一、处理vsftpd漏洞 【vsftpd安全漏洞(CVE-2021-30047)】
二、处理ntp漏洞 【NTPMode6检测漏洞【原理扫描】】
cp /etc/ntp.conf /etc/ntp.conf.bak20250109
echo '### fix NTPMode6 BUG' >> /etc/ntp.conf
echo 'server ip_address' >> /etc/ntp.conf
echo 'restrict -6 default nomodify notrap noquery' >> /etc/ntp.conf
echo 'restrict :: default nomodify notrap noquery' >> /etc/ntp.conf
echo 'restrict default nomodify notrap noquery' >> /etc/ntp.conf
echo 'disable monitor' >> /etc/ntp.conf
tail /etc/ntp.conf
systemctl restart ntpd
systemctl status ntpd
参考:https://blog.csdn.net/weixin_36808034/article/details/132454921 《修复NTP mode-6查询漏洞》
三、处理tomcat漏洞
cd xx/lib
vim catalina.jar的 ServerInfo.properties的:
server.info=Apache Tomcat/8.5.99
server.number=8.5.99.0
server.built=Feb 14 2024 22:52:13 UTC
与开发沟通,发版更新 lib文件和 xxx4a-0.0.1-SNAPSHOT.jar
四、清理oracle文件-随记 (xml、trc、trm、aud文件)
磁盘容量告警,可清理下面的文件: