GA»Æ½ð¼×ADLab£º²©Í¨Wi-FiÇý¶¯¶à¸ö°²È«·ì϶ÖÒ¸æ
°ä²¼¹¦·ò 2019-04-21²©Í¨ÊÇÈ«ÇòÎÞÏßÉ豸µÄÖØÒª¹©¸øÉÌÖ®Ò»£¬²©Í¨µÄ43ϵÁеÄwifiоƬ±»¿í·ºÀûÓÃÓÚÖÇÄÜÊÖ»ú¡¢±Ê¼Ç±¾µçÄÔ¡¢ÖÇÄܵçÊÓºÍÎïÁªÍøÉ豸¡£½üÈÕ£¬US-CERT°ä²¼Á˶à¸ö²©Í¨wi-FiоƬÇý¶¯µÄ°²È«Ô¤¾¯£¨CVE-2019-9500¡¢CVE-2019-9501¡¢CVE-2019-9502¡¢CVE-2019-9503£©¡£
²©Í¨WIFIоƬ43xxxÇý¶¯·¨Ê½¼¯·ÖΪ¿ªÔ´ºÍרÓÐÁ½Àà¡£
|
¿ªÔ´ |
b43£¨Linux£© brcmsmac£¨SoftMAC / Linux£© brcmfmac£¨FullMAC / Linux£© bcmdhd£¨FullMAC / Android£© |
|
רÓÐ |
broadcom-sta(wl) ( SoftMAC && FullMAC / Linux) |
ͼ1 ²©Í¨Ð¾Æ¬Çý¶¯¼°ÀûÓÃϵͳ
·ì϶·ÖÎö
brcmfmacÇý¶¯Á½¸ö·ì϶£¨CVE-2019-9503¡¢CVE-2019-9500£©
²©Í¨Wi-FiоƬÓëÖ÷»úµÄÊäÈëÊä³ö½Ó¿ÚѡȡUSB£¬SDIOºÍPCIeÈýÖÖBus×ÜÏß·½Ê½¡£ÔÚÈí¼þ²ãÃæ£¬Çý¶¯ºÍÖ÷»úµÄÊý¾ÝͨѶÓÐÁ½ÖÖ·½Ê½£¬Ò»ÖÖÊÇIOCTRL£¬Ò»ÖÖÊÇEventÊÂÎñ֪ͨ¡£Wi-FiоƬʹÓù̼þÊÂÎñÀ´Í¨ÖªÖ÷»ú·ÖÆçµÄÊÂÎñ£ºÉ¨ÃèÁ˾֡¢¹ØÁª/½â³ý¹ØÁª¡¢Éí·ÝÑéÖ¤µÈ¡£
CVE-2019-9503
ͼ2 is_wlc_event_frameº¯ÊýÎÊÌâʾÒâ
CVE-2019-9500
ͼ3 brcmf_wowl_nd_resultsº¯ÊýÎÊÌâʾÒâ
²©Í¨wlÇý¶¯ÖÐÁ½¸ö·ì϶£¨CVE-2019-9501¡¢ CVE-2019-9502£©
ͼ4 wlÇý¶¯·ì϶ʾÒâͼ
CVE-2019-9501
APÏòStation·¢Ë͵ÄEAPOL M3ÐÂÎÅÖУ¬ÈôÊÇvendor information×ֶγ¤¶È´óÓÚ32×Ö½Úʱ£¬½«»áÔÚwlc_wpa_sup_eapolº¯Êý´¥·¢¶ÑÒç¶Âí½Å¡£
CVE-2019-9502
ÊÜÓ°Ïì²úÆ·
²©Í¨¹«Ë¾
²©Í¨¹«Ë¾Ã»ÓÐÌṩÊÜÓ°Ïì²úÆ·ÐÅÏ¢¡£
Synology¹«Ë¾
Synology¹«Ë¾µÄRT1900ac²úÆ·ÊÜÓ°Ïì¡£¸Ã·ì϶ÔÚRT1900ac²úÆ·ÖÐĬÈϲ»±»´¥·¢£¬µ±²úÆ·Äܹ»ÓÉÖÎÀíÔ±ÅäÖÃÆôÓÃijÏîÅäÖÃʱ£¬²Å»áÊÜÓ°Ïì¡£Òò¶ø£¬Synology¹«Ë¾ÒÔΪRT1900acÖи÷ì϶Óп϶¨µÄ¾ÖÏÞÐÔ£¬Ö»ÓÐÔÚÌØ¶¨µÄÇé¿öÏÂÄÜÁ¦´¥·¢¡£
Apple¹«Ë¾
½â¾ö¹æ»®
Apple¹«Ë¾µÄbrcmfmacÇý¶¯µÄ·ì϶Òѽ¨¸´£¬Óû§Äܹ»¸üÐÂÓйصIJ¹¶¡£¬ÊµÏÖ½¨¸´¹¤×÷¡£
²©Í¨¹«Ë¾½¨¸´ÁËLinuxÄÚºËbrcmfmacÇý¶¯ÖеÄCVE-2019-9503¼°CVE-2019-9500Á½¸ö·ì϶£¬Óû§Äܹ»¸üÐÂÓйصIJ¹¶¡£¬ÊµÏÖ½¨¸´¹¤×÷¡£
ʹÓÿÉÐŵÄWI-FIÍøÂ磬³ö¸ñÊDz»ÒªÔÚ¹«¹²³¡ËùÏνӲ»°²È«µÄwifiÈȵ㡣
²Î¿¼Á´½Ó
2.https://kb.cert.org/vuls/id/166939/
3.https://support.apple.com/en-us/HT209600
4.https://www.synology.cn/zh-cn/security/advisory/Synology_SA_19_18
5.https://git.kernel.org/linus/a4176ec356c73a46c07c181c6d04039fafa34a9f
6.https://git.kernel.org/linus/1b5e2423164b3670e8bc9174e4762d297990deff


¾©¹«Íø°²±¸11010802024551ºÅ