CiscoÑÏÖØÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2018-06-07Îó²î±àºÅ¼°¼¶±ð
CVE-2018-0315 ÑÏÖØ ³§ÉÌ×ÔÆÀ£º9.8 CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
CVE-2018-0321 ÑÏÖØ ³§ÉÌ×ÔÆÀ£º9.8 CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
Ó°Ïì¹æÄ£
CVE-2018-0315
ÊÜÓ°ÏìµÄ°æ±¾
ÒÔϰ汾ÔÚʹÓÃAAA×÷ΪµÇ¼ÈÏ֤ʱÊÜÓ°Ï죺
Cisco IOS XE Software Release Fuji 16.7.1
Cisco IOS XE Software Release Fuji 16.8.1
²»ÊÜÓ°ÏìµÄ°æ±¾
Cisco IOS XE Software Release Fuji 16.7.2
Cisco IOS XE Software Release Fuji 16.8.1c
Cisco IOS XE Software Release Fuji 16.8.1s
Cisco IOS XE Software Release Fuji 16.9.1£¨Ô¤¼Æ½ñÄê7ÔÂÐû²¼£©
Cisco IOS XE Software Release Fuji 16.8.2£¨Ô¤¼Æ½ñÄê9ÔÂÐû²¼£©
CVE-2018-0321
ÊÜÓ°ÏìµÄ°æ±¾
´ËÎó²îÓ°Ïì˼¿ÆPrime Collaboration Provisioning£¨PCP£©°æ±¾11.6¼°¸üÔç°æ±¾¡£¡£¡£¡£
Îó²îÐÎò
6ÔÂ6ÈÕ£¬£¬£¬£¬£¬£¬Cisco¹Ù·½Ðû²¼Ò»ÔòÇ徲ͨ¸æÐû²¼Á˶à¸ö²úÆ·Çå¾²¸üУ¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨Á½¸öÑÏÖØ¼¶±ðµÄÎó²î¡£¡£¡£¡£ÏêÇé¼û£º
https://tools.cisco.com/security/center/publicationListing.x?product=Cisco¡£¡£¡£¡£
Æä²úÆ·ÖÐÓÃÓÚÈÏÖ¤¡¢ÊÚȨºÍ¼Í¼(AAA)µÄЧÀͱ£´æÑÏÖØÎó²î£¨CVE-2018-0315£©¡£¡£¡£¡£Í¨¹ý¸ÃÎó²î£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÔÚδÊÚȨµÄÇéÐÎÏ£¬£¬£¬£¬£¬£¬¿ÉÒÔÔ¶³ÌÔÚÊÜÓ°ÏìµÄ×°±¸ÉÏÖ´ÐÐí§Òâ´úÂ룬£¬£¬£¬£¬£¬»òÕßÔì³É×°±¸µÄÖØ¼ÓÔØµ¼Ö¾ܾøÐ§ÀÍÌõ¼þ¡£¡£¡£¡£
Cisco Prime Collaboration Provisioning£¨PCP£©ÖеÄÎó²î£¨CVE-2018-0321£©¿ÉÄÜÔÊÐíδ¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß»á¼ûJavaÔ¶³ÌÒªÁìŲÓã¨RMI£©ÏµÍ³¡£¡£¡£¡£¸ÃÎó²îÊÇÓÉÓÚÍøÂç½Ó¿ÚºÍÉèÖÃÒýÇæ£¨NICE£©Ð§ÀÍÖеĿª·Å¶Ë¿ÚÔì³ÉµÄ¡£¡£¡£¡£¹¥»÷Õß¿ÉÒÔͨ¹ý»á¼ûÊÜÓ°ÏìµÄPCPʵÀýÉϵĿª·ÅʽRMIϵͳÀ´Ê¹ÓôËÎó²î¡£¡£¡£¡£¿£¿£¿£¿£¿£¿ÉÒÔÔÊÐí¹¥»÷ÕßÖ´ÐÐÓ°ÏìPCP¼°ÆäÅþÁ¬×°±¸µÄ¶ñÒâÐÐΪ¡£¡£¡£¡£
½â¾ö²½·¥
Cisco¹Ù·½ÒѾÐû²¼Á˶ÔÓ¦µÄа汾ÐÞ¸´ÁËÉÏÊöÎó²î£¬£¬£¬£¬£¬£¬Óû§Ó¦ÊµÊ±¸üÐÂÉý¼¶¾ÙÐзÀ»¤¡£¡£¡£¡£Í¬Ê±£¬£¬£¬£¬£¬£¬ÖÎÀíÔ±¿ÉÒÔͨ¹ýÏÞ֯װ±¸µÄ»á¼ûȨÏÞÀ´È·±£Ö»ÓÐÊÜÐÅÈεÄȪԴ¿ÉÒÔ»á¼û×°±¸¡£¡£¡£¡£
²Î¿¼×ÊÁÏ
https://tools.cisco.com/security/center/publicationListing.x?product=Cisco
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180606-aaa
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180606-prime-rmi