跳到主要內容區
:::

轉知 【漏洞預警】Adobe Acrobat與Reader程式存在可能導致遠端執行任意程式碼與提權攻擊漏洞

轉知 【漏洞預警】Adobe Acrobat與Reader程式存在可能導致遠端執行任意程式碼與提權攻擊漏洞(CVE-2018-16011、CVE-2018-16018),請儘速確認並進行修正
收件匣
x

panvvtanl <panvvtanl@ntpc.edu.tw>
上午10:23 (50 分鐘前)
寄給 eyvonne、 eterrywu、 enocsh2511、 elib811、 echattingto、 ecarroll、 eta231、 et0011、 emis、 ed252、 eskywayne9、 eqs5624、 emis、 emis、 emis、 efroglai、 emybabyhyms、 eakhs888、 ewenhao、 emis、 emis、 ecatfish、 ewsjhwei、 efhj、 etsjhtsc、 ehys、 egavin、 tamama、 rex、 hrt、 chc、 mis、 olderj.soon、 celesion700si、 fast1123、 a204、 glorineyu、 lkm168、 apa、 justjolai、 dodorislove、 si771014、 azau79、 tsae、 wenlinn、 maxon.chiang、 pennychen0208、 grjhmis、 dean04、 cutepeg、 bonjoy119、 cyliang、 我、 yaken87、 mis、 liaowenjeng、 shihmin、 jam、 ju、 H218、 tqjh104、 atai2657、 206、 mis、 yulin711、 yoimin、 macross62、 chen.hays、 wenchang13、 soong、 mis、 tea599、 fuchiang0801、 pascal、 mis、 ctjhsmis、 sunmei、 migalor、 tailinglee、 huishu.edu、 k1005、 chtun0308、 t0227、 wind1129、 hami、 sayun.yakao、 sky、 yuchen、 peilingz、 ada、 u8961310、 kojason、 take、 royjeremy1220、 o928239935、 ncvsid、 ranal、 yhwang、 f002、 admin、 ntnu.lgc、 scvs354、 newton、 37、 chiung622、 flyiron、 agis、 taboo、 lmw、 show1688、 stu1、 spesmis、 simoningwang、 lai、 sco1114、 regina276、 ysc1010、 friber、 mis、 tzuhsin629、 hank5996、 luein927、 chuan19701125、 th818、 ottokang、 skes000、 james、 tsu194、 hwty、 mis、 taian、 chiubor、 m10213019、 mis、 mis、 light888、 mis、 teacher0218、 mis、 tigerw23、 apple7092001、 h2523621007、 sunnyjaja2、 cjps、 service、 taiyu11、 manbour


轉知各位組長。


-----Forwarded message-----
From:朝源_SOC(教網中心)<mirowang@ntpc.edu.tw>
To:鴻志<panvvtanl@ntpc.edu.tw>
Date: Sat, 19 Jan 2019 16:42:00
Subject: FW: 【漏洞預警】Adobe Acrobat與Reader程式存在可能導致遠端執行任意程式碼與提權攻擊漏洞(CVE-2018-16011、CVE-2018-16018),請儘速確認並進行修正
您好:



這封mail 在群發給學校老師.



謝謝



From: tp2rc@nccu.edu.tw [mailto:tp2rc@nccu.edu.tw]
Sent: Saturday, January 19, 2019 3:45 PM
To: tp2rc@nccu.edu.tw
Subject: FW:【漏洞預警】Adobe Acrobat與Reader程式存在可能導致遠端執行任意程式碼與提權攻擊漏洞(CVE-2018-16011、CVE-2018-16018),請儘速確認並進行修正
Importance: High



區網連線夥伴,您好



敬請撥冗查看貴校相關設備是否有此漏洞,並盡快修正。謝謝





--
臺北第二區網中心 TP2RC (國立政治大學電算中心)
呂思瑩 Chian-Yin Lu
02-29387343

本通訊及其所有附件所含之資訊均屬限閱文件,僅供指定之收件人使用,未經寄件人許可不得揭露、複製或散佈本通訊。若您並非指定之收件人,請勿使用、保存或 揭露本通訊之任何部份,並請立即通知寄件人並完全刪除本通訊。網路通訊可能含有病毒,收件人應自行確認本郵件是否安全,若因此造成損害,寄件人恕不負責。
The information contained in this communication and attachment is confidential and is for the use of the intended recipient only. Any disclosure, copying or distribution of this communication without the sender’s consent is strictly prohibited. If you are not the intended recipient, please notify the sender and delete this communication entirely without using, retaining, or disclosing any of its contents. Internet communications cannot be guaranteed to be virus-free. The recipient is responsible for ensuring that this communication is virus free and the sender accepts no liability for any damages caused by virus transmitted by this communication.



