΢Èí11Ô¶à¸öÇå¾²Îó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-11-13

Îó²î¸ÅÊö


΢ÈíÓÚÖܶþÐû²¼ÁË11ÔÂÇå¾²¸üв¹¶¡£¬£¬£¬£¬£¬£¬Ðû²¼ÁË74¸öÎó²îµÄ¸üкÍ2¸öͨ¸æ¡£¡£¡£¡£¡£¡£¡£ÔÚÕâЩÎó²îÖУ¬£¬£¬£¬£¬£¬ÆäÖÐ13¸öΪÑÏÖØ¼¶±ð¡£¡£¡£¡£¡£¡£¡£


ʹÓÃÉÏÊöÎó²î£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÌáÉýȨÏÞ£¬£¬£¬£¬£¬£¬ÓÕÆ­£¬£¬£¬£¬£¬£¬ÈƹýÇå¾²¹¦Ð§ÏÞÖÆ£¬£¬£¬£¬£¬£¬»ñÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬£¬Ö´ÐÐÔ¶³Ì´úÂë»òÌᳫ¾Ü¾øÐ§À͹¥»÷µÈ¡£¡£¡£¡£¡£¡£¡£ÌáÐÑ¿í´óMicrosoftÓû§¾¡¿ìÏÂÔØ²¹¶¡¸üУ¬£¬£¬£¬£¬£¬×èÖ¹Òý·¢Îó²îÏà¹ØµÄÍøÂçÇå¾²ÊÂÎñ¡£¡£¡£¡£¡£¡£¡£


ÆäÖаüÀ¨IE¾ç±¾ÒýÇæÖеÄÒ»¸ö0day¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²îÊÇCVE-2019-1429£¬£¬£¬£¬£¬£¬ÓëIE¾ç±¾ÒýÇæ´¦Öóͷ£Äڴ湤¾ßµÄ·½·¨ÓйØ£¬£¬£¬£¬£¬£¬¿Éµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐУ¬£¬£¬£¬£¬£¬¸ÃÎó²î²»µ«Ó°ÏìÁËIEä¯ÀÀÆ÷£¬£¬£¬£¬£¬£¬»¹Ó°ÏìÁËOffice Suite¡£¡£¡£¡£¡£¡£¡£ÈôÊÇÓû§ÔÊÐíÏÔʾ¸»Îı¾£¨ÀýÈç»ùÓÚWebµÄiframe£©£¬£¬£¬£¬£¬£¬Ôò¹¥»÷Õß¿ÉÒÔͨ¹ý¶ñÒâOfficeÎĵµÔÚÓû§µÄϵͳÉÏÖ´ÐжñÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²îÒÑÔÚÒ°Íâ±»¹¥»÷ÕßʹÓᣡ£¡£¡£¡£¡£¡£


³ýÁËÇå¾²¸üÐÂÖ®Í⣬£¬£¬£¬£¬£¬Microsoft»¹Ðû²¼ÁËÁ½¸öͨ¸æ£º


ADV190024- Microsoft¿ÉÐÅÆ½Ì¨Ä£¿£¿£¿é£¨TPM£©ÖеÄÎó²îÖ¸ÄÏ



ADV990001- ×îÐÂЧÀÍ¿ÍÕ»¸üÐÂ


ÒÔÏÂÊÇÒѽâ¾öµÄÑÏÖØÎó²îµÄÍêÕûÁбíÒÔ¼°2019Äê11Ô²¹¶¡ÐÇÆÚ¶þ¸üÐÂÖеĽ¨Òé¡£¡£¡£¡£¡£¡£¡£


CVE 񅧏

ÑÏÖØË®Æ½

CVEÎÊÌâ

Îó²îÐÎò

²úÆ·

CVE-2019-1373

ÑÏÖØ

Microsoft ExchangeÔ¶³ÌÖ´ÐдúÂëÎó²î

ͨ¹ý PowerShell ¶ÔÔªÊý¾Ý¾ÙÐз´ÐòÁл¯µÄÀú³ÌÖУ¬£¬£¬£¬£¬£¬Microsoft Exchange Öб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÒѵÇÈÎÃü»§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£

