AMD RadeonÇý¶¯³ÌÐòÔ¶³Ì´úÂëÖ´ÐÐÎó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-09-19

¡ñÎó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-5049£¬ £¬Î£ÏÕ¼¶±ð£ºÑÏÖØ£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º9.0£¬ £¬¹Ù·½Î´ÆÀ¶¨


¡ñÓ°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾


AMD ATIDXX64.DLL 25.20.15031.5004°æ±¾ºÍ25.20.15031.9002°æ±¾£¨ÔËÐÐÔÚRadeon RX 550 / 550 Series VMware Workstation 15 (15.0.4 build-12990004)°æ±¾ÉÏ£©


¡ñÎó²î¸ÅÊö


AMD RadeonÏÔ¿¨µÄijЩÉèÖÃÖб£´æ¹ýʧ£¬ £¬¿ÉÄÜÔÊÐí¹¥»÷Õß¿ØÖÆÄ¿µÄϵͳ¡£¡£¡ £¿ £¿£¿ÉÒÔͨ¹ýÏòAMD ATIDXX64.DLLÇý¶¯³ÌÐòÌṩÃûÌùýʧµÄÏñËØ×ÅÉ«Æ÷£¨VMware guestÐéÄâ»ú²Ù×÷ϵͳÄÚ²¿£©À´´¥·¢´ËÎó²î¡£¡£¡£ÕâÖÖ¹¥»÷¿ÉÒÔ´ÓVMwareÀ´±öÓû§Ä£Ê½´¥·¢£¬ £¬µ¼ÖÂÖ÷»úÉϵÄvmware-vmx.exeÀú³ÌÄÚ´æË𻵣¬ £¬»òÀíÂÛÉÏͨ¹ýWEBGL£¨Ô¶³ÌÍøÕ¾£©µ¼ÖÂÄÚ´æË𻵡£¡£¡£


Ò×Êܹ¥»÷µÄ´úÂ루sub_32B820£©Î»ÓÚAMD¿âATIDXX64.DLLÖУ¬ £¬Êǹ¥»÷ÕßÌṩµÄ×ÅÉ«Æ÷×Ö½ÚÂëÊý¾ÝµÄÄ¿µÄ¡£¡£¡£ÓÉÓÚȱ·¦Êʵ±µÄ½çÏß¼ì²é£¬ £¬¹¥»÷Õß¿ÉÒÔ²¿·Ö¿ØÖÆÄ¿µÄµØµãµÄÅÌË㣬 £¬´Ó¶øµ¼ÖÂÊܿصÄÄÚ´æË𻵡£¡£¡£Ê¹ÓöñÒâÏñËØ×ÅÉ«Æ÷£¬ £¬¹¥»÷Õß¿ÉÄܻᵼÖÂÔ½½çÄÚ´æÐ´Èë²»µ«Ó°ÏìVM guestÐéÄâ»ú£¬ £¬»¹»áÓ°Ïìµ×²ãÖ÷»úϵͳ¡£¡£¡£


¡ñÎó²îÑéÖ¤


ÔÝÎÞPOC/EXP¡£¡£¡£


¡ñÐÞ¸´½¨Òé


ÏÖÔÚ³§ÉÌÒÑÐû²¼Éý¼¶²¹¶¡ÒÔÐÞ¸´Îó²î£¬ £¬ÏêÇéÇë¹Ø×¢³§ÉÌÖ÷Ò³£ºhttps://www.amd.com¡£¡£¡£


¡ñ²Î¿¼Á´½Ó


https://www.talosintelligence.com/vulnerability_reports/TALOS-2019-0818