AMD RadeonÇý¶¯³ÌÐòÔ¶³Ì´úÂëÖ´ÐÐÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2019-09-19¡ñÎó²î±àºÅºÍ¼¶±ð
CVE±àºÅ£ºCVE-2019-5049£¬Î£ÏÕ¼¶±ð£ºÑÏÖØ£¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º9.0£¬¹Ù·½Î´ÆÀ¶¨
¡ñÓ°Ïì°æ±¾
ÊÜÓ°ÏìµÄ°æ±¾
AMD ATIDXX64.DLL 25.20.15031.5004°æ±¾ºÍ25.20.15031.9002°æ±¾£¨ÔËÐÐÔÚRadeon RX 550 / 550 Series VMware Workstation 15 (15.0.4 build-12990004)°æ±¾ÉÏ£©
¡ñÎó²î¸ÅÊö
AMD RadeonÏÔ¿¨µÄijЩÉèÖÃÖб£´æ¹ýʧ£¬¿ÉÄÜÔÊÐí¹¥»÷Õß¿ØÖÆÄ¿µÄϵͳ¡£¿ÉÒÔͨ¹ýÏòAMD ATIDXX64.DLLÇý¶¯³ÌÐòÌṩÃûÌùýʧµÄÏñËØ×ÅÉ«Æ÷£¨VMware guestÐéÄâ»ú²Ù×÷ϵͳÄÚ²¿£©À´´¥·¢´ËÎó²î¡£ÕâÖÖ¹¥»÷¿ÉÒÔ´ÓVMwareÀ´±öÓû§Ä£Ê½´¥·¢£¬µ¼ÖÂÖ÷»úÉϵÄvmware-vmx.exeÀú³ÌÄÚ´æË𻵣¬»òÀíÂÛÉÏͨ¹ýWEBGL£¨Ô¶³ÌÍøÕ¾£©µ¼ÖÂÄÚ´æË𻵡£
Ò×Êܹ¥»÷µÄ´úÂ루sub_32B820£©Î»ÓÚAMD¿âATIDXX64.DLLÖУ¬Êǹ¥»÷ÕßÌṩµÄ×ÅÉ«Æ÷×Ö½ÚÂëÊý¾ÝµÄÄ¿µÄ¡£ÓÉÓÚȱ·¦Êʵ±µÄ½çÏß¼ì²é£¬¹¥»÷Õß¿ÉÒÔ²¿·Ö¿ØÖÆÄ¿µÄµØµãµÄÅÌË㣬´Ó¶øµ¼ÖÂÊܿصÄÄÚ´æË𻵡£Ê¹ÓöñÒâÏñËØ×ÅÉ«Æ÷£¬¹¥»÷Õß¿ÉÄܻᵼÖÂÔ½½çÄÚ´æÐ´Èë²»µ«Ó°ÏìVM guestÐéÄâ»ú£¬»¹»áÓ°Ïìµ×²ãÖ÷»úϵͳ¡£
¡ñÎó²îÑéÖ¤
ÔÝÎÞPOC/EXP¡£
¡ñÐÞ¸´½¨Òé
ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î£¬ÏêÇéÇë¹Ø×¢³§ÉÌÖ÷Ò³£ºhttps://www.amd.com¡£
¡ñ²Î¿¼Á´½Ó
https://www.talosintelligence.com/vulnerability_reports/TALOS-2019-0818


¾©¹«Íø°²±¸11010802024551ºÅ