Flash 0day·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2018-06-08

·ì϶±àºÅ


CVE-2018-5002


·ì϶¼¶±ð


ÑϳÁ  CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°ÏìÁìÓò


¸Ã·ì϶ĿǰӰÏìAdobe Flash Player 29.0.0.171¼°ÆäÒÔϰ汾¡£


·ìϼûèÊö


½üÈÕ £¬°²È«×êÑÐÈËÔ±²¶»ñÁËеÄһ·ʹÓÃFlash ÁãÈÕ·ì϶(CVE-2018-5002)µÄÔÚÒ°¹¥»÷ £¬ºÚ¿Í¾«ÐÄ»ú¹ØÁËÒ»¸ö´ÓÔ¶³Ì¼ÓÔØFlash·ì϶µÄOfficeÎĵµ £¬´ò¿ªÎĵµºóËùÓеķì϶ÀûÓôúÂëºÍ¶ñÒâºÉÔØ¾ùͨ¹ýÔ¶³ÌµÄ·þÎñÆ÷Ï·¢ £¬Õâ´Î¹¥»÷ÖØÒªÕë¶ÔÖж«µØÓò¡£¸Ã·ì϶ĿǰӰÏìAdobe Flash Player 29.0.0.171¼°ÆäÒÔϰ汾¡£


ͨ¹ý¶ÈÎöÄܹ»·¢ÏÖÕâ´Î¹¥»÷²»¼Æ³É±¾Ê¹ÓÃÁËÁãÈÕ·ì϶ £¬¹¥»÷ÕßÔÚÔÆ¶Ë¿ª·¢Á˾«²ÊµÄ¹¥»÷¹æ»® £¬²¢»¨ÁËÖÁÉÙÈý¸öÔÂÒÔÉϵŦ·ò³ï±¸¹¥»÷ £¬Õë¶Ô¹¥»÷Ö¸±ê¶¨ÔìÁ˾ßÌåµÄ´¹µö¹¥»÷ÄÚÈÝ £¬ÊÇһ·µäÐ͵ÄAPT¹¥»÷¡£


CVE-2018-5002ÊÇÓÉÓÚFlashδÄÜÕýÈ·´¦ÖÃÔ̺¬ÌØÊâ×Ö½ÚÂëÐòÁеÄSWFÎļþʱ²úÉúµÄÕ»Ô½½ç¶Áд·ì϶¡£¸Ã·ì϶֮ͬǰµÄCVE-2017-11292ÀàËÆ £¬¶¼±ØÒªÅú¸ÄSWFÎļþµÄ×Ö½ÚÂëÀ´´¥·¢·ì϶¡£Í¬Ê±¸Ã·ì϶µÄÀûÓÃÖ»±ØÒªµ¥Ò»µÄÄÚ´æ²¼¾Ö £¬²»±ØÒª¸´ÔӵĶÑÅç £¬Ò»¸öÑù±¾Í¬Ê±ÔÚ32λºÍ64λϵͳÖв»±äÔËÐС£


¼øÓÚAdobe Flash PlayerÏÕЩװÖÃÔÚÿһ̨µçÄÔÉÏ £¬ÇÒÓдóÁ¿Óû§²»»áʵʱ½¨²¹°²È«·ì϶ £¬µ±¸Ã·ì϶µÄÀûÓò½Öè±»²¡¶¾Ä¾ÂíÐþÉ«²úÒµ°ÑÎÕʱ £¬½«»á´øÀ´´óÃæ»ýµÄÍøÒ³¹ÒÂíÍþв¡£


½â¾ö´ëÊ©


Adobe¹Ù·½ÓÚ6ÔÂ7ÈÕÏÂÎç°ä²¼°²È«²¼¸æ£¨²¼¸æID£ºAPSB18-19£© £¬Adobe Flash PlayerµÄ°æ±¾ÒѸüе½30.0.0.113 £¬¾ßÌå¿É²Î¿¼Adobe ¹Ù·½°²È«²¼¸æ£ºhttps://helpx.adobe.com/security/products/flash-player/apsb18-19.html¡£

½¨ÒéÓû§ÊµÊ±Éý¼¶Adobe Flash Playerµ½×îа汾£¨30.0.0.113£©ÒÔ·ÀÓù¿ÉÄܵķì϶¹¥»÷Íþв £¬ÏÂÔØµØÖ·£º

https://get.adobe.com/cn/flashplayer/¡£

 

²Î¿¼×ÊÁÏ


https://helpx.adobe.com/security/products/flash-player/apsb18-19.html