΢Èí7Ô¶à¸ö°²È«·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-07-11

·ì϶¸ÅÊö


΢ÈíÓÚÖܶþ°ä²¼ÁË7Ô°²È«¸üв¹¶¡ £¬½¨¸´ÁË79¸ö´Óµ¥Ò»µÄºýŪ¹¥»÷µ½Ô¶³ÌÖ´ÐдúÂëµÄ°²È«ÎÊÌâ £¬²úÆ·Éæ¼°.NET Framework¡¢ASP.NET¡¢Azure¡¢Azure DevOps¡¢Internet Explorer¡¢Microsoft Browsers¡¢Microsoft Exchange Server¡¢Microsoft Graphics Component¡¢Microsoft Office¡¢Microsoft Office SharePoint¡¢Microsoft Scripting Engine¡¢Microsoft Windows¡¢Microsoft Windows DNS¡¢Open Source Software¡¢Servicing Stack Updates¡¢SQL Server¡¢Visual Studio¡¢Windows Kernel¡¢Windows Media¡¢Windows RDPÒÔ¼°Windows Shell¡£


ÀûÓÃÉÏÊö·ì϶ £¬¹¥»÷ÕßÄܹ»ÌáÉýȨÏÞ £¬ºýŪ £¬Èƹý°²È«Ö°ÄÜÏÞ¶È £¬»ñÈ¡Ãô¸ÐÐÅÏ¢ £¬Ö´ÐÐÔ¶³Ì´úÂë»òÌáÒ黨¾ø·þÎñ¹¥»÷µÈ¡£ÌáÐÑ¿í´óMicrosoftÓû§¾¡¿ìÏÂÔØ²¹¶¡¸üР£¬Ô¤·ÀÒý·¢·ì϶ÓйصÄÍøÂ簲ȫÊÂÎñ¡£


CVE 񅧏

ÑϳÁˮƽ

CVE ±êÌâ

·ìϼûèÊö

²úÆ·

CVE-2019-1113

ÑϳÁ

.NET Framework Ô¶³Ì´úÂëÖ´Ðзì϶

µ±Èí¼þÎÞ·¨²é³­ÎļþµÄÔ´ÏóÕ÷ʱ £¬.NETÈí¼þÖдæÔÚÔ¶³ÌÖ´ÐдúÂë·ì϶¡£

³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÔËÐÐËÁÒâ´úÂë¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£ÕÊ»§±»ÅäÖÃΪռÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§¿ÉÄܱÈʹÓÃÖÎÀíÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°ÏìÒªÓס£

ÀûÓô˷ì϶±ØÒªÓû§Ê¹ÓÃÊÜÓ°ÏìµÄ.NET Framework°æ±¾´ò¿ªÌØÔìÎļþ¡£ÔÚµç×ÓÓʼþ¹¥»÷Çé¾°ÖÐ £¬¹¥»÷ÕßÄܹ»Í¨¹ý½«ÌØÔìÎļþ·¢Ë͸øÓû§²¢ÓÕʹÓû§´ò¿ª¸ÃÎļþÀ´ÀûÓô˷ì϶¡£

´Ë°²È«¸üÐÂͨ¹ý¸üÕý.NET Framework²é³­ÎļþÔ´ÏóÕ÷µÄ·½Ê½À´½â¾ö·ì϶¡£

.NET Framework

CVE-2019-1072

ÑϳÁ

Azure DevOps Server and Team Foundation Server Ô¶³Ì´úÂëÖ´Ðзì϶

µ±Azure DevOps ServerºÍTeam Foundation Server£¨TFS£©²»ÕýÈ·µØ´¦ÖÃÓû§ÊäÈëʱ £¬´æÔÚÔ¶³ÌÖ´ÐдúÂë·ì϶¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»ÔÚDevOps»òTFS·þÎñÕÊ»§µÄ¸ßµÍÎÄÖÐÖ´ÐÐÖ¸±ê·þÎñÆ÷ÉϵĴúÂë¡£

ÒªÀûÓô˷ì϶ £¬¹¥»÷ÕßÄܹ»½«ÌØÔìÎļþÌá½»¸øÊÜÓ°ÏìµÄ·þÎñÆ÷¡£ ÈôÊÇÔÊÐí¶ÔÊÜÓ°ÏìµÄ·þÎñÆ÷ÉϵÄÏîÄ¿½øÐÐÄäÃû½Ó¼û £¬Ôò¹¥»÷Õß²»±ØÒªÉí·ÝÑéÖ¤¡£

