PillowÑÏÖØÎó²îCVE-2023-50447ÈÃPythonÏîÄ¿ÃæÁÙΣº¦

Ðû²¼Ê±¼ä 2024-01-23

1. PillowÑÏÖØÎó²îCVE-2023-50447ÈÃPythonÏîÄ¿ÃæÁÙΣº¦


1ÔÂ21ÈÕ£¬£¬ £¬£¬ £¬Pillow×÷ΪÐí¶àÏîÄ¿µÄ»ùʯ£¬£¬ £¬£¬ £¬×÷Ϊ Python ³ÉÏñ¿â (PIL) µÄÏÖ´ú¼ÌÐøÕß¡£¡£¡£¸Ã¿âÒòÆä´¦Öóͷ£ÖÖÖÖͼÏñ´¦Öóͷ£Ê¹ÃüµÄǿʢ¹¦Ð§¶øÊܵ½ÖØÊÓ¡£¡£¡£È»¶ø£¬£¬ £¬£¬ £¬Çå¾²Ñо¿Ö°Ô± Duarte Santos ×î½ü·¢Ã÷ÁËÒ»¸öÑÏÖØÎó²î CVE-2023-50447£¬£¬ £¬£¬ £¬¸ÃÎó²î¿ÉÄÜÔÊÐí¹¥»÷ÕßÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¸ÃÎó²îµÄ CVSS ÆÀ·ÖΪ 9.0£¬£¬ £¬£¬ £¬Î»ÓÚ Pillow µÄ¡°PIL.ImageMath.¡±º¯ÊýÖС£¡£¡£¸Ãº¯ÊýÖ¼ÔÚÆÀ¹ÀÉæ¼°Í¼ÏñµÄÊýѧ±í´ïʽ£¬£¬ £¬£¬ £¬ÎÞÒâÖÐÔÊÐí¿ØÖÆ×ª´ï¸ø¡°ÇéÐΡ±²ÎÊýµÄÃÜÔ¿µÄ¹¥»÷ÕßÖ´ÐÐí§Òâ´úÂë¡£¡£¡£ÎÊÌâÔ´ÓÚ Pillow ÈçÄÇÀïÖÃÕâЩ±í´ïʽ£¬£¬ £¬£¬ £¬ËüÒÀÀµÓÚ Python µÄÄÚÖá°¡±£¬£¬ £¬£¬ £¬µ«¾ßÓÐͼÏñ´¦Öóͷ£µÄ¸½¼Ó¹¦Ð§¡£¡£¡£¸ÃʹÓÃÊÖÒÕÎ§ÈÆÊ¹ÓÃÆÀ¹ÀÉÏÏÂÎÄÒÔ°üÀ¨¶ñÒâ¡°co_names¡±£¬£¬ £¬£¬ £¬´Ó¶øÈƹýÔ¤ÆÚµÄÏÞÖÆ¡£¡£¡£Í¨¹ýÇÉÃîµØÊ¹Óà Python µÄ dunder£¨Ë«Ï»®Ïߣ©ÒªÁ죬£¬ £¬£¬ £¬¹¥»÷Õß¿ÉÒÔŲÓà eval ÉÏÏÂÎÄÖб£´æµÄ¹¤¾ßÄÚµÄí§ÒâÒªÁ죬£¬ £¬£¬ £¬´Ó¶øµ¼Ö´úÂëÖ´ÐС£¡£¡£


