Windows RDPЧÀ͸ßΣÎó²îÆÊÎö£¨CVE-2019-0708£©
Ðû²¼Ê±¼ä 2019-05-292019Äê5ÔÂ14ÈÕ΢Èí¹Ù·½Ðû²¼½ôÆÈÇå¾²²¹¶¡£¡£¡£¡£¡£¬£¬£¬£¬£¬ÐÞ¸´ÁËWindowsÔ¶³Ì×ÀÃæÐ§À͵ÄÔ¶³Ì´úÂëÖ´ÐиßΣÎó²îCVE-2019-0708£¨CNVD-2019-14264¡¢CNNVD-201905-434£©£¬£¬£¬£¬£¬¸ÃÎó²îÓ°ÏìÁËijЩ¾É°æ±¾µÄWindowsϵͳ¡£¡£¡£¡£¡£ÓÉÓÚ¸ÃÎó²îÎÞÐèÉí·ÝÑéÖ¤ÇÒÎÞÐèÓû§½»»¥£¬£¬£¬£¬£¬ÒÔÊÇÕâ¸öÎó²î¿ÉÒÔͨ¹ýÍøÂçÈ䳿µÄ·½·¨±»Ê¹Ó㬣¬£¬£¬£¬Ê¹ÓôËÎó²îµÄ¶ñÒâÈí¼þ¿ÉÒÔ´Ó±»Ñ¬È¾µÄÅÌËã»úÈö²¥µ½ÍøÂçÖÐÆäËûÒ×Êܹ¥»÷µÄÅÌËã»ú£¬£¬£¬£¬£¬Èö²¥·½·¨Óë2017ÄêWannaCry¶ñÒâÈí¼þµÄÈö²¥·½·¨ÀàËÆ¡£¡£¡£¡£¡£
Îó²îÓ°Ïì°æ±¾
Windows 7
Windows XP
Windows 2003
Windows Server 2008
Windows Server 2008 R2
RDPÐÒé¼ò½é
RDPÊÇ΢ÈíÖÕ¶ËЧÀÍÓ¦ÓõÄÐÒ飬£¬£¬£¬£¬Ð§ÀͶ˻ùÓÚWindows²Ù×÷ϵͳ£¬£¬£¬£¬£¬Windows´ÓNT×îÏÈÌṩÖÕ¶ËЧÀÍ¡£¡£¡£¡£¡£RDPÐÒé»ùÓÚT.128£¨T.120ÐÒé×壩Ìṩ¶àͨµÀͨѶ£¬£¬£¬£¬£¬²¢¾ÙÐÐÁËÍØÕ¹¡£¡£¡£¡£¡£
RDPÐÒéµÄÅþÁ¬Á÷³Ì¿ÉÒÔ·ÖΪ10¸ö²î±ðµÄ½×¶Î¡£¡£¡£¡£¡£ÕâÀïÎÒÃǹØ×¢Í¨µÀÅþÁ¬Ïà¹ØµÄ¼¸¸ö½×¶Î¡£¡£¡£¡£¡£
£¨1£©ConnectionInitiation£¨ÅþÁ¬³õʼ»¯£©
¿Í»§¶Ëͨ¹ýÏòЧÀÍÆ÷·¢ËÍClass 0 X.224 ConnectionRequest PDUÆô¶¯ÅþÁ¬ÇëÇ󡣡£¡£¡£¡£Ð§ÀÍÆ÷ʹÓÃClass 0 X.224 Connection Confirm PDU¾ÙÐÐÏìÓ¦¡£¡£¡£¡£¡£Ö®ºó£¬£¬£¬£¬£¬¿Í»§¶ËºÍЧÀÍÆ÷Ö®¼ä·¢Ë͵ÄËùÓкóÐøÊý¾Ý¶¼±»°ü¹üÔÚX.224Êý¾ÝÐÒéÊý¾Ýµ¥Î»£¨PDU£©ÖС£¡£¡£¡£¡£
£¨2£© BasicSettings Exchange£¨½»Á÷»ù±¾ÉèÖã©
