cups-browsedÔ¶³ÌÏÂÁîÖ´ÐÐÎó²îÀ´Ï® £¬£¬£¬£¬£¬£¬¼øºÚµ£±£ÍøÌṩ½â¾ö¼Æ»®

Ðû²¼Ê±¼ä 2024-09-29

½üÆÚ £¬£¬£¬£¬£¬£¬¼øºÚµ£±£Íø¼à¿Øµ½cups-browsedÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î£¨CVE-2024-47176£© £¬£¬£¬£¬£¬£¬¸ÃÎó²îCVSS3.1ÏÖÔÚÆÀ·ÖΪ8.3·Ö £¬£¬£¬£¬£¬£¬×ÛºÏÆÀ¼¶Îª¡°¸ßΣ¡±¡£¡£¡£ ¡£¡£


CUPS£¨Common UNIX Printing System£©ÊÇ Linux ϵͳÉÏʹÓÃ×îÆÕ±éµÄ´òӡϵͳ £¬£¬£¬£¬£¬£¬Æä×é¼þcups-browsed°üÀ¨ÍøÂç´òÓ¡¹¦Ð§ £¬£¬£¬£¬£¬£¬°üÀ¨µ«²»ÏÞÓÚ×Ô¶¯·¢Ã÷´òӡЧÀͺ͹²Ïí´òÓ¡»ú £¬£¬£¬£¬£¬£¬ÊÜÓ°Ïì°æ±¾ÖÐδ¶ÔÊý¾Ý°ü¾ÙÐÐÑéÖ¤ £¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉʹÓÃFoomaticRIPCommandLineʵÏÖÔ¶³ÌÏÂÁîÖ´ÐС£¡£¡£ ¡£¡£


ͼƬ1.png



Îó²î¸´ÏÖ½ØÍ¼


ͼƬ2.jpg


Ó°Ïì°æ±¾


cups-browsed <= 2.0.1


¼ì²âÒªÁì


Éó²écups-browsedÔËÐÐ״̬ £¬£¬£¬£¬£¬£¬Ö´ÐÐÏÂÁîΪsystemctl status cups-browsed £¬£¬£¬£¬£¬£¬ÈôÊÇÏÔʾ¡°active (running)¡±ÔòÊÜÓ°Ïì¡£¡£¡£ ¡£¡£


½â¾ö¼Æ»®


Ò»¡¢¹Ù·½ÐÞ¸´¼Æ»®

ÔÝÎÞ¹Ù·½ÐÞ¸´¼Æ»®¡£¡£¡£ ¡£¡£


¶þ¡¢ÔÝʱ¹æ±Ü¼Æ»®


×èÖ¹²¢½ûÓÃcups-browsed £¬£¬£¬£¬£¬£¬Ö´ÐÐÏÂÁîΪsudo systemctl stop cups-browsed && sudo systemctl disable cups-browsed¡£¡£¡£ ¡£¡£


Èý¡¢¼øºÚµ£±£Íø½â¾ö¼Æ»®


1¡¢¼øºÚµ£±£ÍøÖն˲úÆ·¼Æ»®


Ìì«‘ÖÕ¶ËÇå¾²Ò»Ì廯£¨EDR£©ÌṩÎó²îµÄרÏîÑéÖ¤¼ì²éÄÜÁ¦¿É¶ÔÎó²îפÁôÖն˾ÙÐÐÈ«ÍøÍ¬²½ÑéÖ¤ £¬£¬£¬£¬£¬£¬¼à¿ØÖ÷»úÒì³£ÍâÁ¬¼ì²â £¬£¬£¬£¬£¬£¬Ô¤·ÀÎó²î¹¥»÷Σº¦¡£¡£¡£ ¡£¡£


ͼƬ3.jpg


2¡¢¼øºÚµ£±£Íø¼ì²âÀà²úÆ·¼Æ»®


ÌìãÙÈëÇÖ¼ì²âÓëÖÎÀíϵͳ£¨IDS£©¡¢ÌìãÙ³¬Èںϼì²â̽Õ루CSP£©¡¢ÌìãÙÍþвÆÊÎöÒ»Ìå»ú£¨TAR£©¡¢ÌìÇåÈëÇÖ·ÀÓùϵͳ£¨IPS£© £¬£¬£¬£¬£¬£¬Éý¼¶µ½×îа汾¼´¿ÉÓÐÓüì²â»ò·À»¤¸ÃÎó²îÔì³ÉµÄ¹¥»÷Σº¦¡£¡£¡£ ¡£¡£