2. SmokeLoader¶ñÒâÈí¼þÕýÔÚÕë¶ÔÎÚ¿ËÀ¼µÄÕþ¸®»ú¹¹ºÍ¹«Ë¾


1ÔÂ19ÈÕ£¬£¬ £¬£¬ £¬AhnLab Çå¾²Ç鱨ÖÐÐÄ (ASEC) ·¢Ã÷¶à¸ö SmokeLoader ¶ñÒâÈí¼þÕýÔÚ·Ö·¢¸øÎÚ¿ËÀ¼Õþ¸®ºÍ¹«Ë¾¡£¡£¡£½üÆÚÕë¶ÔÎÚ¿ËÀ¼µÄÏ®»÷ÊÂÎñËÆºõÓÐËùÔöÌí¡£¡£¡£ÏÖÔÚÈ·ÈϵÄÄ¿µÄ°üÀ¨ÎÚ¿ËÀ¼Ë¾·¨²¿¡¢¹«¹²»ú¹¹¡¢°ü¹Ü¹«Ë¾¡¢Ò½ÁÆ»ú¹¹¡¢ÐÞ½¨¹«Ë¾ºÍÖÆÔ칫˾µÈ¡£¡£¡£·Ö·¢µÄµç×ÓÓʼþ×ñÕÕÎÚ¿ËÀ¼ÓïÃûÌᣡ£¡£ÕýÎİüÀ¨Ó뷢ƱÏà¹ØµÄÐÅÏ¢£¬£¬ £¬£¬ £¬ÌáÐѶÁÕßÖ´Ðи½¼þ¡£¡£¡£SmokeLoaderÊÇÒ»ÖÖÏÂÔØÆ÷¶ñÒâÈí¼þ£¬£¬ £¬£¬ £¬Ëü¿ÉÒÔÔÚÅþÁ¬µ½C&CЧÀÍÆ÷ºóͨ¹ýÎüÊÕÏÂÁîÀ´ÏÂÔØÌØÁíÍâÄ£¿£¿£¿£¿£¿£¿é»ò¶ñÒâÈí¼þ¡£¡£¡£Ö´ÐÐʱ»á×¢Èëexplorer.exe£¬£¬ £¬£¬ £¬²¢Í¨¹ýÒÔÏÂÓγ̾ÙÐжñÒâ»î¶¯¡£¡£¡£Ê×ÏÈ£¬£¬ £¬£¬ £¬ËüÔÚ %AppData% ·¾¶Öн«×ÔÉí¸´ÖÆÎª¡°ewuabsi¡±£¬£¬ £¬£¬ £¬Òþ²Ø×ÔÉí²¢ÊÚÓèϵͳÎļþÊôÐÔ¡£¡£¡£È»ºó£¬£¬ £¬£¬ £¬ËüʵÑéÅþÁ¬µ½ÏÂÃæÁгöµÄ C&C ЧÀÍÆ÷£¬£¬ £¬£¬ £¬ÆäÖпÉÒÔÌØÊâÏÂÔØ Lockbit ÀÕË÷Èí¼þºÍÖÖÖÖÆäËü¶ñÒâÈí¼þ¡£¡£¡£


3. TietoevryÔâÀÕË÷Èí¼þAkira¹¥»÷µ¼ÖÂÈðµäÆóÒµºÍ¶¼»áÍ£µç


1ÔÂ21ÈÕ£¬£¬ £¬£¬ £¬·ÒÀ¼ IT ЧÀÍºÍÆóÒµÔÆÍйÜÌṩÉÌ Tietoevry ÔâÊÜÀÕË÷Èí¼þ¹¥»÷£¬£¬ £¬£¬ £¬Ó°ÏìÆäλÓÚÈðµäµÄÒ»¸öÊý¾ÝÖÐÐĵÄÔÆÍйܿͻ§£¬£¬ £¬£¬ £¬¾Ý±¨µÀ£¬£¬ £¬£¬ £¬´Ë´Î¹¥»÷ÊÇÓÉ Akira ÀÕË÷Èí¼þÍÅ»ïÌᳫµÄ¡£¡£¡£Tietoevry ÊÇÒ»¼Ò·ÒÀ¼ IT ЧÀ͹«Ë¾£¬£¬ £¬£¬ £¬ÎªÆóÒµÌṩÍйÜЧÀͺÍÔÆÍйÜ¡£¡£¡£¸Ã¹«Ë¾ÔÚÈ«ÇòÓµÓÐÔ¼ 24,000 ÃûÔ±¹¤£¬£¬ £¬£¬ £¬2023 ÄêÊÕÈëΪ 31 ÒÚÃÀÔª¡£¡£¡£ÀÕË÷Èí¼þ¹¥»÷¶Ô¸Ã¹«Ë¾µÄÐéÄ⻯ºÍÖÎÀíЧÀÍÆ÷¾ÙÐÐÁ˼ÓÃÜ£¬£¬ £¬£¬ £¬ÕâЩЧÀÍÆ÷ÓÃÓÚÍйÜÈðµäÖÚ¶àÆóÒµµÄÍøÕ¾»òÓ¦ÓóÌÐò¡£¡£¡£Èðµä×î´óµÄÁ¬ËøÓ°Ôº Filmstaden ÒÑÈ·ÈÏ ËûÃÇÊܵ½´Ë´Î¹¥»÷µÄÓ°Ï죬£¬ £¬£¬ £¬Òò´ËÎÞ·¨Í¨¹ýÍøÕ¾»òÒÆ¶¯Ó¦ÓóÌÐòÔÚÏß¹ºÖÃӰϷƱ£»£»£»£»£»£»ÆäËûÊܵ½¹¥»÷Ó°ÏìµÄ¹«Ë¾°üÀ¨ÕÛ¿ÛÁãÊÛÁ¬Ëøµê Rusta¡¢Ô­ÖÊÁϹ©Ó¦ÉÌ MoelvenºÍũҵ¹©Ó¦ÉÌ Grangn?rden£¬£¬ £¬£¬ £¬ºóÕß ÔÚ IT ЧÀͻָ´Ê±´ú±»ÆÈ ¹Ø±ÕÊÐËÁ£»£»£»£»£»£»Í£µç»¹Ó°ÏìÁËÈðµäµÄÖÚ¶àÕþ¸®»ú¹¹ºÍÊÐÕþÕþ¸®£¬£¬ £¬£¬ £¬°üÀ¨ Statens ЧÀÍÖÐÐÄ¡¢  Vellinge ÊС¢  Bjuv ÊÐºÍ ÎÚÆÕÈøÀ­ÏØ¡£¡£¡£


