CiscoÑϳÁ·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2018-06-07

·ì϶±àºÅ¼°¼¶±ð


CVE-2018-0315 ÑϳÁ  ³§ÉÌ×ÔÆÀ£º9.8  CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
CVE-2018-0321 ÑϳÁ  ³§ÉÌ×ÔÆÀ£º9.8  CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°ÏìÁìÓò


CVE-2018-0315


ÊÜÓ°ÏìµÄ°æ±¾


ÒÔϰ汾ÔÚʹÓÃAAA×÷ΪµÇ¼ÈÏ֤ʱÊÜÓ°Ï죺


Cisco IOS XE Software Release Fuji 16.7.1
Cisco IOS XE Software Release Fuji 16.8.1


²»ÊÜÓ°ÏìµÄ°æ±¾


Cisco IOS XE Software Release Fuji 16.7.2
Cisco IOS XE Software Release Fuji 16.8.1c
Cisco IOS XE Software Release Fuji 16.8.1s
Cisco IOS XE Software Release Fuji 16.9.1£¨Ô¤¼Æ½ñÄê7Ô°䲼£©
Cisco IOS XE Software Release Fuji 16.8.2£¨Ô¤¼Æ½ñÄê9Ô°䲼£©
CVE-2018-0321


ÊÜÓ°ÏìµÄ°æ±¾


´Ë·ì϶ӰÏì˼¿ÆPrime Collaboration Provisioning£¨PCP£©°æ±¾11.6¼°¸üÔç°æ±¾¡£


·ìϼûèÊö


6ÔÂ6ÈÕ£¬Cisco¹Ù·½°ä²¼Ò»Ôò°²È«¹«¸æ°ä²¼Á˶à¸ö²úÆ·°²È«¸üУ¬ÆäÖÐÔ̺¬Á½¸öÑϳÁ¼¶´ËÍâ·ì϶¡£ÏêÇé¼û£º

https://tools.cisco.com/security/center/publicationListing.x?product=Cisco¡£


Æä²úÆ·ÖÐÓÃÓÚÈÏÖ¤¡¢ÊÚȨºÍ¼Í¼(AAA)µÄ·þÎñ´æÔÚÑϳÁ·ì϶£¨CVE-2018-0315£©¡£Í¨¹ý¸Ã·ì϶£¬¹¥»÷ÕßÔÚδÊÚȨµÄÇé¿öÏ£¬Äܹ»Ô¶³ÌÔÚÊÜÓ°ÏìµÄÉ豸ÉÏÖ´ÐÐËÁÒâ´úÂ룬»òÕßÔì³ÉÉ豸µÄ³Á¼ÓÔØµ¼Ö»ؾø·þÎñǰÌá¡£


Cisco Prime Collaboration Provisioning£¨PCP£©Öеķì϶£¨CVE-2018-0321£©¿ÉÄÜÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß½Ó¼ûJavaÔ¶³Ì²½ÖèŲÓã¨RMI£©ÏµÍ³¡£¸Ã·ì϶ÊÇÓÉÓÚÍøÂç½Ó¿ÚºÍÅäÖÃÒýÇæ£¨NICE£©·þÎñÖеÄÊ¢ÅüÍ·¿ÚÔì³ÉµÄ¡£¹¥»÷ÕßÄܹ»Í¨¹ý½Ó¼ûÊÜÓ°ÏìµÄPCPÊ·ýÉϵÄÊ¢¿ªÊ½RMIϵͳÀ´ÀûÓô˷ì϶¡ £Äܹ»ÔÊÐí¹¥»÷ÕßÖ´ÐÐÓ°ÏìPCP¼°ÆäÏνÓÉ豸µÄ¶ñÒâÐÐΪ¡£

 

½â¾ö´ëÊ©


Cisco¹Ù·½ÒѾ­°ä²¼Á˶ÔÓ¦µÄа汾½¨¸´ÁËÉÏÊö·ì϶£¬Óû§Ó¦ÊµÊ±¸üÐÂÉý¼¶½øÐзÀ»¤¡£Í¬Ê±£¬ÖÎÀíÔ±Äܹ»Í¨¹ýÏÞ¶ÈÉ豸µÄ½Ó¼ûȨÏÞÀ´È·±£Ö»ÓÐÊÜÐÅÀµµÄÆðÔ´Äܹ»½Ó¼ûÉ豸¡£

 

²Î¿¼×ÊÁÏ


https://tools.cisco.com/security/center/publicationListing.x?product=Cisco


https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180606-aaa


https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180606-prime-rmi