¡¾·ì϶¹«¸æ¡¿Juniper Networks Junos OSÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2024-21591£©

°ä²¼¹¦·ò 2024-01-15

Ò»¡¢·ì϶¸ÅÊö

·ìϼûû³Æ

  Juniper   Networks Junos OSÔ¶³Ì´úÂëÖ´Ðзì϶

CVE   ID

CVE-2024-21591

·ì϶ÀàÐÍ

Ô½½çдÈë

·¢ÏÖ¹¦·ò

2024-01-15

·ì϶ÆÀ·Ö

9.8

·ì϶µÈ¼¶

ÑϳÁ

¹¥»÷ÏòÁ¿

ÍøÂç

ËùÐèȨÏÞ

ÎÞ

ÀûÓÃÄѶÈ

µÍ

Óû§½»»¥

ÎÞ

PoC/EXP

δ¹«¿ª

ÔÚÒ°ÀûÓÃ

δ·¢ÏÖ

 

Juniper Networks£¨Õ°²©ÍøÂ磩ÊÇÈ«Çòµ±ÏȵÄÍøÂçºÍ°²È«½â¾ö¹æ»®ÌṩÉÌ £¬Æä¿Í»§Ô̺¬È«ÇòÁìÓòÄÚµÄÍøÂçÔËÓªÉÌ¡¢ÆóÒµ¡¢µ±¾Ö»ú¹¹ÒÔ¼°×êÑкͽÌÓý»ú¹¹µÈ¡£

2024Äê1ÔÂ15ÈÕ £¬GA»Æ½ð¼×VSRC¼à²âµ½Juniper Networks SRXϵÁкÍEXϵÁÐÉϵÄJunos OSÖн¨¸´ÁËÒ»¸öÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2024-21591£© £¬¸Ã·ì϶µÄCVSSv3ÆÀ·ÖΪ9.8¡£

Juniper Networks SRXϵÁзÀ»ðǽºÍEXϵÁл¥»»»úÉϵÄJunos OSµÄJ-WebÖдæÔÚÔ½½çдÈë·ì϶ £¬¸Ã·ì϶ԴÓÚʹÓÃÁ˲»°²È«µÄÖ°Äܵ¼ÖÂÍþвÕß¿ÉÄܸ²¸ÇËÁÒâÄÚ´æ £¬Î´¾­Éí·ÝÑéÖ¤µÄÔ¶³ÌÍþвÕß¿ÉÀûÓø÷ì϶µ¼Ö»ؾø·þÎñ»òÔ¶³Ì´úÂëÖ´ÐÐ £¬²¢¿ÉÄÜÀûÓø÷ì϶»ñµÃÉ豸µÄ root ȨÏÞ¡£

 

 

¶þ¡¢Ó°ÏìÁìÓò

Juniper Networks SRXϵÁкÍEXϵÁÐÉϵÄJunos OS°æ±¾£º

Junos OS°æ±¾< 20.4R3-S9

Junos OS 21.2 °æ±¾< 21.2R3-S7

Junos OS 21.3 °æ±¾< 21.3R3-S5

Junos OS 21.4 °æ±¾< 21.4R3-S5

Junos OS 22.1 °æ±¾< 22.1R3-S4

Junos OS 22.2 °æ±¾< 22.2R3-S3

Junos OS 22.3 °æ±¾< 22.3R3-S2

Junos OS 22.4 °æ±¾< 22.4R2-S2¡¢22.4R3

×¢£ºÊÜÓ°ÏìµÄÉ豸ÉϱØÐë´æÔÚÒÔÏÂ×îµÍÅäÖãº

[system services web-management http]

»ò

[system services web-management https]

 

 

Èý¡¢°²È«´ëÊ©

3.1 Éý¼¶°æ±¾

Ŀǰ¸Ã·ì϶ÒѾ­½¨¸´ £¬ÊÜÓ°ÏìÓû§¿ÉÉý¼¶µ½Junos OS°æ±¾20.4R3-S9¡¢21.2R3-S7¡¢21.3R3-S5¡¢21.4R3-S5¡¢22.1R3-S4¡¢22.2R3-S3¡¢22.3R3-S2¡¢22.4R2-S2¡¢224R3¡¢23.2R1-S1¡¢23.2R2¡¢23.4R1¡¢ÒÔ¼°ºóÐø°ä²¼µÄ¸ü¸ß°æ±¾¡£