4. LockBitÀÕË÷Èí¼þÍÅ»ïÉù³ÆÒÑÈëÇÖÃÀ¹ú¿ì²ÍÁ¬ËøµêSubway


1ÔÂ21ÈÕ£¬£¬ £¬£¬ £¬Subway IP LLC ÊÇÒ»¼ÒÃÀ¹ú¿ç¹ú¿ì²ÍÁ¬Ëøµê£¬£¬ £¬£¬ £¬Ö÷Óªº£µ×ÈýÃ÷ÖÎ (subs)¡¢¾í±ý¡¢É³À­ºÍÒûÁÏ¡£¡£¡£Lockbit ÀÕË÷Èí¼þ×éÖ¯½« Subway Ìí¼Óµ½Æä Tor Êý¾ÝÐ¹Â¶ÍøÕ¾µÄÊܺ¦ÕßÃûµ¥ÖУ¬£¬ £¬£¬ £¬²¢ÍþвÓÚ 2024 Äê 2 Ô 2 ÈÕ 21:44:16 UTC й¶±»µÁÊý¾Ý¡£¡£¡£¸Ã×éÖ¯Éù³ÆÇÔÈ¡ÁËÊý°ÙGBµÄÃô¸ÐÊý¾Ý¡£¡£¡£¸ÃÍÅ»ïÌåÏÖ£¬£¬ £¬£¬ £¬±»µÁÊý¾Ý°üÀ¨Ô±¹¤ÈËΪ¡¢ÌØÐíı»®È¨Ê¹Ó÷ѡ¢Ö÷ÌØÐíı»®Ó¶½ðÖ§¸¶¡¢²ÍÌüÓªÒµ¶îµÈ¡£¡£¡£Tor Ð¹Â¶ÍøÕ¾ÉÏÐû²¼µÄÐÂÎÅ£º¡°×î´óµÄÈýÃ÷ÖÎÁ¬Ëøµêð³äʲô¶¼Ã»±¬·¢¡£¡£¡£ÎÒÃÇÇÔÈ¡ÁËËûÃÇµÄ SUBS ÄÚ²¿ÏµÍ³£¬£¬ £¬£¬ £¬ÆäÖаüÀ¨Êý°Ù GB µÄÊý¾ÝºÍÌØÐíı»®È¨µÄËùÓвÆÎñÔ¤ÆÚ£¬£¬ £¬£¬ £¬°üÀ¨Ô±¹¤ÈËΪ¡¢ÌØÐíı»®È¨Ê¹Ó÷ѡ¢Ö÷ÌØÐíı»®Ó¶½ðÖ§¸¶¡¢²ÍÌüÓªÒµ¶îµÈ¡£¡£¡£ÎÒÃǸøËûÃÇһЩʱ¼äÀ´±£»£»£»£»£»£»¤ÕâЩÊý¾ÝÊý¾Ý£¬£¬ £¬£¬ £¬ÈôÊÇûÓУ¬£¬ £¬£¬ £¬ÎÒÃÇÔ¸ÒâÏò¾ºÕùµÐÊÖ³öÊÛ¡£¡£¡£¡± 


