Windows RDPЧÀ͸ßΣÎó²îÆÊÎö£¨CVE-2019-0708£©
Ðû²¼Ê±¼ä 2019-05-292019Äê5ÔÂ14ÈÕ΢Èí¹Ù·½Ðû²¼½ôÆÈÇå¾²²¹¶¡£¬£¬£¬ÐÞ¸´ÁËWindowsÔ¶³Ì×ÀÃæÐ§À͵ÄÔ¶³Ì´úÂëÖ´ÐиßΣÎó²îCVE-2019-0708£¨CNVD-2019-14264¡¢CNNVD-201905-434£©£¬£¬£¬¸ÃÎó²îÓ°ÏìÁËijЩ¾É°æ±¾µÄWindowsϵͳ¡£¡£¡£¡£ÓÉÓÚ¸ÃÎó²îÎÞÐèÉí·ÝÑéÖ¤ÇÒÎÞÐèÓû§½»»¥£¬£¬£¬ÒÔÊÇÕâ¸öÎó²î¿ÉÒÔͨ¹ýÍøÂçÈ䳿µÄ·½·¨±»Ê¹Ó㬣¬£¬Ê¹ÓôËÎó²îµÄ¶ñÒâÈí¼þ¿ÉÒÔ´Ó±»Ñ¬È¾µÄÅÌËã»úÈö²¥µ½ÍøÂçÖÐÆäËûÒ×Êܹ¥»÷µÄÅÌËã»ú£¬£¬£¬Èö²¥·½·¨Óë2017ÄêWannaCry¶ñÒâÈí¼þµÄÈö²¥·½·¨ÀàËÆ¡£¡£¡£¡£
Îó²îÓ°Ïì°æ±¾
Windows 7
Windows XP
Windows 2003
Windows Server 2008
Windows Server 2008 R2
RDPÐÒé¼ò½é
RDPÊÇ΢ÈíÖÕ¶ËЧÀÍÓ¦ÓõÄÐÒ飬£¬£¬Ð§ÀͶ˻ùÓÚWindows²Ù×÷ϵͳ£¬£¬£¬Windows´ÓNT×îÏÈÌṩÖÕ¶ËЧÀÍ¡£¡£¡£¡£RDPÐÒé»ùÓÚT.128£¨T.120ÐÒé×壩Ìṩ¶àͨµÀͨѶ£¬£¬£¬²¢¾ÙÐÐÁËÍØÕ¹¡£¡£¡£¡£
RDPÐÒéµÄÅþÁ¬Á÷³Ì¿ÉÒÔ·ÖΪ10¸ö²î±ðµÄ½×¶Î¡£¡£¡£¡£ÕâÀïÎÒÃǹØ×¢Í¨µÀÅþÁ¬Ïà¹ØµÄ¼¸¸ö½×¶Î¡£¡£¡£¡£
£¨1£©ConnectionInitiation£¨ÅþÁ¬³õʼ»¯£©
¿Í»§¶Ëͨ¹ýÏòЧÀÍÆ÷·¢ËÍClass 0 X.224 ConnectionRequest PDUÆô¶¯ÅþÁ¬ÇëÇ󡣡£¡£¡£Ð§ÀÍÆ÷ʹÓÃClass 0 X.224 Connection Confirm PDU¾ÙÐÐÏìÓ¦¡£¡£¡£¡£Ö®ºó£¬£¬£¬¿Í»§¶ËºÍЧÀÍÆ÷Ö®¼ä·¢Ë͵ÄËùÓкóÐøÊý¾Ý¶¼±»°ü¹üÔÚX.224Êý¾ÝÐÒéÊý¾Ýµ¥Î»£¨PDU£©ÖС£¡£¡£¡£
£¨2£© BasicSettings Exchange£¨½»Á÷»ù±¾ÉèÖã©
