ÑÇÐÇÓéÀÖ¹ÙÍø×îаæ

¡¾Â©¶´Í¨¸æ¡¿Apache HTTP ServerÔ½½ç¶Áȡ©¶´£¨CVE-2023-31122£©
¸üÐÂʱ¼ä£º2024-03-22 À´Ô´£º ±à¼­£ºÖÎÀíÔ± ä¯ÀÀ£º255


2023Äê10ÔÂ30ÈÕ£¬ÑÇÐÇÓéÀÖ¹ÙÍø×îаæÐÇÂÞÍøÂç¿Õ¼äÄþ¾²ÊµÑéÊÒ¼à²âµ½Apache HTTP ServerÖÐÐÞ¸´ÁËÒ»¸öÔ½½ç¶Áȡ©¶´£¨CVE-2023-31122£©¡£

©¶´¸ÅÊö

Apache HTTP ServerÊÇApacheÈí¼þ»ù½ð»áµÄÒ»¸ö¿ª·ÅÔ´´úÂëµÄÍøҳЧÀÍÆ÷£¬ÓÉÓÚÆä¾ßÓпçƽ̨ÐÔºÍÄþ¾²ÐÔ£¬±»¹ã·ºÊ¹Óã¬ËüÊÇ×îÁ÷ÐеÄWebЧÀÍÆ÷¶ËÈí¼þÖ®Ò»¡£


Σº¦Ìáʾ

¸Ã©¶´±£´æÓÚApache HTTP Server µÄ mod_macro Ä £¿éÖУ¬ÓÉÓÚÔÚ´¦Àí³¬³¤µÄºêʱ£¬²»»áÌí¼Ó¿Õ×Ö½ÚÖÕÖ¹·û£¬µ¼ÖÂÔ½½ç¶ÁÈ¡£¬´Ó¶øµ¼ÖÂÍ߽⡣

©¶´Æ·¼¶

¸ßΣ

Ó°Ïì¹æÄ£

Apache HTTP Server <= 2.4.57


ÐÞ¸´½¨Òé

1.Éý¼¶°æ±¾£º

Ä¿Ç°¸Ã©¶´ÒѾ­ÐÞ¸´£¬ÊÜÓ°ÏìÓû§¿ÉÉý¼¶µ½Apache HTTP Server 2.4.58¡£


2.ÏÂÔØÁ´½Ó£º


https://httpd.apache.org/download.cgi


ÁÙʱ²½·¥

ÔÝÎÞ¡£


3. ͨÓý¨Ò飺

°´ÆÚ¸üÐÂϵͳ²¹¶¡£¬¼õÉÙϵͳ©¶´£¬ÌáÉýЧÀÍÆ÷µÄÄþ¾²ÐÔ¡£


ÔöǿϵͳºÍÍøÂçµÄ»á¼û¿ØÖÆ£¬Ð޸ķÀ»ðǽսÂÔ£¬¹Ø±Õ·ÇÐëÒªµÄÓ¦Óö˿ڻòЧÀÍ£¬¼õÉÙ½«Î£ÏÕЧÀÍ£¨ÈçSSH¡¢RDPµÈ£©Ì»Â¶µ½¹«Íø£¬¼õÉÙ¹¥»÷Ãæ¡£