5. Ñо¿ÍŶӷ¢Ã÷ʹÓÃCVE-2023-46604µÄ¹¥»÷»î¶¯Godzilla


1ÔÂ22ÈÕ£¬£¬ £¬£¬ £¬ÍøÂçÇå¾²Ñо¿Ö°Ô±ÖÒÑÔ˵£¬£¬ £¬£¬ £¬ÍþвÐÐΪÕߵĻ¡°ÏÔ×ÅÔöÌí¡±£¬£¬ £¬£¬ £¬ËûÃÇÆð¾¢Ê¹Óà Apache ActiveMQ ÖÐÏÖÒÑÐÞ²¹µÄȱÏÝ£¬£¬ £¬£¬ £¬ÔÚÊÜѬȾµÄÖ÷»úÉÏת´ï Godzilla Web shell¡£¡£¡£¸Ãshell Òþ²ØÔÚδ֪µÄ¶þ½øÖÆÃûÌÃÖУ¬£¬ £¬£¬ £¬Ö¼ÔÚÌÓ±ÜÇå¾²ºÍ»ùÓÚÊðÃûµÄɨÃè³ÌÐò¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬ £¬£¬ £¬Ö»¹Ü¶þ½øÖÆÎļþÃûÌÃδ֪£¬£¬ £¬£¬ £¬ActiveMQ µÄ JSP ÒýÇæÈÔ¼ÌÐø±àÒë²¢Ö´ÐÐ Web shell¡£¡£¡£CVE-2023-46604£¨CVSS ÆÀ·Ö£º10.0£©ÊÇÖ¸Apache ActiveMQ ÖеÄÒ»¸öÑÏÖØÎó²î£¬£¬ £¬£¬ £¬¸ÃÎó²î¿ÉʵÏÖÔ¶³Ì´úÂëÖ´ÐС£¡£¡£×Ô 2023 Äê 10 ÔÂÏÂÑ®¹ûÕæÅû¶ÒÔÀ´£¬£¬ £¬£¬ £¬ËüÒѱ»¶à¸öµÐÊÖÆð¾¢Ê¹Ó㬣¬ £¬£¬ £¬ÒÔ°²ÅÅÀÕË÷Èí¼þ¡¢rootkit¡¢¼ÓÃÜÇ®±Ò¿ó¹¤ºÍDDoS ½©Ê¬ÍøÂç¡£¡£¡£


6. Çå¾²Ñо¿ÍŶÓÐû²¼Ä£¿£¿£¿£¿£¿£¿é»¯Ä¾ÂíZloaderбäÖֵįÊÎö±¨¸æ


1ÔÂ22ÈÕ£¬£¬ £¬£¬ £¬Zloader ½µÉúÓÚй¶µÄ Zeus Ô´´úÂ룬£¬ £¬£¬ £¬ÓÚ 2016 ÄêÊ״ηºÆð£¬£¬ £¬£¬ £¬Ä¿µÄÊǵ¹úÒøÐС£¡£¡£È»¶ø£¬£¬ £¬£¬ £¬ËüµÄ»î¶¯¿ÉÒÔ×·Ëݵ½ 2015 Äê¡£¡£¡£ÔÚ 2018 ÄêÖ®ºóµÄÖÐÖ¹Ö®ºó£¬£¬ £¬£¬ £¬ËüÓÚ 2019 Äêµ×ÒÔ¡°Æ½°²Ò¹¡±µÄÃûÒåÖØÐÂáÈÆð£¬£¬ £¬£¬ £¬¶ÔÆä¹¦Ð§´øÀ´ÁËÖØ´ó¸Ä±äºÍÔöÇ¿¡£¡£¡£Zloader ´ÓÒøÐÐľÂíµ½ÀÕË÷Èí¼þ¹¥»÷¹¤¾ßµÄÀú³Ì·´Ó¦ÁËÍøÂçÍþвµÄ˳ӦÐÔ¡£¡£¡£ÆäÑݱäÔÚ 2021 Äê 9 Ô¿ª·¢³ö 2.0.0.0 °æ±¾Ê±µÖ´ïáÛ·å¡£¡£¡£Ö»¹ÜÔÚ 2022 Äê 4 Ô¾ÙÐÐÁËɾ³ý²Ù×÷£¬£¬ £¬£¬ £¬Zloader ÈÔÓÚ 2023 ÄêÒÔ¸üÖØ´óµÄ¸üлع飬£¬ £¬£¬ £¬Õ¹Ê¾ÁËÆäµ¯ÐԺͶÔÍøÂçÇå¾²µÄÒ»Á¬Íþв¡£¡£¡£Zloader µÄ×îа汾ÓÚ 2023 Äê 9 ÔÂ×îÏÈ¿ª·¢£¬£¬ £¬£¬ £¬ÒýÈëÁËÏȽøµÄ»ìÏýÊÖÒÕ¡¢¸üеÄÓòÌìÉúËã·¨ºÍÓÃÓÚÍøÂçͨѶµÄ RSA ¼ÓÃÜ¡£¡£¡£ÖµµÃ×¢ÖØµÄÊÇ£¬£¬ £¬£¬ £¬¸Ã¼ÓÔØ³ÌÐòÏÖÔÚÖ§³Ö 64 λ Windows °æ±¾£¬£¬ £¬£¬ £¬Õâ±ê¼Ç×ÅÆä²Ù×÷ÄÜÁ¦µÄÖØ´óת±ä¡£¡£¡£´Ë´ÎÑݱä°üÀ¨Ð°汾 2.1.6.0 ºÍ 2.1.7.0£¬£¬ £¬£¬ £¬Í»³öÁË Zloader µÄÒ»Á¬Éú³¤ºÍÍþв¡£¡£¡£