´Ë¸üиüÕýÁËDevOps ServerºÍTFS´¦ÖÃijЩÎļþÀàÐ͵ķ½Ê½¡£

Azure DevOps

CVE-2019-1063

ÑϳÁ

Internet Explorer ÄÚ´æ·ÛËé·ì϶

µ±Internet Explorer²»ÕýÈ·µØ½Ó¼ûÄÚ´æÖеĶÔÏóʱ £¬´æÔÚÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

¹¥»÷Õß¿ÉÄÜÕ¼ÓÐÒ»¸öÖ¼ÔÚͨ¹ýInternet ExplorerÀûÓô˷ì϶µÄÌØÔìÍøÕ¾ £¬¶øºóÓÕʹÓû§²é¿´¸ÃÍøÕ¾¡£¹¥»÷Õß»¹Äܹ»Í¨¹ýÔö³¤¿ÉÄÜÀûÓô˷ì϶µÄÌØÔìÄÚÈÝÀ´ÀûÓÃÊÜϰȾµÄÍøÕ¾»ò½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¸æ°×µÄÍøÕ¾¡£µ«ÊÇ £¬ÔÚËùÓÐÇé¿öÏ £¬¹¥»÷Õß¶¼ÎÞ·¨Ç¿ÆÅ×û§²é¿´¹¥»÷Õß½ÚÔìµÄÄÚÈÝ¡£Ïà·´ £¬¹¥»÷Õß±ØÐë˵·þÓû§²ÉÈ¡Ðж¯ £¬Í¨³£ÊÇͨ¹ýµç×ÓÓʼþ»ò¼´Ê±ÐÂÎÅÖеÄÒýÓÕ £¬»òÕßÈÃÓû§´ò¿ªÃ÷¹ýµç×ÓÓʼþ·¢Ë͵ĸ½¼þ¡£

´Ë°²È«¸üÐÂͨ¹ýÅú¸ÄInternet Explorer´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶¡£

Internet Explorer

CVE-2019-1104

ÑϳÁ

Microsoft Browser ÄÚ´æ·ÛËé·ì϶

Microsoftä¯ÀÀÆ÷½Ó¼ûÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖÔÊÐí¹¥»÷ÕßÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

¹¥»÷Õß¿ÉÄÜÕ¼ÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoftä¯ÀÀÆ÷ÀûÓô˷ì϶µÄÌØÔìÍøÕ¾ £¬¶øºóÓÕʹÓû§²é¿´¸ÃÍøÕ¾¡£¹¥»÷Õß»¹Äܹ»Í¨¹ýÔö³¤¿ÉÄÜÀûÓô˷ì϶µÄÌØÔìÄÚÈÝÀ´ÀûÓÃÊÜϰȾµÄÍøÕ¾»ò½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¸æ°×µÄÍøÕ¾¡£µ«ÊÇ £¬ÔÚËùÓÐÇé¿öÏ £¬¹¥»÷Õß¶¼ÎÞ·¨Ç¿ÆÅ×û§²é¿´¹¥»÷Õß½ÚÔìµÄÄÚÈÝ¡£Ïà·´ £¬¹¥»÷Õß±ØÐë˵·þÓû§²ÉÈ¡Ðж¯ £¬Í¨³£ÊÇͨ¹ýµç×ÓÓʼþ»ò¼´Ê±ÐÂÎÅÖеÄÒýÓÕ £¬»òÈÃËûÃÇ´ò¿ªµç×ÓÓʼþ¸½¼þ¡£

´Ë°²È«¸üÐÂͨ¹ýÅú¸ÄMicrosoftä¯ÀÀÆ÷´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶¡£

Microsoft Browsers

CVE-2019-1102

ÑϳÁ

GDI+ Ô¶³Ì´úÂëÖ´Ðзì϶

WindowsͼÐÎÉ豸½Ó¿Ú£¨GDI£©´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£ÕÊ»§±»ÅäÖÃΪռÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§¿ÉÄܱÈʹÓÃÖÎÀíÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°ÏìÒªÓס£

¹¥»÷ÕßÄܹ»Í¨¹ý¶àÖÖ·½Ê½ÀûÓô˷ì϶¡£ 

´Ë°²È«¸üÐÂͨ¹ý¸üÕýWindows GDI´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶¡£