ÊÂÎñ¿âÏÂÔØµØµã£º

https://venustech.download.venuscloud.cn/


3¡¢¼øºÚµ£±£ÍøÂ©É¨²úÆ·¼Æ»®


£¨1£©¡°¼øºÚµ£±£ÍøÎó²îɨÃèϵͳV6.0¡±²úÆ·ÒÑÖ§³Ö¶Ô¸ÃÎó²î¾ÙÐÐɨÃè¡£¡£¡£ ¡£¡£


ͼƬ4.jpg


£¨2£©¼øºÚµ£±£ÍøÎó²îɨÃèϵͳ608XϵÁа汾ÒÑÖ§³Ö¶Ô¸ÃÎó²î¾ÙÐÐɨÃè¡£¡£¡£ ¡£¡£


ͼƬ5.jpg


4¡¢¼øºÚµ£±£Íø×ʲúÓëųÈõÐÔÖÎÀíÆ½Ì¨²úÆ·¼Æ»®


¼øºÚµ£±£Íø×ʲúÓëųÈõÐÔÖÎÀíÆ½Ì¨ÊµÊ±ÊÕÂÞ²¢¸üÐÂÇ鱨ÐÅÏ¢ £¬£¬£¬£¬£¬£¬¶ÔÈë¿â×ʲúÎó²îcups-browsedÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î£¨CVE-2024-47176£©¾ÙÐÐÖÎÀí¡£¡£¡£ ¡£¡£


ͼƬ6.jpg


5¡¢¼øºÚµ£±£ÍøÇå¾²ÖÎÀíºÍÌ¬ÊÆ¸Ð֪ƽ̨²úÆ·¼Æ»®


Óû§¿ÉÒÔͨ¹ýÌ©ºÏÇå¾²ÖÎÀíºÍÌ¬ÊÆ¸Ð֪ƽ̨ £¬£¬£¬£¬£¬£¬¾ÙÐйØÁªÕ½ÂÔÉèÖà £¬£¬£¬£¬£¬£¬Á¬ÏµÏÖÕæÏàÐÎÖÐϵͳÈÕÖ¾ºÍÇå¾²×°±¸µÄ¸æ¾¯ÐÅÏ¢¾ÙÐÐÒ»Á¬¼à¿Ø £¬£¬£¬£¬£¬£¬´Ó¶ø·¢Ã÷¡°cups-browsedÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î£¨CVE-2024-47176£©¡±µÄÎó²îʹÓù¥»÷ÐÐΪ¡£¡£¡£ ¡£¡£


£¨1£©ÔÚÌ©ºÏµÄƽ̨ÖÐ £¬£¬£¬£¬£¬£¬Í¨¹ýųÈõÐÔ·¢Ã÷¹¦Ð§Õë¶Ô¡°cups-browsedÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î£¨CVE-2024-47176£©¡±Îó²îɨÃèʹÃü £¬£¬£¬£¬£¬£¬ÅŲéÖÎÀíÍøÂçÖÐÊÜ´ËÎó²îÓ°ÏìµÄÖ÷Òª×ʲú£»£»£»


ͼƬ7.jpg


£¨2£©Æ½Ì¨¡°¹ØÁªÆÊÎö¡±Ä£¿£¿£¿£¿£¿£¿éÖÐ £¬£¬£¬£¬£¬£¬Ìí¼Ó¡°L2_cups-browsedÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î¡± £¬£¬£¬£¬£¬£¬Í¨¹ý¼øºÚµ£±£Íø¼ì²â×°±¸¡¢Ä¿µÄÖ÷»úϵͳµÈ×°±¸µÄ¸æ¾¯ÈÕÖ¾ £¬£¬£¬£¬£¬£¬·¢Ã÷Íⲿ¹¥»÷ÐÐΪ £¬£¬£¬£¬£¬£¬ÏêϸÉèÖÃÈçÏ£º


ͼƬ8.jpg


̫ͨ¹ýÎö¹æÔò×Ô¶¯½«¡°L2_cups-browsedÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î¡±Îó²îʹÓõĿÉÒÉÐÐΪԴµØµãÌí¼Óµ½ÊÓ²ìÁÐ±í¡°¸ßΣº¦ÅþÁ¬¡±ÖÐ £¬£¬£¬£¬£¬£¬×÷ΪÄÚ²¿Ç鱨Êý¾ÝʹÓ㻣»£»


£¨3£©Ìí¼Ó¡°L3_cups-browsedÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î¡± £¬£¬£¬£¬£¬£¬Ìõ¼þÈÕÖ¾Ãû³Æ¼´ÊÇ»ò°üÀ¨¡°L2_cups-browsedÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î¡± £¬£¬£¬£¬£¬£¬¹¥»÷Ч¹û¼´ÊÇ¡°¹¥»÷Àֳɡ± £¬£¬£¬£¬£¬£¬Ä¿µÄµØµãÒýÓÃ×ʲúÎó²î»òÔ´µØµãÆ¥ÅäÍþвÇ鱨 £¬£¬£¬£¬£¬£¬´Ó¶øÌáÉý¹ØÁª¹æÔòµÄÖÃÐŶÈ¡£¡£¡£ ¡£¡£


ͼƬ9.jpg