΢Èí9Ô²¹¶¡ÈÕÑϳÁ·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2018-09-12

·ì϶±àºÅºÍ¼¶±ð


Ïê¼ûϲ¿Áбí 


Ó°Ïì°æ±¾


NET Core¡¢.NET Framework¡¢Adobe Flash Player¡¢Azure¡¢Device Guard¡¢Internet Explorer¡¢Microsoft Edge¡¢Microsoft Graphics Component¡¢Microsoft Identity Services¡¢Microsoft JET Database Engine¡¢Microsoft Office¡¢Microsoft Scripting Engine¡¢Microsoft Windows¡¢Microsoft XML Core Services¡¢Windows Hyper-V¡¢Windows Kernel¡¢Windows Media¡¢Windows Shell¡¢Windows SMB ServerÒÔ¼°Windows Subsystem for Linux¡£


·ì϶¸ÅÊö


΢ÈíÓÚÖܶþ°ä²¼ÁË9Ô°²È«¸üв¹¶¡£¬½¨¸´ÁË64¸ö°²È«ÎÊÌâ£¬Éæ¼°20ÓàÖÖ²úÆ·£¬ÆäÖÐÑϳÁ·ì϶11¸ö£¬ÆäÖÐÔ̺¬Windows¹¤×÷ÖÎÀíÆ÷ 0day·ì϶¡£

·ì϶¾ßÌåÁбí£¬±êעΪºìÉ«µÄÊÇÑϳÁ·ì϶¡£


²úÆ·

CVE 񅧏

CVE ±êÌâ

.NET Framework

CVE-2018-8421

.NET Framework Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft Edge

CVE-2018-8464

Microsoft Edge PDF Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft Graphics Component

CVE-2018-8475

Windows Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft Graphics Component

CVE-2018-8332

Win32k Graphics Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft JET Database Engine

CVE-2018-8392

Microsoft JET Database Engine Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft JET Database Engine

CVE-2018-8393

Microsoft JET Database Engine Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft Office

CVE-2018-8430

Word PDF Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft Office

CVE-2018-8331

Microsoft Excel Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft XML Core Services