Microsoft Graphics Component

CVE-2019-1056

ÑϳÁ

Scripting Engine ÄÚ´æ·ÛËé·ì϶

¾ç±¾ÒýÇæÔÚInternet ExplorerÖд¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷Çé¾°ÖÐ £¬¹¥»÷Õß¿ÉÄÜÕ¼ÓÐÒ»¸öÖ¼ÔÚͨ¹ýInternet ExplorerÀûÓô˷ì϶µÄÌØÔìÍøÕ¾ £¬¶øºóÓÕʹÓû§²é¿´¸ÃÍøÕ¾¡£¹¥»÷Õß»¹Äܹ»ÔÚ³ÐÔØIE³öÏÖÒýÇæµÄÀûÓ÷¨Ê½»òMicrosoft OfficeÎĵµÖÐǶÈëÏóÕ÷Ϊ¡°°²È«³õʼ»¯¡±µÄActiveX¿Ø¼þ¡£¹¥»÷Õß»¹Äܹ»ÀûÓÃÊܵ½·ÛËéµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¸æ°×µÄÍøÕ¾¡£ÕâÐ©ÍøÕ¾¿ÉÄÜÔ̺¬¿ÉÄÜÀûÓô˷ì϶µÄÌØÔìÄÚÈÝ¡£

´Ë°²È«¸üÐÂͨ¹ýÅú¸Ä¾ç±¾ÒýÇæ´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶¡£

Microsoft Scripting Engine

CVE-2019-1059

ÑϳÁ

Scripting Engine ÄÚ´æ·ÛËé·ì϶

¾ç±¾ÒýÇæÔÚInternet ExplorerÖд¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷Çé¾°ÖÐ £¬¹¥»÷Õß¿ÉÄÜÕ¼ÓÐÒ»¸öÖ¼ÔÚͨ¹ýInternet ExplorerÀûÓô˷ì϶µÄÌØÔìÍøÕ¾ £¬¶øºóÓÕʹÓû§²é¿´¸ÃÍøÕ¾¡£¹¥»÷Õß»¹Äܹ»ÔÚ³ÐÔØIE³öÏÖÒýÇæµÄÀûÓ÷¨Ê½»òMicrosoft OfficeÎĵµÖÐǶÈëÏóÕ÷Ϊ¡°°²È«³õʼ»¯¡±µÄActiveX¿Ø¼þ¡£¹¥»÷Õß»¹Äܹ»ÀûÓÃÊܵ½·ÛËéµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¸æ°×µÄÍøÕ¾¡£ÕâÐ©ÍøÕ¾¿ÉÄÜÔ̺¬¿ÉÄÜÀûÓô˷ì϶µÄÌØÔìÄÚÈÝ¡£

´Ë°²È«¸üÐÂͨ¹ýÅú¸Ä¾ç±¾ÒýÇæ´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶

Microsoft Scripting Engine

CVE-2019-1062

ÑϳÁ

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Chakra¾ç±¾ÒýÇæ´¦ÖÃMicrosoft EdgeÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷Çé¾°ÖÐ £¬¹¥»÷Õß¿ÉÄÜÕ¼ÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeÀûÓô˷ì϶µÄÌØÔìÍøÕ¾ £¬¶øºóÓÕʹÓû§²é¿´¸ÃÍøÕ¾¡£¹¥»÷Õß»¹Äܹ»ÀûÓÃÊܵ½·ÛËéµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¸æ°×µÄÍøÕ¾¡£ÕâÐ©ÍøÕ¾¿ÉÄÜÔ̺¬¿ÉÄÜÀûÓô˷ì϶µÄÌØÔìÄÚÈÝ¡£

´Ë°²È«¸üÐÂͨ¹ýÅú¸ÄChakra¾ç±¾ÒýÇæ´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶¡£

Microsoft Scripting Engine

CVE-2019-1092

ÑϳÁ

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Chakra¾ç±¾ÒýÇæ´¦ÖÃMicrosoft EdgeÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷Çé¾°ÖÐ £¬¹¥»÷Õß¿ÉÄÜÕ¼ÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeÀûÓô˷ì϶µÄÌØÔìÍøÕ¾ £¬¶øºóÓÕʹÓû§²é¿´¸ÃÍøÕ¾¡£¹¥»÷Õß»¹Äܹ»ÀûÓÃÊܵ½·ÛËéµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¸æ°×µÄÍøÕ¾¡£ÕâÐ©ÍøÕ¾¿ÉÄÜÔ̺¬¿ÉÄÜÀûÓô˷ì϶µÄÌØÔìÄÚÈÝ¡£

