{"id":5696,"date":"2024-03-30T13:00:31","date_gmt":"2024-03-30T05:00:31","guid":{"rendered":"https:\/\/aict.nkust.edu.tw\/digitrans\/?p=5696"},"modified":"2024-04-08T13:02:34","modified_gmt":"2024-04-08T05:02:34","slug":"%e4%bd%bf%e7%94%a8sshd%e9%80%a3%e6%8e%a5%e5%88%b0%e7%b3%bb%e7%b5%b1%e7%9a%84%e7%94%a8%e6%88%b6%e7%95%b6%e5%bf%83%ef%bc%81%e5%9b%a0%e7%82%ba%e9%a7%ad%e5%ae%a2%e4%be%9b%e6%87%89%e9%8f%88%e6%94%bb","status":"publish","type":"post","link":"https:\/\/aict.nkust.edu.tw\/digitrans\/?p=5696","title":{"rendered":"\u4f7f\u7528SSHD\u9023\u63a5\u5230\u7cfb\u7d71\u7684\u7528\u6236\u7576\u5fc3\uff01\u56e0\u70ba\u99ed\u5ba2\u4f9b\u61c9\u93c8\u653b\u64ca\u9396\u5b9aXZ Utils\u5eab\u690d\u5165\u96b1\u5bc6\u5f8c\u9580\uff0c\u591a\u500bLinux\u767c\u884c\u7248\u53d7\u5f71\u97ff"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">2024-03-30 | \u7f85\u6b63\u6f22<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u4eca\u5929\u9031\u516d\u65e9\u4e0a\uff0c\u4ee5\u63ed\u9732Exchange\u91cd\u5927\u6f0f\u6d1eProxyLogon\u805e\u540d\u7684\u81fa\u7063\u8cc7\u5b89\u7814\u7a76\u4eba\u54e1Orange Tsai\uff0c\u9084\u6709\u5176\u4ed6\u570b\u5167\u8cc7\u5b89\u793e\u7fa4\u6210\u54e1\uff0c\u90fd\u5728\u793e\u7fa4\u5e73\u81fa\u767c\u6587\u91dd\u5c0d\u4e00\u9805\u95dc\u65bcSSHD\uff08Secure Shell Daemon\uff09\u7684\u4f9b\u61c9\u93c8\u653b\u64ca\u63d0\u51fa\u63a2\u8a0e\u8207\u793a\u8b66\u3002<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u9019\u662f\u56e0\u70ba\uff0c\u6709\u958b\u767c\u4eba\u54e1Andres Freund\u57283\u670829\u65e5\u65bcOpenwall\u516c\u5e03\u4e00\u8d77\u6d89\u53caSSH\u4f3a\u670d\u5668\u7684\u4f9b\u61c9\u93c8\u653b\u64ca\u72c0\u6cc1\uff0c\u4e26\u6307\u51fa\u554f\u984c\u51fa\u5728XZ Utils\u8cc7\u6599\u58d3\u7e2e\u7a0b\u5f0f\u5eab\u88ab\u690d\u5165\u5f8c\u9580\uff0c\u53e6\u4e5f\u8aaa\u660eRed Hat\u5df2\u5c07\u6b64\u6f0f\u6d1e\u6307\u6d3e\u70baCVE-2024-3094\uff0c\u4e14\u7d66\u51faCVSS v3\u98a8\u96aa\u5c64\u7d1a\u6eff\u520610\u5206\u3002<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u6b64\u4e8b\u4ef6\u5f71\u97ff\u5ee3\u6cdb\uff0cAndres Freund\u8868\u793a\uff0c\u4ed6\u662f\u5728\u8abf\u67e5SSH\u767b\u5165\u8b8a\u6162\u76f8\u95dc\u554f\u984c\u6642\uff0c\u6700\u521d\u4ee5\u70ba\u767c\u73fedebian\u88e1\u9762\u7684\u5957\u4ef6\u5305\u88ab\u5165\u4fb5\uff0c\u4f46\u4e8b\u5be6\u4e0a\u662f\u4f86\u81ea\u4e0a\u6e38\u7684\u554f\u984c\uff0cXZ\u7a0b\u5f0f\u5eab\u8207XZ\u7684tarball\u6a94\u6848\u88ab\u690d\u5165\u5f8c\u9580\uff0c\u4e5f\u5c31\u662f\u4e00\u6a01\u8edf\u9ad4\u4f9b\u61c9\u93c8\u653b\u64ca\u4e8b\u4ef6\u3002<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u9019\u4e5f\u518d\u6b21\u986f\u73fe\u958b\u6e90\u8edf\u9ad4\u4f9b\u61c9\u93c8\u5b89\u5168\u7684\u91cd\u8981\u6027\uff0c\u76ee\u524d\u5df2\u6709\u8a31\u591a\u7814\u7a76\u4eba\u54e1\u6b63\u8ffd\u67e5\u5176\u653b\u64ca\u624b\u6cd5\uff0c\u4ee5\u53ca\u672c\u6b21\u4e8b\u4ef6\u63d0\u4ea4Commit\u7684GitHub\u5e33\u865f\uff0c\u4e26\u6307\u51fa\u5176\u624b\u6cd5\u8907\u96dc\u4e14\u76f8\u7576\u96e3\u4ee5\u5bdf\u89ba\u3002<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u95dc\u65bc\u6b64\u6b21\u5f8c\u9580\u7684\u5f71\u97ff\uff0c\u5728Red