¼°Windows Server 2008µÄÓû§£¬£¬£¬ÊµÊ±×°ÖÃWindows°ä²¼µÄ°²È«¸üС£
¶ÔÓÚWindows 2003¼°Windows XPµÄÓû§£¬£¬£¬ÊµÊ±¸üÐÂϵͳ°æ±¾¡£


¾©¹«Íø°²±¸11010802024551ºÅ