技嘉兩款準系統UEFI韌體遭爆有漏洞 - 3C

By Charlie
at 2017-04-03T23:29
at 2017-04-03T23:29
Table of Contents
技嘉兩款迷你準系統UEFI韌體遭爆有漏洞,有被植入勒贖軟體風險
安全業者Cylance在上周黑帽駭客大會上揭露兩款技嘉迷你準系統,使用的UEFI韌體有漏
洞?
文/林妍溱2017-04-03發表
受影響的產品之一GB-BSi7H-6500。
上周黑帽駭客亞洲大會(Black Hat Asia)上,安全業者Cylance公佈技嘉電腦兩款迷你
準系統UEFI韌體存在漏洞,可能遭到駭客植入勒贖軟體。技嘉即將為受影響的產品釋出修
補程式。
安全人員發現,受影響的系統包括GB-BSi7H-6500 及 GB-BXi7-5775,兩產品分別內建201
6年5月(vF6)及7月版本(vF2)的American Megatrend Inc (AMI)的UEFI韌體。
Cylance研究人員在上述系統中發現兩項漏洞。第一項名為CVE-2017-3197的漏洞為技嘉實
作UEFI韌體時,未能在SMI handler加入適當防護機制,驗證input pointer來防止未經授
權的修改,讓駭客可以系統管理模式(SMM)在SPI記憶體中寫入指令。而CVE-2017-3198漏
洞則是未在更新系統前進行韌體檔案的驗證,此外,該漏洞也造成韌體更新在未驗證下以
HTTP(而非HTTPS)下載到系統內,令駭客能藉由AFU (AMI Firmware Utility)更新工具
對韌體寫入任意程式碼。
研究人員並撰寫了一支概念驗證攻擊程式,藉由內建Powershell dropper的Word 文件下
載勒贖軟體到韌體中,成功防止技嘉系統開機,同樣的漏洞也能讓駭客植入rootkit而長
期潛伏於系統中。
Cylance今年初發現這批漏洞後已經通知技嘉、AMI及美國卡內基美隆大學軟體工程研究所
的CERT/CC。CERT/CC也針對兩項漏洞發佈了漏洞通報。
技嘉預計在未來幾天內針對GB-BSi7H-6500產品釋出新版(vF7)韌體,但GB-BSi7H-5775
已經屆產品終止(end of life)故不會再獲得更新。
http://www.ithome.com.tw/news/113231
-----
Sent from JPTT on my LeMobile Le X820.
--
你讀書都~沒有辦法專心? Modafinil! 你是不是~又擔心會被二一?
教你面對所有挑戰 勇往前進~ We are the best solution! gogogogo
考試輕鬆又Happy 我愛Modafinil! 上台清交真Easy 我愛Modafinil!
吃了就能變聰明 我愛Modafinil! 大家都崇拜~你 我愛Modafinil!
普衛醒 夢達飛寧錠 讓夢想達成飛向你!
--
Tags:
3C
All Comments

By Jacky
at 2017-04-05T14:21
at 2017-04-05T14:21

By Adele
at 2017-04-08T15:38
at 2017-04-08T15:38

By Connor
at 2017-04-12T22:02
at 2017-04-12T22:02

By Adele
at 2017-04-15T10:36
at 2017-04-15T10:36

By Carolina Franco
at 2017-04-15T16:15
at 2017-04-15T16:15

By Daniel
at 2017-04-20T02:07
at 2017-04-20T02:07

By Kumar
at 2017-04-24T11:49
at 2017-04-24T11:49

By Isabella
at 2017-04-27T01:21
at 2017-04-27T01:21

By Eartha
at 2017-04-28T11:44
at 2017-04-28T11:44

By Sierra Rose
at 2017-05-01T16:39
at 2017-05-01T16:39

By Zanna
at 2017-05-05T23:44
at 2017-05-05T23:44

By Eartha
at 2017-05-08T20:44
at 2017-05-08T20:44

By Audriana
at 2017-05-10T15:46
at 2017-05-10T15:46

By James
at 2017-05-13T17:04
at 2017-05-13T17:04

By Noah
at 2017-05-14T18:13
at 2017-05-14T18:13

By Gilbert
at 2017-05-19T13:27
at 2017-05-19T13:27

By Liam
at 2017-05-22T10:25
at 2017-05-22T10:25

By Thomas
at 2017-05-24T18:01
at 2017-05-24T18:01

By Rebecca
at 2017-05-29T15:58
at 2017-05-29T15:58

By Erin
at 2017-06-02T17:03
at 2017-06-02T17:03

By Mason
at 2017-06-06T22:14
at 2017-06-06T22:14

By Valerie
at 2017-06-08T06:45
at 2017-06-08T06:45

By Regina
at 2017-06-08T09:44
at 2017-06-08T09:44

By Lily
at 2017-06-11T20:42
at 2017-06-11T20:42

By Caroline
at 2017-06-15T14:46
at 2017-06-15T14:46

By Jacky
at 2017-06-17T10:48
at 2017-06-17T10:48

By David
at 2017-06-19T05:34
at 2017-06-19T05:34

By Callum
at 2017-06-21T13:43
at 2017-06-21T13:43

By Emma
at 2017-06-22T18:01
at 2017-06-22T18:01

By Rachel
at 2017-06-24T00:56
at 2017-06-24T00:56

By Margaret
at 2017-06-27T09:32
at 2017-06-27T09:32

By Caroline
at 2017-06-28T11:21
at 2017-06-28T11:21

By Gary
at 2017-07-02T21:09
at 2017-07-02T21:09

By Agnes
at 2017-07-03T05:15
at 2017-07-03T05:15

By Leila
at 2017-07-04T16:37
at 2017-07-04T16:37

By Andy
at 2017-07-09T02:37
at 2017-07-09T02:37

By Bennie
at 2017-07-10T19:23
at 2017-07-10T19:23

By Hazel
at 2017-07-11T06:01
at 2017-07-11T06:01

By Lucy
at 2017-07-13T23:24
at 2017-07-13T23:24

By Catherine
at 2017-07-18T08:06
at 2017-07-18T08:06

By Emily
at 2017-07-20T02:50
at 2017-07-20T02:50

By Belly
at 2017-07-25T00:08
at 2017-07-25T00:08

By Brianna
at 2017-07-29T08:10
at 2017-07-29T08:10
Related Posts
便宜超值的Z170 DDR3平台

By Rachel
at 2017-04-03T23:28
at 2017-04-03T23:28
15K 女朋友用上網影音機

By Zora
at 2017-04-03T23:21
at 2017-04-03T23:21
無風扇 低功耗 顯卡 請求推薦

By Delia
at 2017-04-03T23:05
at 2017-04-03T23:05
模組/半模組PSU挑選

By Tracy
at 2017-04-03T22:30
at 2017-04-03T22:30
GottaLoadFast 三星960EVO 佳翼SK9 開箱

By Linda
at 2017-04-03T22:15
at 2017-04-03T22:15