´Ë°²È«¸üÐÂͨ¹ýÅú¸ÄChakra¾ç±¾ÒýÇæ´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶¡£

Microsoft Scripting Engine

CVE-2019-1103

ÑϳÁ

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Chakra¾ç±¾ÒýÇæ´¦ÖÃMicrosoft EdgeÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷Çé¾°ÖÐ £¬¹¥»÷Õß¿ÉÄÜÕ¼ÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeÀûÓô˷ì϶µÄÌØÔìÍøÕ¾ £¬¶øºóÓÕʹÓû§²é¿´¸ÃÍøÕ¾¡£¹¥»÷Õß»¹Äܹ»ÀûÓÃÊܵ½·ÛËéµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¸æ°×µÄÍøÕ¾¡£ÕâÐ©ÍøÕ¾¿ÉÄÜÔ̺¬¿ÉÄÜÀûÓô˷ì϶µÄÌØÔìÄÚÈÝ¡£

´Ë°²È«¸üÐÂͨ¹ýÅú¸ÄChakra¾ç±¾ÒýÇæ´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶¡£

Microsoft Scripting Engine

CVE-2019-1106

ÑϳÁ

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Chakra¾ç±¾ÒýÇæ´¦ÖÃMicrosoft EdgeÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷Çé¾°ÖÐ £¬¹¥»÷Õß¿ÉÄÜÕ¼ÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeÀûÓô˷ì϶µÄÌØÔìÍøÕ¾ £¬¶øºóÓÕʹÓû§²é¿´¸ÃÍøÕ¾¡£¹¥»÷Õß»¹Äܹ»ÀûÓÃÊܵ½·ÛËéµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¸æ°×µÄÍøÕ¾¡£ÕâÐ©ÍøÕ¾¿ÉÄÜÔ̺¬¿ÉÄÜÀûÓô˷ì϶µÄÌØÔìÄÚÈÝ¡£

´Ë°²È«¸üÐÂͨ¹ýÅú¸ÄChakra¾ç±¾ÒýÇæ´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶¡£

Microsoft Scripting Engine

CVE-2019-1107

ÑϳÁ

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Chakra¾ç±¾ÒýÇæ´¦ÖÃMicrosoft EdgeÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷Çé¾°ÖÐ £¬¹¥»÷Õß¿ÉÄÜÕ¼ÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeÀûÓô˷ì϶µÄÌØÔìÍøÕ¾ £¬¶øºóÓÕʹÓû§²é¿´¸ÃÍøÕ¾¡£¹¥»÷Õß»¹Äܹ»ÀûÓÃÊܵ½·ÛËéµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¸æ°×µÄÍøÕ¾¡£ÕâÐ©ÍøÕ¾¿ÉÄÜÔ̺¬¿ÉÄÜÀûÓô˷ì϶µÄÌØÔìÄÚÈÝ¡£

´Ë°²È«¸üÐÂͨ¹ýÅú¸ÄChakra¾ç±¾ÒýÇæ´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶¡£

Microsoft Scripting Engine

CVE-2019-1001

ÑϳÁ

Scripting Engine ÄÚ´æ·ÛËé·ì϶

¾ç±¾ÒýÇæ´¦ÖÃMicrosoftä¯ÀÀÆ÷ÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷Çé¾°ÖÐ £¬¹¥»÷Õß¿ÉÄÜÕ¼ÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoftä¯ÀÀÆ÷ÀûÓô˷ì϶µÄÌØÔìÍøÕ¾ £¬¶øºóÓÕʹÓû§²é¿´¸ÃÍøÕ¾¡£¹¥»÷Õß»¹Äܹ»ÔÚ³ÐÔØä¯ÀÀÆ÷³öÏÖÒýÇæµÄÀûÓ÷¨Ê½»òMicrosoft OfficeÎĵµÖÐǶÈëÏóÕ÷Ϊ¡°¿É°²È«³õʼ»¯¡±µÄActiveX¿Ø¼þ¡£¹¥»÷Õß»¹Äܹ»ÀûÓÃÊܵ½·ÛËéµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¸æ°×µÄÍøÕ¾¡£ÕâÐ©ÍøÕ¾¿ÉÄÜÔ̺¬¿ÉÄÜÀûÓô˷ì϶µÄÌØÔìÄÚÈÝ¡£

´Ë°²È«¸üÐÂͨ¹ýÅú¸Ä¾ç±¾ÒýÇæ´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶¡£