Hat\u767c\u5e03\u7684\u7dca\u6025\u5b89\u5168\u901a\u544a\u4e2d\u4e5f\u6709\u8aaa\u660e\uff0c\u60e1\u610f\u7a0b\u5f0f\u78bc\u4fee\u6539\u4e86XZ Utils\u5957\u4ef6\u4e2d\u540d\u70baliblzma\u90e8\u5206\u7a0b\u5f0f\u78bc\u7684\u529f\u80fd\uff0c\u9019\u4e5f\u5c0e\u81f4\u6bcf\u4e00\u8edf\u9ad4\u9023\u7d50\u5230XZ Utils\uff0c\u4e26\u5141\u8a31\u8b8a\u66f4\u8207\u7a0b\u5f0f\u5eab\u4e00\u8d77\u4f7f\u7528\u7684\u8cc7\u6599\uff0c\u90fd\u6703\u53d7\u5230\u5f71\u97ff\u3002\u800cFreund\u6240\u89c0\u5bdf\u5230\u7684\u4f8b\u5b50\uff0c\u5728\u67d0\u4e9b\u7279\u5b9a\u689d\u4ef6\u4e0b\uff0c\u9019\u500b\u5f8c\u9580\u53ef\u8b93\u653b\u64ca\u8005\u7e5e\u904eSSHD\u7684\u8eab\u5206\u8a8d\u8b49\u6a5f\u5236\uff0c\u9032\u800c\u91dd\u5c0d\u53d7\u5f71\u97ff\u7684\u7cfb\u7d71\u505a\u5230\u672a\u7d93\u6388\u6b0a\u7684\u5b58\u53d6\u3002<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u81f3\u65bc\u6709\u54ea\u4e9b\u7248\u672c\u53d7\u5f71\u97ff\uff0c\u4ee5XZ Utils\u8cc7\u6599\u58d3\u7e2e\u7a0b\u5f0f\u5eab\u800c\u8a00\uff0cAndres Freund\u6307\u51fa\u53d7\u5f71\u97ff\u7684\u7248\u672c\u662fXZ Utils\u76845.6.0\u548c5.6.1\uff1b\u4ee5\u5176\u4ed6\u4f7f\u7528XZ Utils\u7684\u8edf\u9ad4\u7cfb\u7d71\u800c\u8a00\uff0c\u76ee\u524d\u5df2\u78ba\u8a8d\u591a\u500b\u591a\u500bLinux\u767c\u884c\u7248\u672c\u53d7\u5f71\u97ff\uff0c\u5305\u62ec\uff1aFedora Rawhide\u3001Fedora 41\u3001Kali Linux\u3001openSUSE Tumbleweed\u8207openSUSE MicroOS\uff0c\u4ee5\u53ca\u90e8\u5206Debian\u7248\u672c\u3002<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u7f8e\u570bCISA\u4e5f\u5df2\u7d93\u5c0d\u6b64\u63d0\u51fa\u8b66\u544a\uff0c\u4e26\u5efa\u8b70\u5efa\u8b70\u958b\u767c\u4eba\u54e1\u8207\u4f7f\u7528\u8005\u53ef\u5148\u5c07XZ Utils\u964d\u7d1a\u3001\u6062\u5fa9\u5230\u672a\u88ab\u5165\u4fb5\u7684\u7248\u672c\uff0c\u5982XZ Utils 5.4.6\u7a69\u5b9a\u7248\u3002\u540c\u6642\u7528\u6236\u4e5f\u8a72\u9032\u884c\u4e8b\u4ef6\u56de\u61c9\u3001\u6e05\u67e5\u5165\u4fb5\u72c0\u6cc1\uff0c\u4ee5\u78ba\u5b9a\u662f\u5426\u53ef\u80fd\u5df2\u7d93\u53d7\u5230\u5f8c\u9580\u7684\u5f71\u97ff\u3002<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter\"><a href=\"https:\/\/i0.wp.com\/s4.itho.me\/sites\/default\/files\/images\/%EF%BC%88%E5%9C%961%EF%BC%89XZ%20Utils%E4%BE%9B%E6%87%89%E9%8F%88%E6%94%BB%E6%93%8A_CVE_2024-3094.jpg?ssl=1\"><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/s4.itho.me\/sites\/default\/files\/images\/%EF%BC%88%E5%9C%961%EF%BC%89XZ%20Utils%E4%BE%9B%E6%87%89%E9%8F%88%E6%94%BB%E6%93%8A_CVE_2024-3094.jpg?w=640&#038;ssl=1\" alt=\"\"\/><\/a><\/figure>\n<\/div>\n\n\n<p