¡¾Îó²îͨ¸æ¡¿Notepad++ v8.8.1×°ÖóÌÐòÌØÈ¨ÌáÉýÎó²î (CVE-2025-49144)
Ðû²¼Ê±¼ä 2025-06-24Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | Notepad++ v8.8.×°ÖóÌÐòÌØÈ¨ÌáÉýÎó²î | ||
CVE ID | CVE-2025-49144 | ||
Îó²îÀàÐÍ | ÌØÈ¨ÌáÉýÎó²î | ·¢Ã÷ʱ¼ä | 2025-06-24 |
Îó²îÆÀ·Ö | 7.3 | Îó²îÆ·¼¶ | ¸ßΣ |
¹¥»÷ÏòÁ¿ | ÍâµØ | ËùÐèȨÏÞ | µÍ |
ʹÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ÐèÒª |
PoC/EXP | ÒѹûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
Notepad++ÊÇÒ»¿îÃâ·ÑµÄ¿ªÔ´Îı¾±à¼Æ÷£¬Ö§³Ö¶àÖÖ±à³ÌÓïÑÔµÄÓï·¨¸ßÁÁºÍ×Ô¶¯Íê³É¡£Ëü»ùÓÚScintilla±à¼¿Ø¼þ£¬ÌṩǿʢµÄ¹¦Ð§£¬Èç¶à±êǩҳ±à¼¡¢ÕýÔò±í´ïʽËÑË÷Ìæ»»¡¢²å¼þÀ©Õ¹ºÍ×Ô½ç˵¿ì½Ý¼üµÈ¡£Notepad++ÊÊÓÃÓÚWindowsϵͳ£¬ÆÕ±éÓÃÓÚ±à³Ì¡¢¾ç±¾±à¼ÒÔ¼°Ò»Ñùƽ³£Îı¾´¦Öóͷ£¡£ÒÀ¸½ÆäÇáÁ¿¼¶ºÍ¸ßЧÐÔ£¬³ÉΪ¿ª·¢ÕߺÍÊÖÒÕÖ°Ô±µÄ³£Óù¤¾ß¡£
2025Äê6ÔÂ24ÈÕ£¬×ðÁú¿Ê±¼¯ÍÅVSRC¼à²âµ½notepad-plus-plusÐû²¼Ç徲ͨ¸æ£¬Åû¶ÁËÒ»¸öÌØÈ¨ÌáÉýÎó²î¡£¹¥»÷Õß¿ÉʹÓò»ÊÜ¿ØÖƵĿÉÖ´ÐÐÎļþËÑË÷·¾¶£¨EXE/DLLËÑË÷·¾¶£©ÔÚ×°ÖÃÀú³ÌÖУ¬½«¶ñÒâ¿ÉÖ´ÐÐÎļþ¼ÓÔØÎªSYSTEMȨÏÞ£¬´Ó¶øÊµÏÖÍâµØÌØÈ¨ÌáÉý¡£Îó²îµÄPOCÒѹûÕæ£¬¹¥»÷Õß¿Éͨ¹ýÌØ¶¨µÄÎļþ·¾¶²Ù×÷´¥·¢¸ÃÎó²î£¬½øÒ»²½µ¼ÖÂϵͳȨÏÞ±»¶ñÒâ»ñÈ¡¡£Îó²îÆÀ·Ö7.3·Ö£¬Îó²îÆ·¼¶¸ßΣ¡£


¾©¹«Íø°²±¸11010802024551ºÅ