欢迎user
Microsoft SMBV2协议存在远程代码执行漏洞。远程攻击者可以特殊的SMBV2报文触发该漏洞,导致远程命令执行。成功利用该漏洞的攻击者者可以执行任意代码或导致系统死机。
CVE ID: CVE-2009-2526
CVE ID: CVE-2009-2532
CVE ID: CVE-2009-3103
Windows Vista, Windows Vista Service Pack 1, and Windows Vista Service Pack 2
Windows Vista x64 Edition, Windows Vista x64 Edition Service Pack 1, and Windows Vista x64 Edition Service Pack 2
Windows Server 2008 for 32-bit Systems and Windows Server 2008 for 32-bit Systems Service Pack 2
Windows Server 2008 for x64-based Systems and Windows Server 2008 for x64-based Systems Service Pack 2
Windows Server 2008 for Itanium-based Systems and Windows Server 2008 for Itanium-based Systems Service Pack 2
禁止使用SMB V2服务。
微软已经为此发布了一个安全公告(MS09-050)以及相应补丁:
http://www.microsoft.com/technet/security/Bulletin/MS09-050.mspx?pf=true