CVE-2018-8420

MS XML Ô¶³Ì´úÂëÖ´Ðзì϶

Windows Hyper-V

CVE-2018-0965

Windows Hyper-V Ô¶³Ì´úÂëÖ´Ðзì϶

Windows Hyper-V

CVE-2018-8439

Windows Hyper-V Ô¶³Ì´úÂëÖ´Ðзì϶

.NET Core

CVE-2018-8409

System.IO.Pipelines Denial of Service

Adobe Flash Player

ADV180023

September 2018 Adobe Flash °²È«¸üÐÂ

Azure

CVE-2018-8479

Azure IoT SDK ºýŪ·ì϶

Device Guard

CVE-2018-8449

Device Guard °²È«Ö°ÄÜÈÆ¹ý·ì϶

Internet Explorer

CVE-2018-8461

Internet Explorer ÄÚ´æ·ÛËé·ì϶

Internet Explorer

CVE-2018-8447

Internet Explorer ÄÚ´æ·ÛËé·ì϶

Internet Explorer

CVE-2018-8470

Internet Explorer °²È«Ö°ÄÜÈÆ¹ý·ì϶

Microsoft Edge

CVE-2018-8425

Microsoft Edge ºýŪ·ì϶

Microsoft Edge

CVE-2018-8366

Microsoft Edge ÐÅϢй¶·ì϶

Microsoft Edge

CVE-2018-8463

Microsoft Edge ÌØÈ¨ÌáÉý·ì϶

Microsoft Edge

CVE-2018-8469

Microsoft Edge ÌØÈ¨ÌáÉý·ì϶

Microsoft Graphics Component

CVE-2018-8422

Windows GDI ÐÅϢй¶·ì϶

Microsoft Graphics Component

CVE-2018-8424

Windows GDI ÐÅϢй¶·ì϶

Microsoft Graphics Component

CVE-2018-8433

Microsoft Graphics Component ÐÅϢй¶·ì϶

Microsoft Graphics Component

CVE-2018-8462

DirectX Graphics Kernel ÌØÈ¨ÌáÉý·ì϶

Microsoft Identity Services

CVE-2018-8269

OData »Ø¾ø·þÎñ·ì϶

Microsoft Office

CVE-2018-8426

Microsoft Office SharePoint XSS Vulnerability

Microsoft Office

CVE-2018-8428

Microsoft SharePoint ÌØÈ¨ÌáÉý·ì϶

Microsoft Office

CVE-2018-8429

Microsoft Excel ÐÅϢй¶·ì϶

Microsoft Office

CVE-2018-8431

Microsoft SharePoint ÌØÈ¨ÌáÉý·ì϶

Microsoft Office

CVE-2018-8474

Lync for Mac 2011 °²È«Ö°ÄÜÈÆ¹ý·ì϶

Microsoft Scripting Engine

CVE-2018-8315

Microsoft Scripting Engine ÐÅϢй¶·ì϶

Microsoft Scripting Engine

CVE-2018-8367

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Microsoft Scripting Engine

CVE-2018-8354

Scripting Engine ÄÚ´æ·ÛËé·ì϶

Microsoft Scripting Engine

CVE-2018-8391

Scripting Engine ÄÚ´æ·ÛËé·ì϶

Microsoft Scripting Engine

CVE-2018-8452

Scripting Engine ÐÅϢй¶·ì϶

Microsoft Scripting Engine

CVE-2018-8456

Scripting Engine ÄÚ´æ·ÛËé·ì϶

Microsoft Scripting Engine

CVE-2018-8457

Scripting Engine ÄÚ´æ·ÛËé·ì϶

Microsoft Scripting Engine

CVE-2018-8459

Scripting Engine ÄÚ´æ·ÛËé·ì϶

Microsoft Scripting Engine

CVE-2018-8465

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Microsoft Scripting Engine

CVE-2018-8466

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Microsoft Scripting Engine

CVE-2018-8467

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Microsoft Windows

CVE-2018-8271

Windows ÐÅϢй¶·ì϶

Microsoft Windows

CVE-2018-8410

Windows Registry ÌØÈ¨ÌáÉý·ì϶

Microsoft Windows

ADV180022

Windows »Ø¾ø·þÎñ·ì϶

Microsoft Windows

CVE-2018-8438

Windows Hyper-V »Ø¾ø·þÎñ·ì϶

Microsoft Windows

CVE-2018-8440

Windows ALPC ÌØÈ¨ÌáÉý·ì϶

Windows Hyper-V

CVE-2018-8434

Windows Hyper-V ÐÅϢй¶·ì϶

Windows Hyper-V

CVE-2018-8435

Windows Hyper-V °²È«Ö°ÄÜÈÆ¹ý·ì϶

Windows Hyper-V

CVE-2018-8436

Windows Hyper-V »Ø¾ø·þÎñ·ì϶

Windows Hyper-V

CVE-2018-8437

Windows Hyper-V »Ø¾ø·þÎñ·ì϶

Windows Kernel

CVE-2018-8336

Windows Kernel ÐÅϢй¶·ì϶

Windows Kernel

CVE-2018-8442

Windows Kernel ÐÅϢй¶·ì϶

Windows Kernel

CVE-2018-8443

Windows Kernel ÐÅϢй¶·ì϶

Windows Kernel

CVE-2018-8445

Windows Kernel ÐÅϢй¶·ì϶

Windows Kernel

CVE-2018-8446

Windows Kernel ÐÅϢй¶·ì϶

Windows Kernel

CVE-2018-8455

Windows Kernel ÌØÈ¨ÌáÉý·ì϶

Windows Media

CVE-2018-8419

Windows Kernel ÐÅϢй¶·ì϶

Windows Shell

CVE-2018-8468

Windows ÌØÈ¨ÌáÉý·ì϶

Windows SMB Server

CVE-2018-8335

Windows SMB »Ø¾ø·þÎñ·ì϶

Windows SMB Server

CVE-2018-8444

Windows SMB ÐÅϢй¶·ì϶

Windows Subsystem for Linux

CVE-2018-8337

Windows Subsystem for Linux °²È«Ö°ÄÜÈÆ¹ý·ì϶

Windows Subsystem for Linux

CVE-2018-8441

Windows Subsystem for Linux ÌØÈ¨ÌáÉý·ì϶


·ì϶ÑéÖ¤


ÔÝÎÞPOC\EXP£¬ÇëÆ¾¾Ý°æ±¾ºÅ¼ì²â


½¨¸´½¨Òé


΢Èí¹Ù·½ÒѾ­°ä²¼¸üв¹¶¡£¬Çëʵʱ½øÐв¹¶¡¸üÐÂ

https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/498f2484-a096-e811-a978-000d3a33c573


²Î¿¼Á´½Ó


https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/498f2484-a096-e811-a978-000d3a33c573