Microsoft Scripting Engine

CVE-2019-1004

ÑϳÁ

Scripting Engine ÄÚ´æ·ÛËé·ì϶

¾ç±¾ÒýÇæÔÚInternet ExplorerÖд¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷Çé¾°ÖÐ £¬¹¥»÷Õß¿ÉÄÜÕ¼ÓÐÒ»¸öÖ¼ÔÚͨ¹ýInternet ExplorerÀûÓô˷ì϶µÄÌØÔìÍøÕ¾ £¬¶øºóÓÕʹÓû§²é¿´¸ÃÍøÕ¾¡£¹¥»÷Õß»¹Äܹ»ÔÚ³ÐÔØIE³öÏÖÒýÇæµÄÀûÓ÷¨Ê½»òMicrosoft OfficeÎĵµÖÐǶÈëÏóÕ÷Ϊ¡°°²È«³õʼ»¯¡±µÄActiveX¿Ø¼þ¡£¹¥»÷Õß»¹Äܹ»ÀûÓÃÊܵ½·ÛËéµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¸æ°×µÄÍøÕ¾¡£ÕâÐ©ÍøÕ¾¿ÉÄÜÔ̺¬¿ÉÄÜÀûÓô˷ì϶µÄÌØÔìÄÚÈÝ¡£

´Ë°²È«¸üÐÂͨ¹ýÅú¸Ä¾ç±¾ÒýÇæ´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½À´½â¾ö·ì϶¡£

Microsoft Scripting Engine

CVE-2019-0785

ÑϳÁ

Windows DHCP Server Ô¶³Ì´úÂëÖ´Ðзì϶

µ±¹¥»÷Õß½«ÌØÔìÊý¾Ý°ü·¢Ë͵½DHCP¹ÊÕÏ×ªÒÆ·þÎñÆ÷ʱ £¬Windows Server DHCP·þÎñÖдæÔÚÄÚ´æ°Ü»µ·ì϶¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷Õß¿ÉÄÜÔÚDHCP¹ÊÕÏ×ªÒÆ·þÎñÆ÷ÉÏÔËÐÐËÁÒâ´úÂë £¬»òµ¼ÖÂDHCP·þÎñÎÞÏìÓ¦¡£

ÒªÀûÓô˷ì϶ £¬¹¥»÷ÕßÄܹ»½«ÌØÔìÊý¾Ý°ü·¢Ë͵½DHCP·þÎñÆ÷¡£µ«ÊÇ £¬±ØÐ뽫DHCP·þÎñÆ÷ÉèÖÃΪ¹ÊÕÏ×ªÒÆÄ£Ê½ÄÜÁ¦Ê¹¹¥»÷³É¹¦¡£

´Ë°²È«¸üÐÂͨ¹ý¸üÕýDHCP¹ÊÕÏ×ªÒÆ·þÎñÆ÷´¦ÖÃÍøÂçÊý¾Ý°üµÄ·½Ê½À´½â¾ö·ì϶¡£

Microsoft Windows

ADV990001

ÑϳÁ

Latest Servicing Stack Updates

ÕâÊÇÿ¸ö²Ù×÷ϵͳµÄ×îзþÎñ²Ö¿â¸üÐÂÁбí¡£Ã¿µ±°ä²¼ÐµķþÎñ²Ö¿â¸üÐÂʱ £¬½«¸üдËÁбí¡£×°ÖÃ×îеķþÎñ²Ö¿â¸üм«¶È³ÁÒª¡£

Servicing Stack Updates


½¨¸´½¨Òé


Ŀǰ £¬Î¢Èí¹Ù·½ÒѾ­°ä²¼²¹¶¡½¨¸´ÁËÉÏÊö·ì϶ £¬½¨ÒéÓû§ÊµÊ±È·ÈÏÊÇ·ñÊܵ½·ì϶ӰÏì £¬¾¡¿ì²ÉÈ¡½¨²¹´ëÊ© £¬ÒÔÔ¤·ÀDZÔڵݲȫÍþв¡£ÏëÒª½øÐиüР£¬Ö»Ðèתµ½ÉèÖáú¸üкͰ²È«¡úWindows ¸üСú²é³­¸üР£¬»òÕßÒ²Äܹ»Í¨¹ýÊÖ¶¯½øÐиüС£


²Î¿¼Á´½Ó


https://portal.msrc.microsoft.com/en-us/security-guidance