这个名叫Dirty COW,也就是脏牛的漏洞,存在Linux内核中已经有长达9年的时间,也就说2007年发布的Linux内核版本中就已经存在此漏洞。Linux kernel团队已经对此进行了修复。
漏洞编号:
cve-2016-5195
漏洞名称:
dirty cow
漏洞危害:
湖北快3diquanxianyonghuliyonggailoudongkeyizaizhongduolinuxxitongshangshixianbenditiquan
影响范围:
linux kernel >= 2.6.22(2007nianfaxing,daojinnian10yue18ricaixiufu)
漏洞概述:
湖北快3gailoudongjutiwei,linuxneihedeneicunzixitongzaichulixierushifuzhi(copy-on-write, cow)shichanshenglejingzhengtiaojian(race condition)。eyiyonghukeliyongciloudong,laihuoqugaoquanxian,duizhiduneicunyingshejinxingxiefangwen。(a race condition was found in the way the linux kernel’s memory subsystem handled the copy-on-write (cow) breakage of private read-only memory mappings.)
jingzhengtiaojian,zhideshirenwuzhixingshunxuyichang,kedaozhiyingyongbengkui,huolinggongjizheyoujikecheng,jinyibuzhixingqitadaima。liyongzheiyiloudong,gongjizhekezaiqimubiaoxitongtishengquanxian,shenzhikenenghuoderootquanxian。
湖北快3genjuguanfangfabudebudingxinxi,zheigewentikeyizhuisudao2007nianfabudelinuxneihe。xianzaihaimeiyourenhezhengjubiaoming,2007nianhoushifouyouheikeliyonglezheigeloudong。buguoanquanzhuanjiaphil oesterchengfaxianyiminggongjizheliyonggailoudongbushugongji,bingxiangred hattongbaolezuijindegongjishijian。
修复方法:
jinxinglinuxneiheweihudegreg kroah-hartmanxuanbuzhenduilinux 4.8、4.7he4.4 ltsneihexiliedeweihugengxin(gengxinhouweilinux kernel 4.8.3、4.7.9he4.4.26 lts),xiufulegailoudong。muqianxinbanbenyijingdenglugegnu/linuxfaxingbanku,baokuoarch linux(ceshizhong)、solushesuoyoushouzhichibanbendeubuntu。debiankaifarenyuanqiantianyexuanbuwendingbandebian gnu/linux 8 “jessei”xilieneihezhongyaogengxin——bencigengxinzonggongxiufu4gelinuxneiheanquanloudong,qizhongyebaokuolezangniu。
gecaozuoxitonggongyingshangyinggaijikexiazailinux kernel 4.8.3、linux kernel 4.7.9helinux kernel 4.4.26 lts,weiyonghutigongwendingbanqudaogengxin。
湖北快3ruanjiankaifarenyuankeyitongguo zhongxinbianyilinuxxiufuciloudong。
漏洞POC:
安全公司高估了“脏牛”的威胁?
suiranzheigeloudongjintianzhanjulegedaanquanmeitidetoutiao,danshijishangtaduilinuxshengtaixitongkenengbingmeiyougouchengzhimingweixie,dangranyonghuhaishiyinggaijishigengxinxitong。
湖北快3faxiangailoudongdeanquanyanjiurenyuanrenwei,mouxieanquangongsiguodukuadalezheigeloudongdeweihai——weilechaofengleneixiekuadaciloudongderen,tamentebiewei“zangniu”zuolelogohezhuye,shele,haikailege,dianlidediannaobaoshoujiajinzai1.71wanmeiyuan(shangwanleni),shangmianyouzangniudelogoe,suanshixiangdangyouchengyidezhoubian。
huasuiruci,“zangniu”loudonggouchengdeweixiehaishizhenshicunzaide。zaijieshouv3decaifangshi,oesterpilu,yougongjizheshangchuanbingzhixingcve-2016-5195loudongliyong,gongjiletaguanlidemougewangzhan。oesterbiaoshi:“zheigeloudongniandaijiuyuan,keyiyingxiangdaoxuduonianqianfabudelinuxneihe。suoyoulinuxyonghudouyingyansuduidaizheigeloudong,jishixiufuxitong。”
* 转载自FreeBuf(FreeBuf.COM)