ʹÓÃÆóÒµ¼¶Äþ¾²²úÆ·£¬ÌáÉýÆóÒµµÄÍøÂçÄþ¾²ÐÔÄÜ¡£


ÔöǿϵͳÓû§ºÍȨÏÞÖÎÀí£¬ÆôÓöàÒòËØÈÏÖ¤»úÖƺÍ×îСȨÏÞÔ­Ôò£¬Óû§ºÍÈí¼þȨÏÞÓ¦¼á³ÖÔÚ×îµÍÏ޶ȡ£


ÆôÓÃÇ¿ÃÜÂëÕ½ÂÔ²¢ÉèÖÃΪ°´ÆÚÐ޸ġ£


4. ²Î¿¼Á´½Ó

https://httpd.apache.org/security/vulnerabilities_24.html#CVE-2023-31122


https://svn.apache.org/viewvc?view=revision&revision=1912993


https://www.openwall.com/lists/oss-security/2023/10/19/4



ÉùÃ÷

±¾Äþ¾²Í¨¸æ½öÓÃÀ´ÃèÊö¿ÉÄܱ£´æµÄÄþ¾²ÎÊÌ⣬½­ËÕÑÇÐÇÓéÀÖ¹ÙÍø×îаæÐÇÂÞÍøÂç¿Õ¼äÄþ¾²ÊµÑéÊÒ²»Îª´ËÄþ¾²Í¨¸æÌṩÈκΰü¹Ü»òÔÊÐí¡£ÒòÁ÷´«¡¢ÀûÓôËÄþ¾²Í¨¸æËùÌṩµÄÐÅÏ¢¶øÔì³ÉµÄÈκÎÖ±½Ó»òÕß¼ä½ÓµÄ½á¹û¼°Ëðʧ¾ùÓÉʹÓÃÕß×Ô¼ºÂôÁ¦£¬½­ËÕÑÇÐÇÓéÀÖ¹ÙÍø×îаæÐÇÂÞÍøÂç¿Õ¼äÄþ¾²ÊµÑéÊÒÒÔ¼°Äþ¾²Í¨¸æ×÷Õß²»Îª´Ëµ£¸ºµ±ºÎÔðÈΡ£



½­ËÕÑÇÐÇÓéÀÖ¹ÙÍø×îаæ/Profile?

¹«Ë¾ÒÔ¡°´´Á¢¸üÄþ¾²µÄÊý×ÖδÀ´"ΪʹÃü£¬»ùÓÚ×ÔÖ÷Á¢Òì¼¼Êõ×ö¾«×öÉîȫϵÊý¾ÝÄþ¾²²úÆ·£¬¼ÓËÙ²úÆ·±ê×¼»¯¡¢¹ú²ú»¯¡¢ÔÆ»¯¡¢Ô­×Ó»¯ºÍÄÜÁ¦¿ª·Å¹²Ïí£¬Îª¿Í»§ÌṩÄþ¾²¡¢ºÏ¹æ¡¢È«ÉúÃüÖÜÆÚ¡¢È«ÒµÎñ³¡¾°µÄÊý¾ÝÄþ¾²ÕûÌå½â¾ö¼Æ»®ºÍЧÀÍ£¬ÎªÆóÒµÊý×Ö»¯×ªÐÍÌṩÊý×ÖÄþ¾²°ü¹Ü¡£



´´Á¢¸üÄþ¾²µÄÊý×ÖδÀ´ Éí·ÝÓë»á¼ûÄþ¾² ¡¤ Êý¾ÝÄþ¾² ¡¤ Äþ¾²ÖÎÀíÓëÔËÓª ¡¤ Äþ¾²Ð§ÀÍ ¡¤ ¾ü¹¤±£ÃÜ ¼ì²ì¸ü¶à
¡¾ÍøÕ¾µØͼ¡¿¡¾sitemap¡¿
ÓÑÇéÁ´½Ó£º365ËÙ·¢¹ú¼Ê  ÀÖÓãÈ«Õ¾µÇ¼  ´ó±¦ÓéÀÖlg¹Ù·½ÍøÕ¾  ×ðÁú¿­Ê±  agÑÇÓ鼯ÍÅ  °²²©ÌåÓýÔÚÏß  mgÓéÀÖµç×ÓÓÎÏ·ÍøÕ¾¹ÙÍø  ¹«º£²Ê´¬6600  1xbetƽ̨ÔõôÑù  pgÊÔÍæƽ̨Èë¿Ú  ¹Ú¾ü¹ú¼Ê  ×ðÁú¿­Ê±¹ÙÍø  itb8888ͨ²©  »ã²ÊÍøµÇ¼´óÌü  Æ½²©