ʹÓôËÎó²îÐèÒªÓû§Í¨¹ý PowerShell ÔËÐÐ cmdlet¡£¡£¡£¡£¡£¡£¡£

Microsoft ExchangeЧÀÍÆ÷

CVE-2019-1441

ÑÏÖØ

Win32kͼÐÎÔ¶³ÌÖ´ÐдúÂëÎó²î

µ± Windows ×ÖÌå¿â²»×¼È·µØ´¦Öóͷ£¾­ÌØÊâÉè¼ÆµÄǶÈë×ÖÌåʱ£¬£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°Ïìϵͳ¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС¡£¡£¡£¡£¡£¡£¡£

¹¥»÷Õß¿ÉÒÔͨ¹ý¶àÖÖ·½·¨Ê¹ÓôËÎó²î¡£¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚ Web µÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÍøÕ¾£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÎÞ·¨Ç¿ÖÆÓû§Éó²éÓɹ¥»÷Õß¿ØÖƵÄÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£Ïà·´£¬£¬£¬£¬£¬£¬¹¥»÷Õß±ØÐèÓÕʹÓû§½ÓÄÉÐж¯£¬£¬£¬£¬£¬£¬ÒªÁìͨ³£ÊÇÈÃÓû§µ¥»÷µç×ÓÓʼþ»ò Instant Messenger ÐÂÎÅÖеÄÁ´½ÓÒÔʹÓû§Á´½Óµ½¹¥»÷ÕßµÄÍøÕ¾£¬£¬£¬£¬£¬£¬»òÕßÈÃÓû§·­¿ªÍ¨¹ýµç×ÓÓʼþ·¢Ë͵ĸ½¼þ¡£¡£¡£¡£¡£¡£¡£

ÔÚÎļþ¹²Ïí¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜ»áÌṩһ¸öÖ¼ÔÚʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÎĵµ£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§·­¿ª¸ÃÎĵµÎļþ¡£¡£¡£¡£¡£¡£¡£

MicrosoftͼÐÎ×é¼þ

CVE-2019-1419

ÑÏÖØ

OpenType×ÖÌåÆÊÎöÔ¶³Ì´úÂëÖ´ÐÐÎó²î

µ± Windows Adobe Type Manager ¿âδ׼ȷ´¦Öóͷ£¾­ÌØÊâÉè¼ÆµÄ OpenType ×ÖÌåʱ£¬£¬£¬£¬£¬£¬Microsoft Windows Öб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¹ØÓÚ³ý Windows 10 Ö®ÍâµÄËùÓÐϵͳ£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔ¶³ÌÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£¡£¹ØÓÚÔËÐÐ Windows 10 µÄϵͳ£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔʹÓÃÊÜÏÞµÄÌØÈ¨ºÍ¹¦Ð§ÔÚ AppContainer ɳºÐÉÏÏÂÎÄÖÐÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£

¹¥»÷Õß¿ÉÄÜͨ¹ý¶àÖÖ·½·¨Ê¹ÓôËÎó²î£¬£¬£¬£¬£¬£¬°üÀ¨ÓÕʹÓû§·­¿ª¾­ÌØÊâÉè¼ÆµÄÎĵµ»ò»á¼û°üÀ¨¾­ÌØÊâÉè¼ÆµÄǶÈë OpenType ×ÖÌåµÄÍøÒ³¡£¡£¡£¡£¡£¡£¡£

MicrosoftͼÐÎ×é¼þ

CVE-2019-1426

ÑÏÖØ

¾ç±¾ÒýÇæÄÚ´æËð»µÎó²î

¾ç±¾ÒýÇæÔÚ Microsoft Edge£¨»ùÓÚ HTML£©Öд¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨Ëð»µÄÚ´æ¡£¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓøÃÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß±ã¿É¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚ Web µÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ý Microsoft Edge£¨»ùÓÚ HTML£©Ê¹ÓÃÕâЩÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÍøÕ¾£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÔâµ½ÈëÇÖµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£

Microsoft¾ç±¾ÒýÇæ

CVE-2019-1429

ÑÏÖØ

¾ç±¾ÒýÇæÄÚ´æËð»µÎó²î

¾ç±¾ÒýÇæÔÚ Internet Explorer Öд¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨Ëð»µÄÚ´æ¡£¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓøÃÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß±ã¿É¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚ Web µÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ý Internet Explorer ʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÍøÕ¾£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÒ²¿ÉÄÜÔÚÍÐ¹Ü IE ·ºÆðÒýÇæµÄÓ¦ÓóÌÐò»ò Microsoft Office ÎĵµÖÐǶÈë±êÓС°Çå¾²³õʼ»¯¡±µÄ ActiveX ¿Ø¼þ¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÔâµ½ÈëÇÖµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£

Microsoft¾ç±¾ÒýÇæ

CVE-2019-1427

ÑÏÖØ

¾ç±¾ÒýÇæÄÚ´æËð»µÎó²î

¾ç±¾ÒýÇæÔÚ Microsoft Edge£¨»ùÓÚ HTML£©Öд¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨Ëð»µÄÚ´æ¡£¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓøÃÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß±ã¿É¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚ Web µÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ý Microsoft Edge£¨»ùÓÚ HTML£©Ê¹ÓÃÕâЩÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÍøÕ¾£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÔâµ½ÈëÇÖµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÄÚÈÝ¡£¡£¡£¡£¡£¡£¡£

Microsoft¾ç±¾ÒýÇæ

ADV990001

ÑÏÖØ

×îÐÂЧÀÍ¿ÍÕ»¸üÐÂ

ÕâÊÇÿ¸ö²Ù×÷ϵͳµÄ×îÐÂЧÀÍ¿ÍÕ»¸üÐÂÁбí¡£¡£¡£¡£¡£¡£¡£Ã¿µ±ÓÐÐÂЧÀÍ¿ÍÕ»¸üÐÂÐû²¼Ê±£¬£¬£¬£¬£¬£¬´ËÁбí¾Í»á¾ÙÐиüС£¡£¡£¡£¡£¡£¡£ÇëÎñ±Ø×°ÖÃ×îÐÂЧÀÍ¿ÍÕ»¸üС£¡£¡£¡£¡£¡£¡£

ЧÀÍ¿ÍÕ»¸üÐÂ

CVE-2019-1398

ÑÏÖØ

Windows Hyper-VÔ¶³ÌÖ´ÐдúÂëÎó²î

µ±Ö÷»úЧÀÍÆ÷É쵀 Windows Hyper-V ÎÞ·¨×¼È·ÑéÖ¤À´±ö²Ù×÷ϵͳÉϾ­Éí·ÝÑéÖ¤µÄÓû§µÄÊäÈëʱ£¬£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£ÈôҪʹÓôËÎó²î£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚÀ´±ö²Ù×÷ϵͳÉÏÔËÐо­ÌØÊâÉè¼ÆµÄ¿Éʹ Hyper-V Ö÷»ú²Ù×÷ϵͳִÐÐí§Òâ´úÂëµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÖ÷»ú²Ù×÷ϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£

Windows Hyper-V

CVE-2019-0719

ÑÏÖØ

Hyper-VÔ¶³ÌÖ´ÐдúÂëÎó²î

µ±Ö÷»úЧÀÍÆ÷É쵀 Windows Hyper-V ÍøÂç½»Á÷»úÎÞ·¨×¼È·ÑéÖ¤À´±ö²Ù×÷ϵͳÉϵÄÒÑͨ¹ýÉí·ÝÑéÖ¤µÄÓû§µÄÊäÈëʱ£¬£¬£¬£¬£¬£¬±£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£ÈôҪʹÓôËÎó²î£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚÀ´±ö²Ù×÷ϵͳÉÏÔËÐо­ÌØÊâÉè¼ÆµÄ¿Éʹ Hyper-V Ö÷»ú²Ù×÷ϵͳִÐÐí§Òâ´úÂëµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÖ÷»ú²Ù×÷ϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£

Windows Hyper-V

CVE-2019-1397

ÑÏÖØ

Windows Hyper-VÔ¶³ÌÖ´ÐдúÂëÎó²î

µ±Ö÷»úЧÀÍÆ÷É쵀 Windows Hyper-V ÎÞ·¨×¼È·ÑéÖ¤À´±ö²Ù×÷ϵͳÉϾ­Éí·ÝÑéÖ¤µÄÓû§µÄÊäÈëʱ£¬£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£ÈôҪʹÓôËÎó²î£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚÀ´±ö²Ù×÷ϵͳÉÏÔËÐо­ÌØÊâÉè¼ÆµÄ¿Éʹ Hyper-V Ö÷»ú²Ù×÷ϵͳִÐÐí§Òâ´úÂëµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÖ÷»ú²Ù×÷ϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£

Windows Hyper-V

CVE-2019-0721

ÑÏÖØ

Hyper-VÔ¶³ÌÖ´ÐдúÂëÎó²î

µ±Ö÷»úЧÀÍÆ÷É쵀 Windows Hyper-V ÍøÂç½»Á÷»úÎÞ·¨×¼È·ÑéÖ¤À´±ö²Ù×÷ϵͳÉϵÄÒÑͨ¹ýÉí·ÝÑéÖ¤µÄÓû§µÄÊäÈëʱ£¬£¬£¬£¬£¬£¬±£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£ÈôҪʹÓôËÎó²î£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚÀ´±ö²Ù×÷ϵͳÉÏÔËÐо­ÌØÊâÉè¼ÆµÄ¿Éʹ Hyper-V Ö÷»ú²Ù×÷ϵͳִÐÐí§Òâ´úÂëµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÖ÷»ú²Ù×÷ϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£

Windows Hyper-V

CVE-2019-1389

ÑÏÖØ

Windows Hyper-VÔ¶³ÌÖ´ÐдúÂëÎó²î

µ±Ö÷»úЧÀÍÆ÷É쵀 Windows Hyper-V ÎÞ·¨×¼È·ÑéÖ¤À´±ö²Ù×÷ϵͳÉϾ­Éí·ÝÑéÖ¤µÄÓû§µÄÊäÈëʱ£¬£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£ÈôҪʹÓôËÎó²î£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚÀ´±ö²Ù×÷ϵͳÉÏÔËÐо­ÌØÊâÉè¼ÆµÄ¿Éʹ Hyper-V Ö÷»ú²Ù×÷ϵͳִÐÐí§Òâ´úÂëµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÖ÷»ú²Ù×÷ϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£

Windows Hyper-V

CVE-2019-1430

ÑÏÖØ

Microsoft Windows Media FoundationÔ¶³ÌÖ´ÐдúÂëÎó²î

µ± Windows Media Foundation ²»×¼È·µØÆÊÎö¾­ÌØÊâÉè¼ÆµÄ QuickTime ýÌåÎļþʱ£¬£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÄÜ»á»ñµÃÓëÍâµØÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС¡£¡£¡£¡£¡£¡£¡£

ΪÁËʹÓøÃÎó²î£¬£¬£¬£¬£¬£¬¹¥»÷Õß±ØÐèÏòÓû§·¢ËÍÒ»¸ö¾­ÌØÊâÉè¼ÆµÄ QuickTime Îļþ£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§·­¿ª¸ÃÎļþ¡£¡£¡£¡£¡£¡£¡£·­¿ªºó£¬£¬£¬£¬£¬£¬¶ñÒâ QuickTime Îļþ½«ÔÚÄ¿µÄϵͳÉÏÖ´Ðй¥»÷ÕßÑ¡ÔñµÄ´úÂë¡£¡£¡£¡£¡£¡£¡£

WindowsýÌå²¥·ÅÆ÷


ÐÞ¸´½¨Òé


ÏÖÔÚ£¬£¬£¬£¬£¬£¬Î¢Èí¹Ù·½ÒѾ­Ðû²¼²¹¶¡ÐÞ¸´ÁËÉÏÊöÎó²î£¬£¬£¬£¬£¬£¬½¨ÒéÓû§ÊµÊ±È·ÈÏÊÇ·ñÊܵ½Îó²îÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¾¡¿ì½ÓÄÉÐÞ²¹²½·¥£¬£¬£¬£¬£¬£¬ÒÔ×èֹDZÔÚµÄÇå¾²Íþв¡£¡£¡£¡£¡£¡£¡£ÏëÒª¾ÙÐиüУ¬£¬£¬£¬£¬£¬Ö»Ðèתµ½ÉèÖáú¸üкÍÇå¾²¡úWindows ¸üСú¼ì²é¸üУ¬£¬£¬£¬£¬£¬»òÕßÒ²¿ÉÒÔͨ¹ýÊÖ¶¯¾ÙÐиüС£¡£¡£¡£¡£¡£¡£


²Î¿¼Á´½Ó


https://portal.msrc.microsoft.com/zh-cn/security-guidance