ื”ื˜ืžืขืช ื‘ืงืจ ืชื—ื•ื Samba ื—ืฉื•ืคื” ืœืคื’ื™ืขื•ืช ืฉืœ ZeroLogin

ืžืคืชื—ื™ ืคืจื•ื™ืงื˜ ืกืžื‘ื” ื”ื–ื”ื™ืจ ืžืฉืชืžืฉื™ื ื‘ืชืงื•ืคื” ื”ืื—ืจื•ื ื” ืžื–ื•ื”ื” ืคื’ื™ืขื•ืช Windows ZeroLogin (CVE-2020-1472) ืžื•ืคื™ืข ื•ื‘ื”ื˜ืžืขื” ืฉืœ ื‘ืงืจ ืชื—ื•ื ืžื‘ื•ืกืก ืกืžื‘ื”. ืคื’ื™ืขื•ืช ื’ืจื ืœ ืคื’ืžื™ื ื‘ืคืจื•ื˜ื•ืงื•ืœ MS-NRPC ื•ื‘ืืœื’ื•ืจื™ืชื ื”ื”ืฆืคื ื” AES-CFB8, ื•ืื ืžื ื•ืฆืœ ื‘ื”ืฆืœื—ื”, ืžืืคืฉืจ ืœืชื•ืงืฃ ืœืงื‘ืœ ื’ื™ืฉืช ืžื ื”ืœ ื‘ื‘ืงืจ ืชื—ื•ื.

ืžื”ื•ืช ื”ืคื’ื™ืขื•ืช ื”ื™ื ืฉืคืจื•ื˜ื•ืงื•ืœ MS-NRPC (Netlogon Remote Protocol) ืžืืคืฉืจ ืœืš ืœื—ื–ื•ืจ ืœื”ืฉืชืžืฉ ื‘ื—ื™ื‘ื•ืจ RPC ืœืœื ื”ืฆืคื ื” ื‘ืขืช ื”ื—ืœืคืช ื ืชื•ื ื™ ืื™ืžื•ืช. ืœืื—ืจ ืžื›ืŸ, ืชื•ืงืฃ ื™ื›ื•ืœ ืœื ืฆืœ ืคื’ื ื‘ืืœื’ื•ืจื™ืชื AES-CFB8 ื›ื“ื™ ืœื–ื™ื™ืฃ ื”ืชื—ื‘ืจื•ืช ืžื•ืฆืœื—ืช. ื‘ืžืžื•ืฆืข, ื ื“ืจืฉื™ื ื›-256 ื ื™ืกื™ื•ื ื•ืช ื–ื™ื•ืฃ ื›ื“ื™ ืœื”ื™ื›ื ืก ื›ืžื ื”ืœ ืžืขืจื›ืช. ื›ื“ื™ ืœื‘ืฆืข ืชืงื™ืคื”, ืื™ื ืš ืฆืจื™ืš ืฉื™ื”ื™ื” ืœืš ื—ืฉื‘ื•ืŸ ืขื•ื‘ื“ ื‘ื‘ืงืจ ืชื—ื•ื; ื ื™ืชืŸ ืœื‘ืฆืข ื ื™ืกื™ื•ื ื•ืช ื–ื™ื•ืฃ ื‘ืืžืฆืขื•ืช ืกื™ืกืžื” ืฉื’ื•ื™ื”. ื‘ืงืฉืช ื”ืื™ืžื•ืช ืฉืœ NTLM ืชื•ืคื ื” ืืœ ื‘ืงืจ ื”ืชื—ื•ื, ืืฉืจ ื™ื—ื–ื™ืจ ืกื™ืจื•ื‘ ื’ื™ืฉื”, ืืš ื”ืชื•ืงืฃ ื™ื›ื•ืœ ืœื–ื™ื™ืฃ ืืช ื”ืชื’ื•ื‘ื” ื”ื–ื•, ื•ื”ืžืขืจื›ืช ื”ืžื•ืชืงืคืช ืชื—ืฉื‘ ืฉื”ื›ื ื™ืกื” ื”ื™ื™ืชื” ืžื•ืฆืœื—ืช.

ื‘ืกืžื‘ื”, ื”ืคื’ื™ืขื•ืช ืžื•ืคื™ืขื” ืจืง ื‘ืžืขืจื›ื•ืช ืฉืื™ื ืŸ ืžืฉืชืžืฉื•ืช ื‘ื”ื’ื“ืจืช "ืขืจื•ืฅ ืฉืจืช = ื›ืŸ", ืฉื”ื™ื ื‘ืจื™ืจืช ื”ืžื—ื“ืœ ืžืื– ืกืžื‘ื” 4.8. ื‘ืคืจื˜, ืžืขืจื›ื•ืช ืขื ื”ื’ื“ืจื•ืช "ืขืจื•ืฅ ืฉืจืช = ืœื" ื•"ืขืจื•ืฅ ืฉืจืช = ืื•ื˜ื•ืžื˜ื™", ื”ืžืืคืฉืจื•ืช ืœืกืžื‘ื” ืœื”ืฉืชืžืฉ ื‘ืื•ืชื ืคื’ืžื™ื ื‘ืืœื’ื•ืจื™ืชื AES-CFB8 ื›ืžื• ื‘-Windows.

ื‘ืขืช ืฉื™ืžื•ืฉ ื‘ื”ืคื ื™ื” ืฉื”ื•ื›ื ื” ืขืœ ื™ื“ื™ Windows ืœื ืฆืœ ืื‘ ื˜ื™ืคื•ืก, ื‘ืกืžื‘ื” ืจืง ื”ืงืจื™ืื” ืœ-ServerAuthenticate3 ืขื•ื‘ื“ืช, ื•ื”ืคืขื•ืœื” ืฉืœ ServerPasswordSet2 ื ื›ืฉืœืช (ื”ื ื™ืฆื•ืœ ื“ื•ืจืฉ ื”ืชืืžื” ืœืกืžื‘ื”). ืขืœ ื”ื‘ื™ืฆื•ืขื™ื ืฉืœ ื ื™ืฆื•ืœ ื—ืœื•ืคื™ (1, 2, 3, 4) ืฉื•ื ื“ื‘ืจ ืœื ืžื“ื•ื•ื—. ืืชื” ื™ื›ื•ืœ ืœืขืงื•ื‘ ืื—ืจ ื”ืชืงืคื•ืช ืขืœ ืžืขืจื›ื•ืช ืขืœ ื™ื“ื™ ื ื™ืชื•ื— ื ื•ื›ื—ื•ืช ืฉืœ ืขืจื›ื™ื ื”ืžื–ื›ื™ืจื™ื ServerAuthenticate3 ื•- ServerPasswordSet ื‘ื™ื•ืžื ื™ ื‘ื™ืงื•ืจืช Samba.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”