{"id":68932,"date":"2024-05-23T08:04:24","date_gmt":"2024-05-23T00:04:24","guid":{"rendered":"https:\/\/www.ioiotimes.com\/?p=68932"},"modified":"2024-05-23T08:04:25","modified_gmt":"2024-05-23T00:04:25","slug":"qnap%e7%94%a2%e5%93%81%e8%b3%87%e5%ae%89%e4%ba%8b%e4%bb%b6%e6%87%89%e8%ae%8a%e5%9c%98%e9%9a%8apsirt%e9%87%9d%e5%b0%8dwatchtowr-labs%e6%8f%90%e5%87%ba%e7%9a%84%e8%b3%87%e5%ae%89%e5%a0%b1%e5%91%8a","status":"publish","type":"post","link":"https:\/\/www.ioiotimes.com\/?p=68932","title":{"rendered":"QNAP\u7522\u54c1\u8cc7\u5b89\u4e8b\u4ef6\u61c9\u8b8a\u5718\u968a(PSIRT)\u91dd\u5c0dWatchTowr Labs\u63d0\u51fa\u7684\u8cc7\u5b89\u5831\u544a\u56de\u61c9"},"content":{"rendered":"\n<p>\u5a01\u806f\u901a\u00ae\u79d1\u6280\uff08QNAP\uff09\u81f4\u529b\u65bc\u7dad\u8b77\u7522\u54c1\u7684\u6700\u9ad8\u5b89\u5168\u6a19\u6e96\u3002\u8fd1\u671f\u6211\u5011\u6536\u5230\u4e86\u95dc\u65bc QTS \u4f5c\u696d\u7cfb\u7d71\u4e2d\u591a\u500b\u5f31\u9ede\u7684\u901a\u77e5\uff0c\u8a73\u60c5\u8acb\u53c3\u898b WatchTowr Labs \u7684\u5831\u544a\u3002\u6211\u5011\u5e0c\u671b\u5c31\u9019\u4e9b\u767c\u73fe\u9032\u884c\u89e3\u91cb\uff0c\u4e26\u6982\u8ff0\u6211\u5011\u7684\u884c\u52d5\u4ee5\u89e3\u6c7a\u9019\u4e9b\u554f\u984c\u3002<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"800\" height=\"420\" src=\"https:\/\/www.ioiotimes.com\/wordpress\/wp-content\/uploads\/2024\/05\/20240523-qnap.jpg\" alt=\"\" class=\"wp-image-68941\" title=\"\" srcset=\"https:\/\/www.ioiotimes.com\/wordpress\/wp-content\/uploads\/2024\/05\/20240523-qnap.jpg 800w, https:\/\/www.ioiotimes.com\/wordpress\/wp-content\/uploads\/2024\/05\/20240523-qnap-300x158.jpg 300w, https:\/\/www.ioiotimes.com\/wordpress\/wp-content\/uploads\/2024\/05\/20240523-qnap-768x403.jpg 768w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/figure><\/div>\n\n\n<p><\/p>\n\n\n\n<p><strong>\u89e3\u6c7a\u5831\u544a\u4e2d\u7684QTS\u5f31\u9ede<\/strong><\/p>\n\n\n\n<p>\u6211\u5011\u611f\u8b1d\u5b89\u5168\u7814\u7a76\u4eba\u54e1\u5728\u8b58\u5225\u6211\u5011\u7522\u54c1\u6f5b\u5728\u5f31\u9ede\u65b9\u9762\u6240\u4f5c\u7684\u52aa\u529b\u3002\u5831\u544a\u4e2d\u7684 15 \u500b\u5f31\u9ede\uff0c\u6211\u5011\u5df2\u7d93\u70ba\u78ba\u8a8d\u7684\u5f31\u9ede\u6307\u6d3e\u4e86 CVE ID\u3002\u6240\u6709\u78ba\u8a8d\u7684\u5f31\u9ede\uff08CVE-2024-21902\uff0cCVE-2024-27127\uff0cCVE-2024-27128\uff0cCVE-2024-27129\uff0cCVE-2024-27130\uff09\u5df2\u65bc\u4eca\u65e5\uff08\u53f0\u5317\u6642\u9593 5 \u6708 21 \u65e5\uff09\u65bc\u6700\u65b0\u7684 QTS 5.1.7 \/ QuTS hero h5.1.7 \u53ef\u7528\u7248\u672c\u4e2d\u7372\u5f97\u89e3\u6c7a\u3002<\/p>\n\n\n\n<p>\u8a73\u7d30\u5982\u4e0b\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>CVE-2024-27131\uff1a<\/strong>\u6b64\u589e\u5f37\u529f\u80fd\u9700\u8981\u5728 QuLog Center \u4e2d\u66f4\u6539 UI \u898f\u7bc4\u3002\u9019\u4e0d\u662f\u5be6\u969b\u7684\u5f31\u9ede\uff0c\u800c\u662f\u4e00\u500b\u8a2d\u8a08\u9078\u64c7\uff0c\u50c5\u5f71\u97ff\u5167\u90e8\u7db2\u8def\u4f7f\u7528\u60c5\u5883\u3002\u9019\u500b\u4fee\u6b63\u5c07\u5728 QTS 5.2.0 \u4e2d\u89e3\u6c7a\u3002<\/li>\n\n\n\n<li><strong>WT-2023-0050\uff1a<\/strong>\u6b64\u554f\u984c\u4ecd\u5728\u5be9\u67e5\u4e2d\uff0c\u5c1a\u672a\u78ba\u8a8d\u70ba\u6709\u6548\u5f31\u9ede\u3002\u6211\u5011\u6b63\u5728\u8207\u7814\u7a76\u4eba\u54e1\u5bc6\u5207\u5408\u4f5c\u4ee5\u91d0\u6e05\u5176\u72c0\u614b\u3002<\/li>\n\n\n\n<li><strong>WT-2024-0004 \u548c WT-2024-0005\uff1a<\/strong>\u9019\u4e9b\u554f\u984c\u4e5f\u6b63\u5728\u5be9\u67e5\u4e2d\uff0c\u6211\u5011\u6b63\u5728\u8207\u7814\u7a76\u4eba\u54e1\u9032\u884c\u7a4d\u6975\u8a0e\u8ad6\u4ee5\u4e86\u89e3\u4e26\u89e3\u6c7a\u3002<\/li>\n\n\n\n<li><strong>WT-2024-0006\uff1a<\/strong>\u6b64\u554f\u984c\u5df2\u88ab\u5206\u914d CVE ID\uff0c\u4e26\u5c07\u5728\u5373\u5c07\u63a8\u51fa\u7684\u7248\u672c\u4e2d\u89e3\u6c7a\u3002<\/li>\n<\/ul>\n\n\n\n<p><\/p>\n\n\n\n<p><strong>CVE-2024-27130\u5f31\u9ede<\/strong><\/p>\n\n\n\n<p>WatchTowr ID WT-2023-0054 \u5831\u544a\u4e2d\u516c\u5e03\u7684 CVE-2024-27130 \u5f31\u9ede\u662f\u7531\u65bc\u5728 No_Support_ACL \u529f\u80fd\u4e2d\u4e0d\u5b89\u5168\u5730\u4f7f\u7528 &#8216;strcpy&#8217; \u51fd\u6578\u6240\u81f4\uff0c\u8a72\u529f\u80fd\u88ab share.cgi script \u4e2d\u7684 get_file_size \u8acb\u6c42\u6240\u4f7f\u7528\u3002\u7576\u8207\u5916\u90e8\u7528\u6236\u5206\u4eab\u5a92\u9ad4\u6642\uff0c\u5c07\u4f7f\u7528\u6b64 script\u3002\u8981\u5229\u7528\u6b64\u5f31\u9ede\uff0c\u653b\u64ca\u8005\u9700\u8981\u6709\u6548\u7684 &#8216;ssid&#8217; \u53c3\u6578\uff0c\u8a72\u53c3\u6578\u662f\u7576 NAS \u7528\u6236\u5f9e\u5176 QNAP \u8a2d\u5099\u5206\u4eab\u6a94\u6848\u6642\u751f\u6210\u7684\u3002<\/p>\n\n\n\n<p>\u6211\u5011\u5e0c\u671b\u5411\u6211\u5011\u7684\u7528\u6236\u4fdd\u8b49\uff0c\u6240\u6709\u7684 QTS 4.x \u548c 5.x \u7248\u672c\u90fd\u555f\u7528\u4e86\u4f4d\u5740\u7a7a\u9593\u914d\u7f6e\u96a8\u6a5f\u8f09\u5165\uff08Address space layout randomization\uff0cASLR\uff09\u3002ASLR \u986f\u8457\u589e\u52a0\u4e86\u653b\u64ca\u8005\u5229\u7528\u6b64\u5f31\u9ede\u7684\u96e3\u5ea6\u3002\u56e0\u6b64\uff0c\u6211\u5011\u5c07\u5176\u56b4\u91cd\u6027\u8a55\u4f30\u70ba\u4e2d\u7b49\u3002\u5118\u7ba1\u5982\u6b64\uff0c\u6211\u5011\u5f37\u70c8\u5efa\u8b70\u7528\u6236\u7acb\u5373\u66f4\u65b0\u81f3 QTS 5.1.7 \/ QuTS hero h5.1.7\uff0c\u4ee5\u78ba\u4fdd NAS \u7cfb\u7d71\u53d7\u5230\u4fdd\u8b77\u3002<\/p>\n\n\n\n<p><\/p>\n\n\n\n<p><strong>\u5c0d\u5b89\u5168\u7684\u627f\u8afe<\/strong><\/p>\n\n\n\n<p>QNAP PSIRT \u4e00\u76f4\u4ee5\u4f86\u7a4d\u6975\u5730\u8207\u5b89\u5168\u7814\u7a76\u4eba\u54e1\u5408\u4f5c\uff0c\u5c0d\u5f31\u9ede\u9032\u884c\u5206\u985e\u548c\u4fee\u5fa9\u3002\u5c0d\u65bc\u53ef\u80fd\u767c\u751f\u7684\u7522\u54c1\u767c\u5e03\u6642\u9593\u8868\u548c\u9019\u4e9b\u5f31\u9ede\u62ab\u9732\u4e4b\u9593\u7684\u5354\u8abf\u554f\u984c\uff0c\u6211\u5011\u6df1\u611f\u907a\u61be\u3002\u6211\u5011\u6b63\u5728\u63a1\u53d6\u63aa\u65bd\u6539\u9032\u6211\u5011\u7684\u6d41\u7a0b\u548c\u5354\u8abf\uff0c\u4ee5\u9632\u6b62\u985e\u4f3c\u554f\u984c\u518d\u6b21\u767c\u751f\u3002<\/p>\n\n\n\n<p>\u672a\u4f86\uff0c\u5c0d\u65bc\u88ab\u5206\u985e\u70ba\u9ad8\u6216\u95dc\u9375\u56b4\u91cd\u6027\u7684\u5f31\u9ede\uff0c\u6211\u5011\u627f\u8afe\u5728 45 \u5929\u5167\u5b8c\u6210\u4fee\u5fa9\u4e26\u767c\u5e03\u4fee\u5fa9\u7a0b\u5f0f\u3002\u5c0d\u65bc\u4e2d\u7b49\u56b4\u91cd\u6027\u7684\u5f31\u9ede\uff0c\u6211\u5011\u5c07\u5728 90 \u5929\u5167\u5b8c\u6210\u4fee\u5fa9\u4e26\u767c\u5e03\u4fee\u5fa9\u7a0b\u5f0f\u3002<\/p>\n\n\n\n<p>\u5c0d\u6b64\u53ef\u80fd\u5f15\u8d77\u7684\u4efb\u4f55\u4e0d\u4fbf\uff0c\u6211\u5011\u6df1\u8868\u6b49\u610f\uff0c\u4e26\u627f\u8afe\u4e0d\u65b7\u589e\u5f37\u6211\u5011\u7684\u5b89\u5168\u63aa\u65bd\u3002\u6211\u5011\u7684\u76ee\u6a19\u662f\u8207\u5168\u7403\u7684\u7814\u7a76\u4eba\u54e1\u5bc6\u5207\u5408\u4f5c\uff0c\u78ba\u4fdd\u6211\u5011\u7522\u54c1\u7684\u6700\u9ad8\u5b89\u5168\u54c1\u8cea\u3002<\/p>\n\n\n\n<p>\u70ba\u4e86\u4fdd\u8b77\u60a8\u7684 NAS \u7cfb\u7d71\u8207\u8cc7\u6599\uff0c\u6211\u5011\u5efa\u8b70\u5b9a\u671f\u5c07\u7cfb\u7d71\u66f4\u65b0\u81f3\u6700\u65b0\u7248\u672c\u4ee5\u7372\u5f97\u6700\u65b0\u7684\u5f31\u9ede\u4fee\u5fa9\u3002\u60a8\u53ef\u4ee5\u67e5\u770b<a href=\"https:\/\/qnap.benchurl.com\/c\/l?u=111B325C&amp;e=181778B&amp;c=4B112&amp;t=0&amp;l=161BBFA3&amp;email=KPcDbrO%2FaodL0bOj4IbcAHSo3NIh0hL0&amp;seq=1\" target=\"_blank\" rel=\"noreferrer noopener\">\u7522\u54c1\u652f\u63f4\u72c0\u614b<\/a>\u4e86\u89e3\u60a8\u7684 NAS \u578b\u865f\u7684\u6700\u65b0\u66f4\u65b0\u3002<\/p>\n\n\n\n<p><\/p>\n\n\n\n<p><\/p>\n\n\n\n<h4 class=\"wp-block-heading has-text-align-right has-very-light-gray-to-cyan-bluish-gray-gradient-background has-background\"><br>\ud83d\udfe6<strong>\u73fe\u5728\u5c31\u52a0\u5165&nbsp;<a href=\"https:\/\/www.facebook.com\/profile.php?id=100086628162118\" target=\"_blank\" rel=\"noreferrer noopener\">ioioTIMES \u81c9\u66f8\u7c89\u7d72\u5718<\/a>&nbsp;\u66f4\u591a\u4e92\u52d5\u3001\u66f4\u591a\u597d\u5eb7\u650f\u62b5\u52a0!!<\/strong><br>\ud83d\udfe6<strong>\u6211\u5011\u6709<a href=\"https:\/\/today.line.me\/tw\/v2\/publisher\/103117\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">LINE TODAY<\/a>\u983b\u9053\u4e86\uff0c\u5feb\u4f86\u8ffd\u8e2a\u6211\u5011\u5427!!&#8211;\u6700\u65b0\u79d1\u6280\u65b0\u805e \u76e1\u5728\u4f60\u624b<\/strong><\/h4>\n","protected":false},"excerpt":{"rendered":"<p>\u5a01\u806f\u901a\u00ae\u79d1\u6280\uff08QNAP\uff09\u81f4\u529b\u65bc\u7dad\u8b77\u7522<\/p>\n","protected":false},"author":3,"featured_media":68941,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"rank_math_lock_modified_date":false,"footnotes":""},"categories":[13],"tags":[580,298,9716,146],"class_list":["post-68932","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","tag-focus","tag-qnap","tag-watchtowr-labs","tag-146"],"_links":{"self":[{"href":"https:\/\/www.ioiotimes.com\/index.php?rest_route=\/wp\/v2\/posts\/68932"}],"collection":[{"href":"https:\/\/www.ioiotimes.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.ioiotimes.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.ioiotimes.com\/index.php?rest_route=\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ioiotimes.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=68932"}],"version-history":[{"count":3,"href":"https:\/\/www.ioiotimes.com\/index.php?rest_route=\/wp\/v2\/posts\/68932\/revisions"}],"predecessor-version":[{"id":68942,"href":"https:\/\/www.ioiotimes.com\/index.php?rest_route=\/wp\/v2\/posts\/68932\/revisions\/68942"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.ioiotimes.com\/index.php?rest_route=\/wp\/v2\/media\/68941"}],"wp:attachment":[{"href":"https:\/\/www.ioiotimes.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=68932"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.ioiotimes.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=68932"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.ioiotimes.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=68932"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}