TortoiseSVNÔ¶³Ì´úÂëÖ´ÐÐÎó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-08-15

? Îó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-14422£¬£¬£¬ £¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬ £¬CVSS·ÖÖµ£º³§ÉÌ×ÔÆÀ£º8.8£¬£¬£¬ £¬¹Ù·½Î´ÆÀ¶¨


Ó°Ïì°æ±¾


ÊÜÓ°ÏìµÄ°æ±¾


TortoiseSVN Version <= 1.12.1


Îó²î¸ÅÊö


TortoiseSVNÊÇSubversion°æ±¾¿ØÖÆÏµÍ³µÄÒ»¸öÃâ·Ñ¿ªÔ´¿Í»§¶Ë£¬£¬£¬ £¬¿ÉÒÔÓâԽʱ¼äµÄÖÎÀíÎļþºÍĿ¼¡£¡£¡£¡£


¸ÃÎó²îÔ´ÓÚTortoiseSVNµÄURI´¦Öóͷ£³ÌÐò(Tsvncmd)ÔÊÐíÔÚExcelÊÂÇé²¾ÉϾÙÐж¨ÖƵÄdiff²Ù×÷£¬£¬£¬ £¬¸Ã²Ù×÷¿ÉÄܱ»ÓÃÓÚÔÚ²»ÊܺêÇå¾²ÉèÖñ£»£» £»£»£»¤µÄÇéÐÎÏ·­¿ªÔ¶³ÌÊÂÇé²¾£¬£¬£¬ £¬´Ó¶øÔì³Éí§Òâ´úÂëÖ´ÐС£¡£¡£¡£¹¥»÷Õß¿ÉÄÜͨ¹ýÔÚÍøÂçÇý¶¯Æ÷ÖзÅÈëºê²¡¶¾À´Ê¹ÓÃÕâÒ»µã£¬£¬£¬ £¬ÆÈʹÊܺ¦Õß·­¿ªÊÂÇé²¾²¢Ö´ÐÐÆäÖеĺ겡¶¾¡£¡£¡£¡£¸ÃÎó²î¿ÉÒÔͨ¹ýÓÃwebä¯ÀÀÆ÷»á¼ûÒ»¸öÌØÊâÉè¼ÆµÄURLÀ´´¥·¢¡£¡£¡£¡£


Îó²îÑéÖ¤


EXP: https://cxsecurity.com/issue/WLB-2019080055¡£¡£¡£¡£


ÐÞ¸´½¨Òé


ÏÖÔÚ£¬£¬£¬ £¬¹Ù·½ÒÑÐû²¼ÁËÐÞ¸´¸ÃÎó²îµÄ×îаæ v1.12.2£¬£¬£¬ £¬½¨Ò龡¿ìÏÂÔØÉý¼¶¡£¡£¡£¡£¹Ù·½ÏÂÔØÁ´½Ó£º


https://tortoisesvn.net/downloads.zh.html¡£¡£¡£¡£


²Î¿¼Á´½Ó


https://seclists.org/fulldisclosure/2019/Aug/7