ͨ¹ýʹÓÃMCS Connect Initial PDUºÍMCS Connect Response PDUÔÚ¿Í»§¶ËºÍЧÀÍÆ÷Ö®¼ä½»Á÷»ù±¾ÉèÖᣡ£¡£¡£GCCµÄÈ«³ÆÊÇ Generic Conference Control£¬£¬£¬GCC ×÷Ϊ T.124 µÄ±ê×¼ÐÒ飬£¬£¬ÓÃÓÚÒ»Á¬´«Êä´ó×ÚÊý¾Ýʱ£¬£¬£¬½«Êý¾ÝÕûÀí·Ö¿é´«Êä¡£¡£¡£¡£
£¨3£©Channel Connection £¨ÐéÄâͨµÀÅþÁ¬£©
²¹¶¡ÆÊÎö
ͨ¹ý²¹¶¡°üÆÊÎö£¬£¬£¬ÎÒÃÇ·¢Ã÷²¹¶¡Ç°ºó²î±ðÔÚÓÚtermdd.sysÎļþµÄIcaBindVirtualChannels¼°IcaReBindVirtualChannels£¬£¬£¬ÔöÌíÁ˶ÔMS_T120ÐÒéͨµÀµÄÅжϡ£¡£¡£¡£ÈôÊÇÊÇͨµÀÐÒéÃûΪMS_T120£¬£¬£¬ÔòÉ趨IcaBindChannelµÄµÚÈý¸ö²ÎÊýΪ31¡£¡£¡£¡£
ЧÀͶËÔÚ³õʼ»¯½×¶Î£¬£¬£¬»á½¨ÉèMS_T120, IndexΪ31µÄͨµÀ¡£¡£¡£¡£ÔÚÊÕµ½MCS Connect InitialÊý¾Ý·â°üºó¾ÙÐÐͨµÀ½¨ÉèºÍ°ó¶¨²Ù×÷¡£¡£¡£¡£
Îó²îÔÀíÆÊÎö
ÎÒÃÇÔÚ¿Í»§¶ËMCS Connect InitialÊý¾Ý·â°üÖУ¬£¬£¬ÔöÌíÒ»¸öÃûΪMS_T120µÄͨµÀ¡£¡£¡£¡£
½ÓÏÂÀ´£¬£¬£¬ÎÒÃÇÊÍ·ÅÕâ¸öChannel¡£¡£¡£¡£ÎÒÃÇÏòMS_T120ͨµÀ·¢ËͽṹµÄÊý¾Ý£¬£¬£¬µ«ÓÉÓÚÕâ¸öͨµÀÒѾ±»°ó¶¨µ½ÄÚÖõÄMS_T120ͨµÀ£¬£¬£¬ÒÔÊÇÊý¾Ý×îÖÕ»áÅÉ·¢µ½ÏìÓ¦µÄ´¦Öóͷ£º¯Êýrdpwsx!MCSProtDataÖУ¬£¬£¬È»ºóŲÓÃMCSChannelCloseº¯Êý¹Ø±ÕͨµÀ¡£¡£¡£¡£
ÒԺ󣬣¬£¬ÎÒÃÇÏòϵͳµÄMS_T120ͨµÀ·¢ËÍÊý¾Ý£¬£¬£¬ÔÙ´ÎÒýÓñ»¹Ø±ÕµÄͨµÀ£¬£¬£¬´Ó¶øµ¼ÖÂUAFÎó²î¡£¡£¡£¡£
½â¾ö¼Æ»®
ÏÖÔÚ¿Ðý¹ú¼ÊÓÎÏ·ÒѾÐû²¼Á˶ÔÓ¦µÄ²úÆ·¼¶½â¾ö¼Æ»®£¬£¬£¬Ïà¹ØÁ´½ÓΪ£º/article/1/9148.html ¡£¡£¡£¡£
¹ØÓÚWindows 7¼°Windows Server 2008µÄÓû§£¬£¬£¬ÊµÊ±×°ÖÃWindowsÐû²¼µÄÇå¾²¸üС£¡£¡£¡£
¹ØÓÚWindows 2003¼°Windows XPµÄÓû§£¬£¬£¬ÊµÊ±¸üÐÂϵͳ°æ±¾¡£¡£¡£¡£