΢Èí7Ô¶à¸öÇå¾²Îó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-07-11

Îó²î¸ÅÊö


΢ÈíÓÚÖܶþÐû²¼ÁË7ÔÂÇå¾²¸üв¹¶¡£¡£¡£¡£¬£¬£¬£¬£¬ÐÞ¸´ÁË79¸ö´Ó¼òÆÓµÄÓÕÆ­¹¥»÷µ½Ô¶³ÌÖ´ÐдúÂëµÄÇå¾²ÎÊÌ⣬£¬£¬£¬£¬²úÆ·Éæ¼°.NET Framework¡¢ASP.NET¡¢Azure¡¢Azure DevOps¡¢Internet Explorer¡¢Microsoft Browsers¡¢Microsoft Exchange Server¡¢Microsoft Graphics Component¡¢Microsoft Office¡¢Microsoft Office SharePoint¡¢Microsoft Scripting Engine¡¢Microsoft Windows¡¢Microsoft Windows DNS¡¢Open Source Software¡¢Servicing Stack Updates¡¢SQL Server¡¢Visual Studio¡¢Windows Kernel¡¢Windows Media¡¢Windows RDPÒÔ¼°Windows Shell¡£¡£¡£¡£


ʹÓÃÉÏÊöÎó²î£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÌáÉýȨÏÞ£¬£¬£¬£¬£¬ÓÕÆ­£¬£¬£¬£¬£¬ÈƹýÇå¾²¹¦Ð§ÏÞÖÆ£¬£¬£¬£¬£¬»ñÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬Ö´ÐÐÔ¶³Ì´úÂë»òÌᳫ¾Ü¾øÐ§À͹¥»÷µÈ¡£¡£¡£¡£ÌáÐÑ¿í´óMicrosoftÓû§¾¡¿ìÏÂÔØ²¹¶¡¸üУ¬£¬£¬£¬£¬×èÖ¹Òý·¢Îó²îÏà¹ØµÄÍøÂçÇå¾²ÊÂÎñ¡£¡£¡£¡£


CVE 񅧏

ÑÏÖØË®Æ½

CVE ÎÊÌâ

Îó²îÐÎò

²úÆ·

CVE-2019-1113

ÑÏÖØ

.NET Framework Ô¶³Ì´úÂëÖ´ÐÐÎó²î

µ±Èí¼þÎÞ·¨¼ì²éÎļþµÄÔ´±ê¼Çʱ£¬£¬£¬£¬£¬.NETÈí¼þÖб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬Ôò¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§¿ÉÄܱÈʹÓÃÖÎÀíÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°ÏìҪС¡£¡£¡£¡£

ʹÓôËÎó²îÐèÒªÓû§Ê¹ÓÃÊÜÓ°ÏìµÄ.NET Framework°æ±¾·­¿ªÌØÖÆÎļþ¡£¡£¡£¡£ÔÚµç×ÓÓʼþ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ý½«ÌØÖÆÎļþ·¢Ë͸øÓû§²¢ÓÕʹÓû§·­¿ª¸ÃÎļþÀ´Ê¹ÓôËÎó²î¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ý¸üÕý.NET Framework¼ì²éÎļþÔ´±ê¼ÇµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

.NET Framework

CVE-2019-1072

ÑÏÖØ

Azure DevOps Server and Team Foundation Server Ô¶³Ì´úÂëÖ´ÐÐÎó²î

µ±Azure DevOps ServerºÍTeam Foundation Server£¨TFS£©²»×¼È·µØ´¦Öóͷ£Óû§ÊäÈëʱ£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚDevOps»òTFSЧÀÍÕÊ»§µÄÉÏÏÂÎÄÖÐÖ´ÐÐÄ¿µÄЧÀÍÆ÷ÉϵĴúÂë¡£¡£¡£¡£

ҪʹÓôËÎó²î£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔ½«ÌØÖÆÎļþÌá½»¸øÊÜÓ°ÏìµÄЧÀÍÆ÷¡£¡£¡£¡£ ÈôÊÇÔÊÐí¶ÔÊÜÓ°ÏìµÄЧÀÍÆ÷ÉϵÄÏîÄ¿¾ÙÐÐÄäÃû»á¼û£¬£¬£¬£¬£¬Ôò¹¥»÷Õß²»ÐèÒªÉí·ÝÑéÖ¤¡£¡£¡£¡£

´Ë¸üиüÕýÁËDevOps ServerºÍTFS´¦Öóͷ£Ä³Ð©ÎļþÀàÐ͵ķ½·¨¡£¡£¡£¡£

Azure DevOps

CVE-2019-1063

ÑÏÖØ

Internet Explorer ÄÚ´æÆÆËðÎó²î

µ±Internet Explorer²»×¼È·µØ»á¼ûÄÚ´æÖеŤ¾ßʱ£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬Ôò¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£

¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýInternet ExplorerʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔͨ¹ýÌí¼Ó¿ÉÄÜʹÓôËÎó²îµÄÌØÖÆÄÚÈÝÀ´Ê¹ÓÃÊÜѬȾµÄÍøÕ¾»ò½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¿ÉÊÇ£¬£¬£¬£¬£¬ÔÚËùÓÐÇéÐÎÏ£¬£¬£¬£¬£¬¹¥»÷Õß¶¼ÎÞ·¨Ç¿ÆÈÓû§Éó²é¹¥»÷Õß¿ØÖƵÄÄÚÈÝ¡£¡£¡£¡£Ïà·´£¬£¬£¬£¬£¬¹¥»÷Õß±ØÐè˵·þÓû§½ÓÄÉÐж¯£¬£¬£¬£¬£¬Í¨³£ÊÇͨ¹ýµç×ÓÓʼþ»ò¼´Ê±ÐÂÎÅÖеÄÓջ󣬣¬£¬£¬£¬»òÕßÈÃÓû§·­¿ªÍ¨¹ýµç×ÓÓʼþ·¢Ë͵ĸ½¼þ¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄInternet Explorer´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Internet Explorer

CVE-2019-1104

ÑÏÖØ

Microsoft Browser ÄÚ´æÆÆËðÎó²î

Microsoftä¯ÀÀÆ÷»á¼ûÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖÔÊÐí¹¥»÷ÕßÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬Ôò¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£

¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoftä¯ÀÀÆ÷ʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔͨ¹ýÌí¼Ó¿ÉÄÜʹÓôËÎó²îµÄÌØÖÆÄÚÈÝÀ´Ê¹ÓÃÊÜѬȾµÄÍøÕ¾»ò½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¿ÉÊÇ£¬£¬£¬£¬£¬ÔÚËùÓÐÇéÐÎÏ£¬£¬£¬£¬£¬¹¥»÷Õß¶¼ÎÞ·¨Ç¿ÆÈÓû§Éó²é¹¥»÷Õß¿ØÖƵÄÄÚÈÝ¡£¡£¡£¡£Ïà·´£¬£¬£¬£¬£¬¹¥»÷Õß±ØÐè˵·þÓû§½ÓÄÉÐж¯£¬£¬£¬£¬£¬Í¨³£ÊÇͨ¹ýµç×ÓÓʼþ»ò¼´Ê±ÐÂÎÅÖеÄÓջ󣬣¬£¬£¬£¬»òÈÃËûÃÇ·­¿ªµç×ÓÓʼþ¸½¼þ¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄMicrosoftä¯ÀÀÆ÷´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Microsoft Browsers

CVE-2019-1102

ÑÏÖØ

GDI+ Ô¶³Ì´úÂëÖ´ÐÐÎó²î

WindowsͼÐÎ×°±¸½Ó¿Ú£¨GDI£©´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§¿ÉÄܱÈʹÓÃÖÎÀíÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°ÏìҪС¡£¡£¡£¡£

¹¥»÷Õß¿ÉÒÔͨ¹ý¶àÖÖ·½·¨Ê¹ÓôËÎó²î¡£¡£¡£¡£ 

´ËÇå¾²¸üÐÂͨ¹ý¸üÕýWindows GDI´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Microsoft Graphics Component

CVE-2019-1056

ÑÏÖØ

Scripting Engine ÄÚ´æÆÆËðÎó²î

¾ç±¾ÒýÇæÔÚInternet ExplorerÖд¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýInternet ExplorerʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔÔÚ³ÐÔØIE·ºÆðÒýÇæµÄÓ¦ÓóÌÐò»òMicrosoft OfficeÎĵµÖÐǶÈë±ê¼ÇΪ¡°Çå¾²³õʼ»¯¡±µÄActiveX¿Ø¼þ¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔʹÓÃÊܵ½ÆÆËðµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÄÜʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ýÐ޸ľ籾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1059

ÑÏÖØ

Scripting Engine ÄÚ´æÆÆËðÎó²î

¾ç±¾ÒýÇæÔÚInternet ExplorerÖд¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýInternet ExplorerʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔÔÚ³ÐÔØIE·ºÆðÒýÇæµÄÓ¦ÓóÌÐò»òMicrosoft OfficeÎĵµÖÐǶÈë±ê¼ÇΪ¡°Çå¾²³õʼ»¯¡±µÄActiveX¿Ø¼þ¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔʹÓÃÊܵ½ÆÆËðµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÄÜʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ýÐ޸ľ籾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î

Microsoft Scripting Engine

CVE-2019-1062

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔʹÓÃÊܵ½ÆÆËðµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÄÜʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄChakra¾ç±¾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1092

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔʹÓÃÊܵ½ÆÆËðµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÄÜʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄChakra¾ç±¾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1103

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔʹÓÃÊܵ½ÆÆËðµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÄÜʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄChakra¾ç±¾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1106

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔʹÓÃÊܵ½ÆÆËðµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÄÜʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄChakra¾ç±¾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1107

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoft EdgeʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔʹÓÃÊܵ½ÆÆËðµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÄÜʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄChakra¾ç±¾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1001

