¡¾·ì϶¹«¸æ¡¿WinRAR õè¾¶´¦Ö÷ì϶µ¼ÖÂÔ¶³Ì´úÂëÖ´ÐÐ (CVE-2025-6218)
°ä²¼¹¦·ò 2025-06-25Ò»¡¢·ì϶¸ÅÊö
·ìϼûû³Æ | WinRAR õè¾¶´¦Ö÷ì϶µ¼ÖÂÔ¶³Ì´úÂëÖ´ÐÐ | ||
CVE ID | CVE-2025-6218 | ||
·ì϶ÀàÐÍ | RCE | ·¢ÏÖ¹¦·ò | 2025-06-25 |
·ì϶ÆÀ·Ö | 7.8 | ·ì϶µÈ¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ±¾µØ | ËùÐèȨÏÞ | ÎÞ |
ÀûÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ±ØÒª |
PoC/EXP | δ¹«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
WinRARÊÇÒ»¿î¿í·ºÊ¹ÓõÄÎļþѹËõºÍ½âѹÈí¼þ£¬Ö§³Ö¶àÖÖѹËõÌåʽ£¬ÈçRAR¡¢ZIPºÍÆäËû³£¼ûÌåʽ¡£ËüÌṩ׳´óµÄѹËõºÍ¼ÓÃÜÖ°ÄÜ£¬ÔÊÐíÓû§´´½¨×Ô½âѹµµ°¸¡¢·Ö¾íѹËõºÍÎļþ¸´ÔµÈ¡£WinRAR½çÃæ¼ò½à£¬²Ù×÷·½±ã£¬ºÏÓÃÓÚWindows¡¢MacºÍLinuxµÈ¶à¸öƽ̨¡£ËüµÄѹËõ±ÈÂʸߣ¬ÓÈÆäºÏÓÃÓÚ´óÐÍÎļþºÍÎļþ¼ÐµÄ´¦Öá£WinRAR»¹¾ß±¸×³´óµÄÎļþÖÎÀíÖ°ÄÜ£¬Ö§³ÖÍϷŲÙ×÷£¬¿í·ºÀûÓÃÓÚÓ×ÎÒºÍÆóÒµµÄÊý¾Ý´æ´¢Óë´«Êä¡£
2025Äê6ÔÂ25ÈÕ£¬GA»Æ½ð¼×¼¯ÍÅVSRC¼à²âµ½WinRAR´æÔÚ´æÔÚõè¾¶´¦Ö÷ì϶£¬¿ÉÄܵ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£¸Ã·ì϶ÔÊÐíÔ¶³Ì¹¥»÷ÕßÔÚÊÜÓ°ÏìµÄWinRAR°æ±¾ÉÏÖ´ÐÐËÁÒâ´úÂ룬ÇÒÐèÓû§½»»¥£¬¹¥»÷ÕßÐèÓÕʹÓû§½Ó¼û¶ñÒâÒ³Ãæ»ò´ò¿ª¶ñÒâÎļþ¡£·ì϶µÄµ××ÓÔÒòÔÚÓÚWinRAR¶ÔÎļþõè¾¶µÄ´¦Öò»µ±£¬¶ñÒâ»ú¹ØµÄÎļþõè¾¶¿ÉÄܵ¼Ö¹ý³Ì½Ó¼û²»¸Ã½Ó¼ûµÄĿ¼£¬´Ó¶øÔÚµ±Ç°Óû§¸ßµÍÎÄÖÐÖ´ÐжñÒâ´úÂ룬·ì϶ÆÀ·Ö7.8·Ö£¬·ì϶µÈ¼¶¸ßΣ¡£
¶þ¡¢Ó°ÏìÁìÓò
Èý¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£º
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£


¾©¹«Íø°²±¸11010802024551ºÅ