CiscoÑÏÖØÎó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2018-06-07

Îó²î±àºÅ¼°¼¶±ð


CVE-2018-0315 ÑÏÖØ  ³§ÉÌ×ÔÆÀ£º9.8  CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
CVE-2018-0321 ÑÏÖØ  ³§ÉÌ×ÔÆÀ£º9.8  CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


Ó°Ïì¹æÄ£


CVE-2018-0315


ÊÜÓ°ÏìµÄ°æ±¾


ÒÔϰ汾ÔÚʹÓÃAAA×÷ΪµÇ¼ÈÏ֤ʱÊÜÓ°Ï죺


Cisco IOS XE Software Release Fuji 16.7.1
Cisco IOS XE Software Release Fuji 16.8.1


²»ÊÜÓ°ÏìµÄ°æ±¾


Cisco IOS XE Software Release Fuji 16.7.2
Cisco IOS XE Software Release Fuji 16.8.1c
Cisco IOS XE Software Release Fuji 16.8.1s
Cisco IOS XE Software Release Fuji 16.9.1£¨Ô¤¼Æ½ñÄê7ÔÂÐû²¼£©
Cisco IOS XE Software Release Fuji 16.8.2£¨Ô¤¼Æ½ñÄê9ÔÂÐû²¼£©
CVE-2018-0321


ÊÜÓ°ÏìµÄ°æ±¾


´ËÎó²îÓ°Ïì˼¿ÆPrime Collaboration Provisioning£¨PCP£©°æ±¾11.6¼°¸üÔç°æ±¾¡£¡£¡£¡£¡£


Îó²îÐÎò


6ÔÂ6ÈÕ£¬ £¬£¬£¬£¬Cisco¹Ù·½Ðû²¼Ò»ÔòÇ徲ͨ¸æÐû²¼Á˶à¸ö²úÆ·Çå¾²¸üУ¬ £¬£¬£¬£¬ÆäÖаüÀ¨Á½¸öÑÏÖØ¼¶±ðµÄÎó²î¡£¡£¡£¡£¡£ÏêÇé¼û£º

https://tools.cisco.com/security/center/publicationListing.x?product=Cisco¡£¡£¡£¡£¡£


Æä²úÆ·ÖÐÓÃÓÚÈÏÖ¤¡¢ÊÚȨºÍ¼Í¼(AAA)µÄЧÀͱ£´æÑÏÖØÎó²î£¨CVE-2018-0315£©¡£¡£¡£¡£¡£Í¨¹ý¸ÃÎó²î£¬ £¬£¬£¬£¬¹¥»÷ÕßÔÚδÊÚȨµÄÇéÐÎÏ£¬ £¬£¬£¬£¬¿ÉÒÔÔ¶³ÌÔÚÊÜÓ°ÏìµÄ×°±¸ÉÏÖ´ÐÐí§Òâ´úÂ룬 £¬£¬£¬£¬»òÕßÔì³É×°±¸µÄÖØ¼ÓÔØµ¼Ö¾ܾøÐ§ÀÍÌõ¼þ¡£¡£¡£¡£¡£


Cisco Prime Collaboration Provisioning£¨PCP£©ÖеÄÎó²î£¨CVE-2018-0321£©¿ÉÄÜÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷Õß»á¼ûJavaÔ¶³ÌÒªÁìŲÓã¨RMI£©ÏµÍ³¡£¡£¡£¡£¡£¸ÃÎó²îÊÇÓÉÓÚÍøÂç½Ó¿ÚºÍÉèÖÃÒýÇæ£¨NICE£©Ð§ÀÍÖеĿª·Å¶Ë¿ÚÔì³ÉµÄ¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÒÔͨ¹ý»á¼ûÊÜÓ°ÏìµÄPCPʵÀýÉϵĿª·ÅʽRMIϵͳÀ´Ê¹ÓôËÎó²î¡£¡£¡£¡£¡£¿£¿£¿£¿£¿£¿ÉÒÔÔÊÐí¹¥»÷ÕßÖ´ÐÐÓ°ÏìPCP¼°ÆäÅþÁ¬×°±¸µÄ¶ñÒâÐÐΪ¡£¡£¡£¡£¡£

 

½â¾ö²½·¥


Cisco¹Ù·½ÒѾ­Ðû²¼Á˶ÔÓ¦µÄа汾ÐÞ¸´ÁËÉÏÊöÎó²î£¬ £¬£¬£¬£¬Óû§Ó¦ÊµÊ±¸üÐÂÉý¼¶¾ÙÐзÀ»¤¡£¡£¡£¡£¡£Í¬Ê±£¬ £¬£¬£¬£¬ÖÎÀíÔ±¿ÉÒÔͨ¹ýÏÞ֯װ±¸µÄ»á¼ûȨÏÞÀ´È·±£Ö»ÓÐÊÜÐÅÈεÄȪԴ¿ÉÒÔ»á¼û×°±¸¡£¡£¡£¡£¡£

 

²Î¿¼×ÊÁÏ


https://tools.cisco.com/security/center/publicationListing.x?product=Cisco


https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180606-aaa


https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180606-prime-rmi