class=\"wp-block-paragraph\"><strong>Red Hat\u572829\u65e5\u4e5f\u767c\u5e03\u76f8\u95dc\u7dca\u6025\u5b89\u5168\u901a\u544a\uff0c\u6307\u51faCVE-2024-3094\u662fCVSS v3\u98a8\u96aa\u5c64\u7d1a\u6eff\u520610\u5206\u7684\u6f0f\u6d1e\u3002<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u8cc7\u6599\u4f86\u6e90: <a href=\"https:\/\/www.ithome.com.tw\/news\/162040\" data-type=\"link\" data-id=\"https:\/\/www.ithome.com.tw\/news\/162040\">https:\/\/www.ithome.com.tw\/news\/162040<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>2024-03-30 | \u7f85\u6b63\u6f22 \u4eca\u5929\u9031\u516d\u65e9\u4e0a\uff0c\u4ee5\u63ed\u9732Exchange\u91cd\u5927\u6f0f\u6d1eProxyLogon\u805e\u540d\u7684\u81fa\u7063\u8cc7\u5b89\u7814\u7a76\u4eba\u54e1Orange Tsai\uff0c\u9084\u6709\u5176\u4ed6\u570b\u5167\u8cc7\u5b89\u793e\u7fa4\u6210\u54e1\uff0c\u90fd\u5728\u793e\u7fa4\u5e73&hellip;<\/p>\n","protected":false},"author":4,"featured_media":5697,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_post_was_ever_published":false},"categories":[352],"tags":[204],"class_list":["post-5696","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-information-security","tag-204"],"gutentor_comment":0,"jetpack_featured_media_url":"https:\/\/i0.wp.com\/aict.nkust.edu.tw\/digitrans\/wp-content\/uploads\/2024\/04\/zhu_tu_xz_utilsgong_ying_lian_gong_ji_.jpg?fit=960%2C420&ssl=1","jetpack-related-posts":[],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/aict.nkust.edu.tw\/digitrans\/index.php?rest_route=\/wp\/v2\/posts\/5696","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/aict.nkust.edu.tw\/digitrans\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/aict.nkust.edu.tw\/digitrans\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/aict.nkust.edu.tw\/digitrans\/index.php?rest_route=\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/aict.nkust.edu.tw\/digitrans\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=5696"}],"version-history":[{"count":1,"href":"https:\/\/aict.nkust.edu.tw\/digitrans\/index.php?rest_route=\/wp\/v2\/posts\/5696\/revisions"}],"predecessor-version":[{"id":5698,"href":"https:\/\/aict.nkust.edu.tw\/digitrans\/index.php?rest_route=\/wp\/v2\/posts\/5696\/revisions\/5698"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/aict.nkust.edu.tw\/digitrans\/index.php?rest_route=\/wp\/v2\/media\/5697"}],"wp:attachment":[{"href":"https:\/\/aict.nkust.edu.tw\/digitrans\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=5696"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/aict.nkust.edu.tw\/digitrans\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=5696"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/aict.nkust.edu.tw\/digitrans\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=5696"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}