VMwareÔ½½ç¶Áд·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-08-06

? ·ì϶±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-5521£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º6.3-7.7£¬¹Ù·½Î´ÆÀ¶¨
CVE±àºÅ£ºCVE-2019-5684£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.5£¬¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾

 

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾


·ì϶¸ÅÊö


VMware ESXiµÈ¶¼ÊÇÃÀ¹úÍþ¨VMware£©¹«Ë¾µÄ²úÆ·¡£VMware ESXiÊÇÒ»Ì׿ÉÖ±½Ó×°ÖÃÔÚÎïÀí·þÎñÆ÷ÉϵķþÎñÆ÷Ðé¹¹»¯Æ½Ì¨¡£VMware WorkstationÊÇÒ»Ì×Ðé¹¹»úÈí¼þ¡£VMware Workstation PlayerÊÇÒ»Ì×Ãâ·Ñ¿ªÔ´µÄÇÒÖ°Äܽϵ¥Ò»µÄÐé¹¹»úÈí¼þ¡£VMware FusionÊÇÒ»Ì×רÓÃÓÚÔÚÆ»¹û»ú£¨Mac£©ÉÏÔËÐÐWindowsÀûÓ÷¨Ê½µÄµÄÐé¹¹»úÈí¼þ¡£NVIDIA graphics driverµÈ¶¼ÊÇÃÀ¹úӢΰ´ï£¨NVIDIA£©¹«Ë¾µÄ²úÆ·¡£NVIDIA graphics driverÊÇÒ»¿îͼÐÎÇý¶¯Æ÷¡£


Vmware ESXi¡¢WorkstationºÍFusionÖдæÔÚÈçÏ·ì϶¡£ÀûÓÃÕâЩ·ì϶±ØÒª¹¥»÷Õß½Ó¼ûÆôÓÃÁË3DͼÐεÄÐé¹¹»ú¡£Ä¬ÈÏÇé¿öÏ£¬Ëü²»ÔÚESXiÉÏÆôÓã¬Ä¬ÈÏÇé¿öÏÂÔÚWorkstationºÍFusionÉÏÆôÓá£


CVE-2019-5521 - Ô½½ç¶ÁÈ¡·ì϶

³É¹¦ÀûÓÃÔ½½ç¶ÁÈ¡ÎÊÌâ¿ÉÄܻᵼÖÂÐÅϢй¶£¬»òÕß¿ÉÄÜÔÊÐíÓµÓÐÕý³£Óû§È¨Ï޵Ĺ¥»÷ÕßÔÚÖ÷»úÉÏ´´½¨»Ø¾ø·þÎñǰÌá¡£


CVE-2019-5684 - Ô½½çдÈë·ì϶

½öµ±Ö÷»úÓµÓÐÊÜÓ°ÏìµÄNVIDIAͼÐÎÇý¶¯·¨Ê½Ê±£¬ÄÜÁ¦ÀûÓÃÔ½½çдÈëÎÊÌâ¡£³É¹¦ÀûÓôËÎÊÌâ¿ÉÄܻᵼÖÂÖ÷»úÉϵĴúÂëÖ´ÐС£


·ì϶ÑéÖ¤


ÔÝÎÞPOC/EXP¡£


½¨¸´½¨Òé


Ŀǰ³§ÉÌÒѰ䲼Éý¼¶²¹¶¡ÒÔ½¨¸´·ì϶£¬²¹¶¡»ñÈ¡Á´½Ó£ºhttps://www.vmware.com/security/advisories/VMSA-2019-0012.html¡£


Ò²Äܹ»Í¨¹ý×°ÖøüеÄNVIDIAͼÐÎÇý¶¯·¨Ê½À´½¨¸´CVE-2019-5684£ºhttps://nvidia.custhelp.com/app/answers/detail/a_id/4841¡£


²Î¿¼Á´½Ó


https://www.vmware.com/security/advisories/VMSA-2019-0012.html