OpenSSL¹Ù·½Ðû²¼
¾Ü¾øЧÀÍ
½üÈÕ£¬OpenSSL¹Ù·½Ðû²¼Äþ¾²¸üУ¬ÐÞ¸´ÁËOpenSSL¾Ü¾øЧÀÍ©¶´£¨CVE-2022-0778£©¡£¸Ã©¶´ÊÇÓÉÓÚÖ¤Êé½âÎöʱʹÓÃµÄ BN_mod_sqrt() º¯Êý±£´æÒ»¸ö¹ýʧ£¬Ëü»áµ¼ÖÂÔÚ·ÇÖÊÊýµÄÇé¿öÏÂÓÀԶѻ·¡£¿Éͨ¹ýÉú³É°üÀ¨ÎÞЧµÄÏÔʽÇúÏß²ÎÊýµÄÖ¤ÊéÀ´´¥·¢ÎÞÏÞÑ»·¡£ÓÉÓÚÖ¤Êé½âÎöÊÇÔÚÑéÖ¤Ö¤ÊéÇ©Ãû֮ǰ½øÐеģ¬Òò´ËÈκνâÎöÍⲿÌṩµÄÖ¤ÊéµÄ³ÌÐò¶¼¿ÉÄÜÊܵ½¾Ü¾øЧÀ͹¥»÷¡£
CVSSÆÀ·Ö£º
CVE | V3.1 Vector(Base) | Base Score | V3.1 Vector(Temporal Score) | Temporal Score |
CVE-2022-0778 | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H | 7.8 | E:P/RL:O/RC:C | 6.7 |
ÊÜÓ°Ïì²úÆ·£º
²úÆ·Ãû³Æ | ÊÜÓ°Ïì²úÆ·°æ±¾ | ²¹¶¡°ü/Éý¼¶°ü |
ICS | ICS <= 6.5.0 | InCloudSphere-V6R05B114-b1-x86_64-M001-b1.upgrade.zip InCloudSphere-V6R05B114-b1-x86_64-S001-b1.upgrade.zip |
ICM | ICM<=5.6.3 | CVE-2022-0778.zip |
ICKS | ICKS<=2.5 | CVE-2022-0778.zip |
ICOS | ICOS<=5.8.2 | CVE-2022-0778.zip |
InClousOS | InCloudOS<=6.0.3 | cloud_security_set.tar.gz |
ÎÞ
©¶´½â¾ö¼Æ»®£ºÇëÓû§Ö±½ÓÁªÏµ¿Í»§Ð§ÀÍÈËÔ±£¬»ñÈ¡²¹¶¡ÒÔ¼°Ïà¹ØµÄ¼¼ÊõÖ§³Ö¡£
FAQ£ºÎÞ
¸üмͼ£º20220530-V1.0-Initial Release
20220614-V1.1-Update Ôö¼ÓÊÜÓ°Ïì²úÆ·
20221107-V1.2-Update Ôö¼ÓÊÜÓ°Ïì²úÆ·
»ñÈ¡¼¼ÊõÖ§³Ö£º/lcjtww/2317452/2317456/2317460/index.html
±¾ÎĵµÌṩµÄËùÓÐÊý¾ÝºÍÐÅÏ¢½ö¹©²Î¿¼£¬ÇÒ"°´ÔÑù"Ìṩ£¬²»ÔÊÐíÈκÎÃ÷ʾ¡¢Ä¬Ê¾ºÍ·¨¶¨µÄµ£±££¬°üÀ¨(µ«²»ÏÞÓÚ)¶ÔÊÊÏúÐÔ¡¢ÊÊÓÃÐÔ¼°²»ÇÖȨµÄµ£±£¡£ÔÚÈκÎÇé¿öÏ£¬pgµç×Ó¹ÙÍø»òÆäÖ±½Ó»ò¼ä½Ó¿ØÖƵÄ×Ó¹«Ë¾£¬»òÆ乩ӦÉÌ£¬¾ù²î³ØÈκÎÒ»·½ÒòÒÀÀµ»òʹÓñ¾ÐÅÏ¢¶øÔâÊܵÄÈκÎËðʧµ£ÂôÁ¦ÈΣ¬°üÀ¨Ö±½Ó£¬¼ä½Ó£¬Å¼È»£¬Ò»¶¨µÄÉÌÒµÀûÈóËðʧ»òÌØÊâËðʧ¡£pgµç×Ó¹ÙÍø±£´æËæʱ¸ü¸Ä»ò¸üдËÎĵµµÄȨÀû¡£