ÏÂÔØÁ´½Ó£º

 https://supportportal.juniper.net

3.2 һʱ´ëÊ©

ÎÞ·¨µ±¼´¸üÐÂÉ豸µÄÓû§¿ÉÑ¡Ôñ½ûÓà J-Web £¬»òÏÞ¶ÈΪֻÔÊÐíÊÜÐÅÀµµÄÖ÷»ú½Ó¼û¡£

3.3 ͨÓý¨Òé

l  ¶¨ÆÚ¸üÐÂϵͳ²¹¶¡ £¬Ï÷¼õϵͳ·ì϶ £¬ÌáÉý·þÎñÆ÷µÄ°²È«ÐÔ¡£

l  ¼ÓǿϵͳºÍÍøÂçµÄ½Ó¼û½ÚÔì £¬Åú¸Ä·À»ðǽսÊõ £¬¹Ø¹Ø·Ç±ØÒªµÄÀûÓö˿ڻò·þÎñ £¬Ï÷¼õ½«Î£ÏÕ·þÎñ£¨ÈçSSH¡¢RDPµÈ£©Â¶³öµ½¹«Íø £¬Ï÷¼õ¹¥»÷Ãæ¡£

l  ʹÓÃÆóÒµ¼¶°²È«²úÆ· £¬ÌáÉýÆóÒµµÄÍøÂ簲ȫ»úÄÜ¡£

l  ¼ÓǿϵͳÓû§ºÍȨÏÞÖÎÀí £¬ÆôÓöà³É·ÖÈÏÖ¤»úÔìºÍ×îÓ×ȨÏÞ×¼Ôò £¬Óû§ºÍÈí¼þȨÏÞӦά³ÖÔÚ×îµÍÏÞ¶È¡£

l  ÆôÓÃÇ¿ÃÜÂëÕ½Êõ²¢ÉèÖÃΪ¶¨ÆÚÅú¸Ä¡£

3.4 ²Î¿¼Á´½Ó

https://supportportal.juniper.net/s/article/2024-01-Security-Bulletin-Junos-OS-SRX-Series-and-EX-Series-Security-Vulnerability-in-J-web-allows-a-preAuth-Remote-Code-Execution-CVE-2024-21591

https://nvd.nist.gov/vuln/detail/CVE-2024-21591

  

 

ËÄ¡¢°æ±¾ÐÅÏ¢

°æ±¾

ÈÕÆÚ

±¸×¢

V1.0

2024-01-15

³õ´Î°ä²¼

 

 

Îå¡¢¸½Â¼

5.1 GA»Æ½ð¼×¼ò½é

GA»Æ½ð¼×³ÉÁ¢ÓÚ1996Äê £¬ÊÇÓÉÁôÃÀ²©Ê¿ÑÏÍû¼ÑŮʿ´´½¨µÄ¡¢Õ¼ÓÐÆëÈ«×ÔÖ÷֪ʶ²úȨµÄÐÅÏ¢°²È«¸ß¿Æ¼¼ÆóÒµ¡£ÊǹúÄÚ×î¾ßʵÁ¦µÄÐÅÏ¢°²È«²úÆ·¡¢°²È«·þÎñ½â¾ö¹æ»®µÄÁ캽ÆóÒµÖ®Ò»¡£

¹«Ë¾×ܲ¿Î»ÓÚ±±¾©ÊÐÖйشåÈí¼þÔ°GA»Æ½ð¼×´óÏà £¬¹«Ë¾Ô±¹¤6000ÓàÈË £¬Ñз¢ÍŶÓ1200ÓàÈË, ¼¼Êõ·þÎñÍŶÓ1300ÓàÈË¡£ÔÚÈ«¹ú¸÷Ê¡¡¢ÊÓ×¢×ÔÖÎÇøÉèÁ¢·ÖÖ§»ú¹¹ÁùÊ®¶à¸ö £¬Õ¼Óи²¸ÇÈ«¹úµÄÏúÊÛϵͳ¡¢Çþ·ϵͳºÍ¼¼ÊõÖ§³Öϵͳ¡£¹«Ë¾ÓÚ2010Äê6ÔÂ23ÈÕÔÚÉîÛÚÖÐÓ×°å¹ÒÅÆÉÏÊС££¨¹ÉƱ´úÂ룺002439£©

¶àÄêÀ´ £¬GA»Æ½ð¼×ÖÂÁ¦ÓÚÌṩӵÓйú¼Ê¾ºÕùÁ¦µÄ×ÔÖ÷´´Ðµİ²È«²úÆ·ºÍ×î¼Ñʵ¼Ê·þÎñ £¬Ô®ÊÖ¿Í»§È«ÃæÌáÉýÆäIT»ù´¡ÉèÊ©µÄ°²È«ÐԺͳö²úЧÁ¦ £¬Îª´òÔìºÍÌáÉý¹ú¼Ê»¯µÄÃñ×åÐÅÏ¢°²È«²úÒµÁì¾üÆ·ÅÆ¶ø²»Ð¸ÖÂÁ¦¡£

5.2 ¹ØÓÚGA»Æ½ð¼×

GA»Æ½ð¼×°²È«Ó¦¼±ÏìÓ¦ÖÐÐÄÒѰ䲼1000¶à¸ö·ì϶¹«¸æÎ¢·çÏÕÔ¤¾¯ £¬ÎÒÃǽ«³ÖÐø¸ú×ÙÈ«Çò×îеÄÍøÂ簲ȫÊÂÎñºÍ·ì϶ £¬ÎªÆóÒµµÄÐÅÏ¢°²È«±£¼Ý»¤º½¡£

¹Ø×¢ÎÒÃÇ£º

image.png