From: service <service@cert.tanet.edu.tw>
Sent: Saturday, January 19, 2019 9:20 AM
To: service@cert.tanet.edu.tw
Subject: (ANA事件單通知:TACERT-ANA-2019011909014040)(【漏洞預警】Adobe Acrobat與Reader程式存在可能導致遠端執行任意程式碼與提權攻擊漏洞(CVE-2018-16011、CVE-2018-16018),請儘速確認並進行修正)



教育機構ANA通報平台

發佈編號

TACERT-ANA-2019011909014040

發佈時間

2019-01-19 09:09:44

事故類型

ANA-漏洞預警

發現時間

2019-01-07 00:00:00

影響等級



[主旨說明:]【漏洞預警】Adobe Acrobat與Reader程式存在可能導致遠端執行任意程式碼與提權攻擊漏洞(CVE-2018-16011、CVE-2018-16018),請儘速確認並進行修正

[內容說明:]

轉發國家資安資訊分享與分析中心 資安訊息警訊 NISAC-ANA-201901-0080。
Adobe釋出的安全性公告中提出Adobe Acrobat與Reader存在使用釋放後記憶體漏洞(use-after-free)與安全性繞過漏洞(security bypass)漏洞。攻擊者可藉由誘騙使用者點擊含有惡意程式碼的連結或檔案,進行遠端程式碼執行或提權攻擊
此訊息僅發送到「區縣市網路中心」,煩請貴單位協助公告或轉發
[影響平台:]

以下所有程式的Windows與MacOS版本:
1.Continuous track versions:
‧Acrobat DC Continuous track versions 2019.010.20064(含)以前版本
‧Acrobat Reader DC Continuous track versions 2019.010.20064(含)以前的版本
2.Classic 2017 versions:
‧Acrobat 2017 Classic 2017 versions 2017.011.30110(含)以前版本
‧Acrobat Reader 2017 Classic 2017 versions 2017.011.30110(含)以前版本
3.Classic 2015 versions:
‧Acrobat DC Classic 2015 versions 2015.006.30461(含)以前版本
‧Acrobat Reader DC Classic 2015 versions 2015.006.30461(含)以前版本
[建議措施:]


1.請確認電腦目前使用的版本。若為上述影響版本,請儘速更新至以下版本,檢查方式:啟動Acrobat或Reader程式,點選「說明」→「關於」,確認版本後可點選「說明」→「檢查更新」安裝更新程式
2.Windows平台亦可至以下網址進行更新至以下版本。更新網址如下:
(1)Continuous track version更新至2019.010.20069以後版本:
https://supportdownloads.adobe.com/detail.jsp?ftpID=6561
(2)Classic 2017 versions更新至2017.011.30113以後版本:
https://supportdownloads.adobe.com/detail.jsp?ftpID=6565
(3)Classic 2015 versions更新至2015.006.30464以後版本:
https://supportdownloads.adobe.com/detail.jsp?ftpID=6569
3.MAC平台亦可至以下網址進行更新至以下版本。更新網址如下:
(1)Continuous track version更新至2019.010.20069以後版本:
https://supportdownloads.adobe.com/detail.jsp?ftpID=6563
(2)Classic 2017 versions更新至2017.011.30113以後版本:
https://supportdownloads.adobe.com/detail.jsp?ftpID=6567
(3)Classic 2015 versions更新至2015.006.30464以後版本:
https://supportdownloads.adobe.com/detail.jsp?ftpID=6571
[參考資料:]


1.https://helpx.adobe.com/security/products/acrobat/apsb19-02.html
2.https://www.zerodayinitiative.com/advisories/ZDI-19-001/
3.https://www.zerodayinitiative.com/advisories/ZDI-19-002/
4.https://thehackernews.com/2019/01/adobe-reader-vulnerabilities.html
(此通報僅在於告知相關資訊,並非為資安事件),如果您對此通報的內容有疑問或有關於此事件的建議,歡迎與我們連絡。

教育機構資安通報應變小組
網址:https://info.cert.tanet.edu.tw/
專線電話:07-5250211
網路電話:98400000
E-Mail:service@cert.tanet.edu.tw











新北市政府教育局 教育研究及資訊發展科 吳鴻志
電話:(02)8072-3456 分機518
傳真:(02)8968-2278
地址:22057新北市板橋區僑中一街1-1號(教研中心2樓)
E-mail:panvvtanl@ntpc.edu.tw
瀏覽數:
登入成功