΢Èí10Ô¶à¸öÇå¾²Îó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-10-10

Îó²î¸ÅÊö


΢ÈíÓÚÖܶþÐû²¼ÁË10ÔÂÇå¾²¸üв¹¶¡£¬£¬£¬£¬ £¬£¬£¬£¬ÐÞ¸´ÁË61¸ö´Ó¼òÆÓµÄÓÕÆ­¹¥»÷µ½Ô¶³ÌÖ´ÐдúÂëµÄÇå¾²ÎÊÌ⣬£¬£¬£¬ £¬£¬£¬£¬²úÆ·Éæ¼°Azure¡¢Internet Explorer¡¢Microsoft Browsers¡¢Microsoft Devices¡¢Microsoft Dynamics¡¢Microsoft Edge¡¢Microsoft Graphics Component¡¢Microsoft JET Database Engine¡¢Microsoft Office¡¢Microsoft Office SharePoint¡¢Microsoft Scripting Engine¡¢Microsoft Windows¡¢Open Source Software¡¢Secure Boot¡¢Servicing Stack Updates¡¢SQL Server¡¢Windows Hyper-V¡¢Windows IIS¡¢Windows Installer¡¢Windows Kernel¡¢Windows NTLM¡¢Windows RDPÒÔ¼°Windows Update Stack¡£¡£¡£¡£¡£¡£¡£¡£


ʹÓÃÉÏÊöÎó²î£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÌáÉýȨÏÞ£¬£¬£¬£¬ £¬£¬£¬£¬ÓÕÆ­£¬£¬£¬£¬ £¬£¬£¬£¬ÈƹýÇå¾²¹¦Ð§ÏÞÖÆ£¬£¬£¬£¬ £¬£¬£¬£¬»ñÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬ £¬£¬£¬£¬Ö´ÐÐÔ¶³Ì´úÂë»òÌᳫ¾Ü¾øÐ§À͹¥»÷µÈ¡£¡£¡£¡£¡£¡£¡£¡£ÌáÐÑ¿í´óMicrosoftÓû§¾¡¿ìÏÂÔØ²¹¶¡¸üУ¬£¬£¬£¬ £¬£¬£¬£¬×èÖ¹Òý·¢Îó²îÏà¹ØµÄÍøÂçÇå¾²ÊÂÎñ¡£¡£¡£¡£¡£¡£¡£¡£


CVE 񅧏

ÑÏÖØË®Æ½

CVE ÎÊÌâ

Îó²îÐÎò

²úÆ·

CVE-2019-1372

ÑÏÖØ

Azure App Service Ô¶³Ì´úÂëÖ´ÐÐÎó²î

µ±Azure StackÔÚ½«ÄÚ´æ¸´ÖÆµ½»º³åÇøÖ®Ç°ÎÞ·¨¼ì²é»º³åÇøµÄ³¤¶Èʱ£¬£¬£¬£¬ £¬£¬£¬£¬±£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÄÜÔÊÐíÓû§ÔËÐеķÇÌØÈ¨¹¦Ð§ÔÚNT AUTHORITY \ systemÉÏÏÂÎÄÖÐÖ´ÐдúÂ룬£¬£¬£¬ £¬£¬£¬£¬´Ó¶øÌÓ±ÜÁËɳÏä¡£¡£¡£¡£¡£¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ýÈ·±£Azure StackÕûÀíÓû§ÊäÈëÀ´½â¾öÎó²î¡£¡£¡£¡£¡£¡£¡£¡£

Azure

CVE-2019-1060

ÑÏÖØ

MS XML Ô¶³Ì´úÂëÖ´ÐÐÎó²î

µ±Microsoft XML Core Services MSXMLÆÊÎöÆ÷´¦Öóͷ£Óû§ÊäÈëʱ£¬£¬£¬£¬ £¬£¬£¬£¬±£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¡£ ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔ¶³ÌÔËÐжñÒâ´úÂ룬£¬£¬£¬ £¬£¬£¬£¬ÒÔ¿ØÖÆÓû§µÄϵͳ¡£¡£¡£¡£¡£¡£¡£¡£

ҪʹÓôËÎó²î£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýÍøÂçä¯ÀÀÆ÷ŲÓÃMSXMLµÄÌØÖÆÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£ ¿ÉÊÇ£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷ÕßÎÞ·¨Ç¿ÆÈÓû§»á¼û´ËÀàÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£ Ïà·´£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õßͨ³£±ØÐè˵·þÓû§µ¥»÷µç×ÓÓʼþ»ò¼´Ê±ÐÂÎÅÖеÄÁ´½Ó£¬£¬£¬£¬ £¬£¬£¬£¬È»ºó½«Óû§´øµ½ÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£ µ±Internet ExplorerÆÊÎöXMLÄÚÈÝʱ£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔ¶³ÌÔËÐжñÒâ´úÂëÒÔ¿ØÖÆÓû§µÄϵͳ¡£¡£¡£¡£¡£¡£¡£¡£

´Ë¸üÐÂͨ¹ý¸üÕýMSXMLÆÊÎöÆ÷ÈçÄÇÀïÖÃÓû§ÊäÈëÀ´½â¾ö´ËÎó²î¡£¡£¡£¡£¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1307

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÖÐÄÚ´æÖеŤ¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬ £¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¡£¡£È»ºó£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜ»á×°ÖóÌÐò¡£¡£¡£¡£¡£¡£¡£¡£Éó²é£¬£¬£¬£¬ £¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬ £¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÊÜѬȾµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄChakra¾ç±¾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾ö´ËÎó²î¡£¡£¡£¡£¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1308

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÖÐÄÚ´æÖеŤ¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬ £¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¡£¡£È»ºó£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜ»á×°ÖóÌÐò¡£¡£¡£¡£¡£¡£¡£¡£Éó²é£¬£¬£¬£¬ £¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬ £¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÊÜѬȾµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄChakra¾ç±¾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾ö´ËÎó²î¡£¡£¡£¡£¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1238

ÑÏÖØ

VBScript Ô¶³Ì´úÂëÖ´ÐÐÎó²î

VBScriptÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬ £¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¡£¡£È»ºó£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜ»á×°ÖóÌÐò¡£¡£¡£¡£¡£¡£¡£¡£Éó²é£¬£¬£¬£¬ £¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýInternet ExplorerʹÓøÃÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬ £¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜÔÚ³ÐÔØIE·ºÆðÒýÇæµÄÓ¦ÓóÌÐò»òMicrosoft OfficeÎĵµÖÐǶÈë±ê¼ÇΪ¡°³õʼ»¯Çå¾²¡±µÄActiveX¿Ø¼þ¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÊÜѬȾµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ýÐ޸ľ籾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾ö´ËÎó²î¡£¡£¡£¡£¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1239

ÑÏÖØ

VBScript Ô¶³Ì´úÂëÖ´ÐÐÎó²î

VBScriptÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬ £¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¡£¡£È»ºó£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜ»á×°ÖóÌÐò¡£¡£¡£¡£¡£¡£¡£¡£Éó²é£¬£¬£¬£¬ £¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýInternet ExplorerʹÓøÃÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬ £¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜÔÚ³ÐÔØIE·ºÆðÒýÇæµÄÓ¦ÓóÌÐò»òMicrosoft OfficeÎĵµÖÐǶÈë±ê¼ÇΪ¡°³õʼ»¯Çå¾²¡±µÄActiveX¿Ø¼þ¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÊÜѬȾµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ýÐ޸ľ籾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾ö´ËÎó²î¡£¡£¡£¡£¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1335

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÖÐÄÚ´æÖеŤ¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬ £¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¡£¡£È»ºó£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜ»á×°ÖóÌÐò¡£¡£¡£¡£¡£¡£¡£¡£Éó²é£¬£¬£¬£¬ £¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬ £¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÊÜѬȾµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄChakra¾ç±¾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾ö´ËÎó²î¡£¡£¡£¡£¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1366

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÖÐÄÚ´æÖеŤ¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬ £¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¡£¡£È»ºó£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜ»á×°ÖóÌÐò¡£¡£¡£¡£¡£¡£¡£¡£Éó²é£¬£¬£¬£¬ £¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬ £¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÊÜѬȾµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄChakra¾ç±¾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾ö´ËÎó²î¡£¡£¡£¡£¡£¡£¡£¡£

Microsoft Scripting Engine

ADV990001

ÑÏÖØ

Latest Servicing Stack Updates

ÕâÊÇÿ¸ö²Ù×÷ϵͳµÄ×îÐÂЧÀÍ¿ÍÕ»¸üеÄÁÐ±í¡£¡£¡£¡£¡£¡£¡£¡£ ÿµ±Ðû²¼ÐµÄЧÀÍ¿ÍÕ»¸üÐÂʱ£¬£¬£¬£¬ £¬£¬£¬£¬´ËÁÐ±í¶¼»á¸üС£¡£¡£¡£¡£¡£¡£¡£ Ö÷ÒªµÄÊÇ×°ÖÃ×îеÄЧÀÍ¿ÍÕ»¸üС£¡£¡£¡£¡£¡£¡£¡£

Servicing Stack Updates

CVE-2019-1333

ÑÏÖØ

Remote Desktop Client Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Óû§ÅþÁ¬µ½¶ñÒâЧÀÍÆ÷ʱ£¬£¬£¬£¬ £¬£¬£¬£¬WindowsÔ¶³Ì×ÀÃæ¿Í»§¶ËÖн«±£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¡£ ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÅþÁ¬¿Í»§¶ËµÄÅÌËã»úÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£ È»ºó£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜ»á×°ÖóÌÐò¡£¡£¡£¡£¡£¡£¡£¡£ Éó²é£¬£¬£¬£¬ £¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£» »ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£¡£

ҪʹÓôËÎó²î£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷ÕßÐèÒª¿ØÖÆÐ§ÀÍÆ÷£¬£¬£¬£¬ £¬£¬£¬£¬È»ºóÓÕʹÓû§ÅþÁ¬µ½¸ÃЧÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£¡£ ¹¥»÷ÕßÎÞ·¨Ç¿ÆÈÓû§ÅþÁ¬µ½¶ñÒâЧÀÍÆ÷£¬£¬£¬£¬ £¬£¬£¬£¬ËûÃÇÐèҪͨ¹ýÉç½»¹¤³Ì£¬£¬£¬£¬ £¬£¬£¬£¬DNSÖж¾»òʹÓÃÖÐÐÄÈË£¨MITM£©ÊÖÒÕÓÕʹÓû§¾ÙÐÐÅþÁ¬¡£¡£¡£¡£¡£¡£¡£¡£ ¹¥»÷Õß»¹¿ÉÄÜÆÆËðÕýµ±Ð§ÀÍÆ÷£¬£¬£¬£¬ £¬£¬£¬£¬ÔÚÆäÉÏÍйܶñÒâ´úÂ룬£¬£¬£¬ £¬£¬£¬£¬È»ºóÆÚ´ýÓû§ÅþÁ¬¡£¡£¡£¡£¡£¡£¡£¡£

´Ë¸üÐÂͨ¹ý¸üÕýWindowsÔ¶³Ì×ÀÃæ¿Í»§¶Ë´¦Öóͷ£ÅþÁ¬ÇëÇóµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£¡£¡£¡£¡£

Windows RDP


ÐÞ¸´½¨Òé


ÏÖÔÚ£¬£¬£¬£¬ £¬£¬£¬£¬Î¢Èí¹Ù·½ÒѾ­Ðû²¼²¹¶¡ÐÞ¸´ÁËÉÏÊöÎó²î£¬£¬£¬£¬ £¬£¬£¬£¬½¨ÒéÓû§ÊµÊ±È·ÈÏÊÇ·ñÊܵ½Îó²îÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¡£


¾¡¿ì½ÓÄÉÐÞ²¹²½·¥£¬£¬£¬£¬ £¬£¬£¬£¬ÒÔ×èֹDZÔÚµÄÇå¾²Íþв¡£¡£¡£¡£¡£¡£¡£¡£ÏëÒª¾ÙÐиüУ¬£¬£¬£¬ £¬£¬£¬£¬Ö»Ðèתµ½ÉèÖáú¸üкÍÇå¾²¡úWindows ¸üСú¼ì²é¸üУ¬£¬£¬£¬ £¬£¬£¬£¬»òÕßÒ²¿ÉÒÔͨ¹ýÊÖ¶¯¾ÙÐиüС£¡£¡£¡£¡£¡£¡£¡£


²Î¿¼Á´½Ó


https://portal.msrc.microsoft.com/en-us/security-guidance