ÑÏÖØ

Scripting Engine ÄÚ´æÆÆËðÎó²î

¾ç±¾ÒýÇæ´¦Öóͷ£Microsoftä¯ÀÀÆ÷ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýMicrosoftä¯ÀÀÆ÷ʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔÔÚ³ÐÔØä¯ÀÀÆ÷·ºÆðÒýÇæµÄÓ¦ÓóÌÐò»òMicrosoft OfficeÎĵµÖÐǶÈë±ê¼ÇΪ¡°¿ÉÇå¾²³õʼ»¯¡±µÄActiveX¿Ø¼þ¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔʹÓÃÊܵ½ÆÆËðµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÄÜʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ýÐ޸ľ籾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-1004

ÑÏÖØ

Scripting Engine ÄÚ´æÆÆËðÎó²î

¾ç±¾ÒýÇæÔÚInternet ExplorerÖд¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬£¬£¬£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ýInternet ExplorerʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔÔÚ³ÐÔØIE·ºÆðÒýÇæµÄÓ¦ÓóÌÐò»òMicrosoft OfficeÎĵµÖÐǶÈë±ê¼ÇΪ¡°Çå¾²³õʼ»¯¡±µÄActiveX¿Ø¼þ¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔʹÓÃÊܵ½ÆÆËðµÄÍøÕ¾ºÍ½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÄÜʹÓôËÎó²îµÄÌØÖÆÄÚÈÝ¡£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ýÐ޸ľ籾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Microsoft Scripting Engine

CVE-2019-0785

ÑÏÖØ

Windows DHCP Server Ô¶³Ì´úÂëÖ´ÐÐÎó²î

µ±¹¥»÷Õß½«ÌØÖÆÊý¾Ý°ü·¢Ë͵½DHCP¹ÊÕÏ×ªÒÆÐ§ÀÍÆ÷ʱ£¬£¬£¬£¬£¬Windows Server DHCPЧÀÍÖб£´æÄÚ´æËð»µÎó²î¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÄÜÔÚDHCP¹ÊÕÏ×ªÒÆÐ§ÀÍÆ÷ÉÏÔËÐÐí§Òâ´úÂ룬£¬£¬£¬£¬»òµ¼ÖÂDHCPЧÀÍÎÞÏìÓ¦¡£¡£¡£¡£

ҪʹÓôËÎó²î£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔ½«ÌØÖÆÊý¾Ý°ü·¢Ë͵½DHCPЧÀÍÆ÷¡£¡£¡£¡£¿ÉÊÇ£¬£¬£¬£¬£¬±ØÐ轫DHCPЧÀÍÆ÷ÉèÖÃΪ¹ÊÕÏ×ªÒÆÄ£Ê½²Å»ªÊ¹¹¥»÷Àֳɡ£¡£¡£¡£

´ËÇå¾²¸üÐÂͨ¹ý¸üÕýDHCP¹ÊÕÏ×ªÒÆÐ§ÀÍÆ÷´¦Öóͷ£ÍøÂçÊý¾Ý°üµÄ·½·¨À´½â¾öÎó²î¡£¡£¡£¡£

Microsoft Windows

ADV990001

ÑÏÖØ

Latest Servicing Stack Updates

ÕâÊÇÿ¸ö²Ù×÷ϵͳµÄ×îÐÂЧÀÍ¿ÍÕ»¸üÐÂÁÐ±í¡£¡£¡£¡£Ã¿µ±Ðû²¼ÐµķþÎñ¿ÍÕ»¸üÐÂʱ£¬£¬£¬£¬£¬½«¸üдËÁÐ±í¡£¡£¡£¡£×°ÖÃ×îеÄЧÀÍ¿ÍÕ»¸üкÜÊÇÖ÷Òª¡£¡£¡£¡£

Servicing Stack Updates


ÐÞ¸´½¨Òé


ÏÖÔÚ£¬£¬£¬£¬£¬Î¢Èí¹Ù·½ÒѾ­Ðû²¼²¹¶¡ÐÞ¸´ÁËÉÏÊöÎó²î£¬£¬£¬£¬£¬½¨ÒéÓû§ÊµÊ±È·ÈÏÊÇ·ñÊܵ½Îó²îÓ°Ï죬£¬£¬£¬£¬¾¡¿ì½ÓÄÉÐÞ²¹²½·¥£¬£¬£¬£¬£¬ÒÔ×èֹDZÔÚµÄÇå¾²Íþв¡£¡£¡£¡£ÏëÒª¾ÙÐиüУ¬£¬£¬£¬£¬Ö»Ðèתµ½ÉèÖáú¸üкÍÇå¾²¡úWindows ¸üСú¼ì²é¸üУ¬£¬£¬£¬£¬»òÕßÒ²¿ÉÒÔͨ¹ýÊÖ¶¯¾ÙÐиüС£¡£¡£¡£


²Î¿¼Á´½Ó


https://portal.msrc.microsoft.com/en-us/security-guidance