΢Èí11Ô¶à¸öÇå¾²Îó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-11-13

Îó²î¸ÅÊö


΢ÈíÓÚÖܶþÐû²¼ÁË11ÔÂÇå¾²¸üв¹¶¡£¬£¬£¬£¬£¬£¬£¬Ðû²¼ÁË74¸öÎó²îµÄ¸üкÍ2¸öͨ¸æ¡£¡£¡£¡£¡£¡£ÔÚÕâЩÎó²îÖУ¬£¬£¬£¬£¬£¬£¬ÆäÖÐ13¸öΪÑÏÖØ¼¶±ð¡£¡£¡£¡£¡£¡£


ʹÓÃÉÏÊöÎó²î£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÌáÉýȨÏÞ£¬£¬£¬£¬£¬£¬£¬ÓÕÆ­£¬£¬£¬£¬£¬£¬£¬ÈƹýÇå¾²¹¦Ð§ÏÞÖÆ£¬£¬£¬£¬£¬£¬£¬»ñÈ¡Ãô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬Ö´ÐÐÔ¶³Ì´úÂë»òÌᳫ¾Ü¾øÐ§À͹¥»÷µÈ¡£¡£¡£¡£¡£¡£ÌáÐÑ¿í´óMicrosoftÓû§¾¡¿ìÏÂÔØ²¹¶¡¸üУ¬£¬£¬£¬£¬£¬£¬×èÖ¹Òý·¢Îó²îÏà¹ØµÄÍøÂçÇå¾²ÊÂÎñ¡£¡£¡£¡£¡£¡£


ÆäÖаüÀ¨IE¾ç±¾ÒýÇæÖеÄÒ»¸ö0day¡£¡£¡£¡£¡£¡£¸ÃÎó²îÊÇCVE-2019-1429£¬£¬£¬£¬£¬£¬£¬ÓëIE¾ç±¾ÒýÇæ´¦Öóͷ£Äڴ湤¾ßµÄ·½·¨ÓйØ£¬£¬£¬£¬£¬£¬£¬¿Éµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐУ¬£¬£¬£¬£¬£¬£¬¸ÃÎó²î²»µ«Ó°ÏìÁËIEä¯ÀÀÆ÷£¬£¬£¬£¬£¬£¬£¬»¹Ó°ÏìÁËOffice Suite¡£¡£¡£¡£¡£¡£ÈôÊÇÓû§ÔÊÐíÏÔʾ¸»Îı¾£¨ÀýÈç»ùÓÚWebµÄiframe£©£¬£¬£¬£¬£¬£¬£¬Ôò¹¥»÷Õß¿ÉÒÔͨ¹ý¶ñÒâOfficeÎĵµÔÚÓû§µÄϵͳÉÏÖ´ÐжñÒâ´úÂë¡£¡£¡£¡£¡£¡£¸ÃÎó²îÒÑÔÚÒ°Íâ±»¹¥»÷ÕßʹÓᣡ£¡£¡£¡£¡£


³ýÁËÇå¾²¸üÐÂÖ®Í⣬£¬£¬£¬£¬£¬£¬Microsoft»¹Ðû²¼ÁËÁ½¸öͨ¸æ£º


ADV190024- Microsoft¿ÉÐÅÆ½Ì¨Ä£¿£¿£¿£¿£¿£¿é£¨TPM£©ÖеÄÎó²îÖ¸ÄÏ



ADV990001- ×îÐÂЧÀÍ¿ÍÕ»¸üÐÂ


ÒÔÏÂÊÇÒѽâ¾öµÄÑÏÖØÎó²îµÄÍêÕûÁбíÒÔ¼°2019Äê11Ô²¹¶¡ÐÇÆÚ¶þ¸üÐÂÖеĽ¨Òé¡£¡£¡£¡£¡£¡£


CVE 񅧏

ÑÏÖØË®Æ½

CVEÎÊÌâ

Îó²îÐÎò

²úÆ·

CVE-2019-1373

ÑÏÖØ

Microsoft ExchangeÔ¶³ÌÖ´ÐдúÂëÎó²î

ͨ¹ý PowerShell ¶ÔÔªÊý¾Ý¾ÙÐз´ÐòÁл¯µÄÀú³ÌÖУ¬£¬£¬£¬£¬£¬£¬Microsoft Exchange Öб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÒѵÇÈÎÃü»§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£

ʹÓôËÎó²îÐèÒªÓû§Í¨¹ý PowerShell ÔËÐÐ cmdlet¡£¡£¡£¡£¡£¡£

Microsoft ExchangeЧÀÍÆ÷

CVE-2019-1441

ÑÏÖØ

Win32kͼÐÎÔ¶³ÌÖ´ÐдúÂëÎó²î

µ± Windows ×ÖÌå¿â²»×¼È·µØ´¦Öóͷ£¾­ÌØÊâÉè¼ÆµÄǶÈë×ÖÌåʱ£¬£¬£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°Ïìϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС¡£¡£¡£¡£¡£¡£

¹¥»÷Õß¿ÉÒÔͨ¹ý¶àÖÖ·½·¨Ê¹ÓôËÎó²î¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚ Web µÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÍøÕ¾£¬£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÎÞ·¨Ç¿ÖÆÓû§Éó²éÓɹ¥»÷Õß¿ØÖƵÄÄÚÈÝ¡£¡£¡£¡£¡£¡£Ïà·´£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß±ØÐèÓÕʹÓû§½ÓÄÉÐж¯£¬£¬£¬£¬£¬£¬£¬ÒªÁìͨ³£ÊÇÈÃÓû§µ¥»÷µç×ÓÓʼþ»ò Instant Messenger ÐÂÎÅÖеÄÁ´½ÓÒÔʹÓû§Á´½Óµ½¹¥»÷ÕßµÄÍøÕ¾£¬£¬£¬£¬£¬£¬£¬»òÕßÈÃÓû§·­¿ªÍ¨¹ýµç×ÓÓʼþ·¢Ë͵ĸ½¼þ¡£¡£¡£¡£¡£¡£

ÔÚÎļþ¹²Ïí¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜ»áÌṩһ¸öÖ¼ÔÚʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÎĵµ£¬£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§·­¿ª¸ÃÎĵµÎļþ¡£¡£¡£¡£¡£¡£

MicrosoftͼÐÎ×é¼þ

CVE-2019-1419

ÑÏÖØ

OpenType×ÖÌåÆÊÎöÔ¶³Ì´úÂëÖ´ÐÐÎó²î

µ± Windows Adobe Type Manager ¿âδ׼ȷ´¦Öóͷ£¾­ÌØÊâÉè¼ÆµÄ OpenType ×ÖÌåʱ£¬£¬£¬£¬£¬£¬£¬Microsoft Windows Öб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¹ØÓÚ³ý Windows 10 Ö®ÍâµÄËùÓÐϵͳ£¬£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔ¶³ÌÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£¹ØÓÚÔËÐÐ Windows 10 µÄϵͳ£¬£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔʹÓÃÊÜÏÞµÄÌØÈ¨ºÍ¹¦Ð§ÔÚ AppContainer ɳºÐÉÏÏÂÎÄÖÐÖ´ÐдúÂë¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£

¹¥»÷Õß¿ÉÄÜͨ¹ý¶àÖÖ·½·¨Ê¹ÓôËÎó²î£¬£¬£¬£¬£¬£¬£¬°üÀ¨ÓÕʹÓû§·­¿ª¾­ÌØÊâÉè¼ÆµÄÎĵµ»ò»á¼û°üÀ¨¾­ÌØÊâÉè¼ÆµÄǶÈë OpenType ×ÖÌåµÄÍøÒ³¡£¡£¡£¡£¡£¡£

MicrosoftͼÐÎ×é¼þ

CVE-2019-1426

ÑÏÖØ

¾ç±¾ÒýÇæÄÚ´æËð»µÎó²î

¾ç±¾ÒýÇæÔÚ Microsoft Edge£¨»ùÓÚ HTML£©Öд¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨Ëð»µÄÚ´æ¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓøÃÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß±ã¿É¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚ Web µÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ý Microsoft Edge£¨»ùÓÚ HTML£©Ê¹ÓÃÕâЩÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÍøÕ¾£¬£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÔâµ½ÈëÇÖµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÄÚÈÝ¡£¡£¡£¡£¡£¡£

Microsoft¾ç±¾ÒýÇæ

CVE-2019-1429

ÑÏÖØ

¾ç±¾ÒýÇæÄÚ´æËð»µÎó²î

¾ç±¾ÒýÇæÔÚ Internet Explorer Öд¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨Ëð»µÄÚ´æ¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓøÃÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß±ã¿É¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚ Web µÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ý Internet Explorer ʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÍøÕ¾£¬£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÒ²¿ÉÄÜÔÚÍÐ¹Ü IE ·ºÆðÒýÇæµÄÓ¦ÓóÌÐò»ò Microsoft Office ÎