΢Èí8Ô²¹¶¡ÈÕ¸ßΣÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2018-08-15Îó²î±àºÅºÍ¼¶±ð
CVE-2018-8350µÈ£¨Ïê¼ûÏÂÎÄ£©£¬£¬£¬£¬£¬£¬ÑÏÖØ£¬£¬£¬£¬£¬£¬CVSS·ÖÖµ¹Ù·½Î´ÆÀ¶¨
Ó°Ïì°æ±¾
²úÆ·Éæ¼°.NET Framework¡¢Adobe Flash Player¡¢Device Guard¡¢Internet Explorer¡¢Microsoft Browsers¡¢Microsoft Edge¡¢Microsoft Exchange Server¡¢Microsoft Graphics Component¡¢Microsoft Office¡¢Microsoft Scripting Engine¡¢Microsoft Windows¡¢Microsoft Windows PDF¡¢SQL Server¡¢Windows Authentication Methods¡¢Windows COM¡¢Windows Diagnostic Hub¡¢Windows Installer¡¢Windows Kernel¡¢Windows NDIS¡¢Windows RNDISÒÔ¼°Windows Shell¡£¡£¡£¡£¡£¡£
Îó²î¸ÅÊö
΢ÈíÓÚÖܶþÐû²¼ÁË8ÔÂÇå¾²¸üв¹¶¡£¬£¬£¬£¬£¬£¬ÐÞ¸´ÁË63¸ö´Ó¼òÆÓµÄÓÕÆ¹¥»÷µ½Ô¶³ÌÖ´ÐдúÂëµÄÇå¾²ÎÊÌ⣬£¬£¬£¬£¬£¬ÆäÖÐ11¸öÑÏÖØÎó²î£¬£¬£¬£¬£¬£¬ÐèÒª¸ß¶È¹Ø×¢¡£¡£¡£¡£¡£¡£
1£®Windows PDFÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2018-8350
Windows PDF´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓøÃÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬£¬ÄÇô¹¥»÷Õß±ã¿É¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£
2£®Microsoft ExcelÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2018-8375
Microsoft Excel´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬£¬ÄÇô¹¥»÷Õ߾ͿÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС¡£¡£¡£¡£¡£¡£
3£®Microsoft PowerPointÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2018-8376
Microsoft PowerPoint´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬£¬ÄÇô¹¥»÷Õ߾ͿÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС¡£¡£¡£¡£¡£¡£
4£®Microsoft ExcelÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2018-8379
Microsoft Excel Èí¼þ´¦Öóͷ£ÄÚ´æÖеŤ¾ßµÄ·½·¨±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬£¬ÄÇô¹¥»÷Õ߾ͿÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС.
5£®Microsoft SQL ServerÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2018-8273
Microsoft SQL Server Öб£´æ»º³åÇøÒç³öÎó²î£¬£¬£¬£¬£¬£¬Õ⽫ÔÊÐí¹¥»÷ÕßÔÚÊÜÓ°ÏìµÄϵͳÉÏÔ¶³ÌÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚ SQL Server Êý¾Ý¿âÒýÇæÐ§ÀÍÕÊ»§µÄÉÏÏÂÎÄÖÐÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£
6 £®MicrosoftͼÐÎÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2018-8344
Windows ×ÖÌå¿â´¦Öóͷ£Ç¶Èë×ÖÌåµÄ·½·¨±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС¡£¡£¡£¡£¡£¡£
7£®LNKÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2018-8345
Microsoft Windows´¦Öóͷ£.LNK ÎļþµÄ·½·¨±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÄÜ»á»ñµÃÓëÍâµØÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС¡£¡£¡£¡£¡£¡£
8£®GDI Ô¶³ÌÖ´ÐдúÂëÎó²îCVE-2018-8397
Windows ͼÐÎ×°±¸½Ó¿Ú (GDI) ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÄÜ»á¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС¡£¡£¡£¡£¡£¡£
9£®LNKÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2018-8346
Microsoft Windows´¦Öóͷ£.LNK ÎļþµÄ·½·¨±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÄÜ»á»ñµÃÓëÍâµØÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС¡£¡£¡£¡£¡£¡£
10£®Microsoft COM for WindowsÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2018-8349
Windows for Microsoft COM ×é¼þ´¦Öóͷ£ÐòÁл¯×Ö·û´®Ê±±£´æÐòÁл¯Îó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔʹÓÃ¾ÌØÊâÉè¼ÆµÄÎļþ»ò¾ç±¾Ö´ÐвÙ×÷¡£¡£¡£¡£¡£¡£ÔÚµç×ÓÓʼþ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜͨ¹ýÏòÓû§·¢ËÍ¾ÌØÊâÉè¼ÆµÄÎļþ²¢ÓÕµ¼Óû§·¿ª¸ÃÎļþÒÔ¹¥»÷Îó²î¡£¡£¡£¡£¡£¡£ÔÚ»ùÓÚ Web µÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÍйÜÍøÕ¾£¨»òʹÓýÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈݵÄÔâµ½ÈëÇÖµÄÍøÕ¾£©£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨¾ÌØÊâÉè¼ÆµÄÎļþÒÔ¹¥»÷Îó²î¡£¡£¡£¡£¡£¡£¿ÉÊÇ£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÎÞ·¨Ç¿ÆÈÓû§»á¼û´ËÀàÍøÕ¾¡£¡£¡£¡£¡£¡£Ïà·´£¬£¬£¬£¬£¬£¬¹¥»÷Õß±ØÐèÓÕµ¼Óû§µ¥»÷Á´½Ó£¬£¬£¬£¬£¬£¬ÒªÁìͨ³£ÊÇͨ¹ýµç×ÓÓʼþ»ò¼´Ê±ÐÂΞÙÐÐÓÕÆ£¬£¬£¬£¬£¬£¬È»ºóÓÕµ¼Óû§·¿ª¾ÌØÊâÉè¼ÆµÄÎļþ¡£¡£¡£¡£¡£¡£
11£®Microsoft PowerPointÔ¶³ÌÖ´ÐдúÂëÎó²îCVE-2018-8376
Microsoft PowerPoint´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬£¬ÄÇô¹¥»÷Õ߾ͿÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС¡£¡£¡£¡£¡£¡£
ÐÞ¸´½¨Òé
΢Èí¹Ù·½ÒѾÐû²¼¸üв¹¶¡£¬£¬£¬£¬£¬£¬Çëʵʱ¾ÙÐв¹¶¡¸üС£¡£¡£¡£¡£¡£
¹Ù·½Á´½Ó
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2018-8350
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2018-8375
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2018-8376
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2018-8379
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2018-8273
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2018-8344
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2018-8345
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2018-8397
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2018-8346
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2018-8349
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2018-8414
²Î¿¼Á´½Ó