ͨ¹ýʹÓÃMCS Connect Initial PDUºÍMCS Connect Response PDUÔÚ¿Í»§¶ËºÍЧÀÍÆ÷Ö®¼ä½»Á÷»ù±¾ÉèÖᣡ£¡£¡£¡£GCCµÄÈ«³ÆÊÇ Generic Conference Control£¬£¬£¬£¬£¬GCC ×÷Ϊ T.124 µÄ±ê×¼ÐÒ飬£¬£¬£¬£¬ÓÃÓÚÒ»Á¬´«Êä´ó×ÚÊý¾Ýʱ£¬£¬£¬£¬£¬½«Êý¾ÝÕûÀí·Ö¿é´«Êä¡£¡£¡£¡£¡£
£¨3£©Channel Connection £¨ÐéÄâͨµÀÅþÁ¬£©
²¹¶¡ÆÊÎö
ͨ¹ý²¹¶¡°üÆÊÎö£¬£¬£¬£¬£¬ÎÒÃÇ·¢Ã÷²¹¶¡Ç°ºó²î±ðÔÚÓÚtermdd.sysÎļþµÄIcaBindVirtualChannels¼°IcaReBindVirtualChannels£¬£¬£¬£¬£¬ÔöÌíÁ˶ÔMS_T120ÐÒéͨµÀµÄÅжϡ£¡£¡£¡£¡£ÈôÊÇÊÇͨµÀÐÒéÃûΪMS_T120£¬£¬£¬£¬£¬ÔòÉ趨IcaBindChannelµÄµÚÈý¸ö²ÎÊýΪ31¡£¡£¡£¡£¡£
ЧÀͶËÔÚ³õʼ»¯½×¶Î£¬£¬£¬£¬£¬»á½¨ÉèMS_T120, IndexΪ31µÄͨµÀ¡£¡£¡£¡£¡£ÔÚÊÕµ½MCS Connect InitialÊý¾Ý·â°üºó¾ÙÐÐͨµÀ½¨ÉèºÍ°ó¶¨²Ù×÷¡£¡£¡£¡£¡£
Îó²îÔÀíÆÊÎö
ÎÒÃÇÔÚ¿Í»§¶ËMCS Connect InitialÊý¾Ý·â°üÖУ¬£¬£¬£¬£¬ÔöÌíÒ»¸öÃûΪMS_T120µÄͨµÀ¡£¡£¡£¡£¡£
½ÓÏÂÀ´£¬£¬£¬£¬£¬ÎÒÃÇÊÍ·ÅÕâ¸öChannel¡£¡£¡£¡£¡£ÎÒÃÇÏòMS_T120ͨµÀ·¢ËͽṹµÄÊý¾Ý£¬£¬£¬£¬£¬µ«ÓÉÓÚÕâ¸öͨµÀÒѾ±»°ó¶¨µ½ÄÚÖõÄMS_T120ͨµÀ£¬£¬£¬£¬£¬ÒÔÊÇÊý¾Ý×îÖÕ»áÅÉ·¢µ½ÏìÓ¦µÄ´¦Öóͷ£º¯Êýrdpwsx!MCSProtDataÖУ¬£¬£¬£¬£¬È»ºóŲÓÃMCSChannelCloseº¯Êý¹Ø±ÕͨµÀ¡£¡£¡£¡£¡£
ÒԺ󣬣¬£¬£¬£¬ÎÒÃÇÏòϵͳµÄMS_T120ͨµÀ·¢ËÍÊý¾Ý£¬£¬£¬£¬£¬ÔÙ´ÎÒýÓñ»¹Ø±ÕµÄͨµÀ£¬£¬£¬£¬£¬´Ó¶øµ¼ÖÂUAFÎó²î¡£¡£¡£¡£¡£
½â¾ö¼Æ»®
ÏÖÔÚZ6×ðÁú¿Ê±ÒѾÐû²¼Á˶ÔÓ¦µÄ²úÆ·¼¶½â¾ö¼Æ»®£¬£¬£¬£¬£¬Ïà¹ØÁ´½ÓΪ£º/article/1/9148.html ¡£¡£¡£¡£¡£
¹ØÓÚWindows 7¼°Windows Server 2008µÄÓû§£¬£¬£¬£¬£¬ÊµÊ±×°ÖÃWindowsÐû²¼µÄÇå¾²¸üС£¡£¡£¡£¡£
¹ØÓÚWindows 2003¼°Windows XPµÄÓû§£¬£¬£¬£¬£¬ÊµÊ±¸üÐÂϵͳ°æ±¾¡£¡£¡£¡£¡£


¾©¹«Íø°²±¸11010802024551ºÅ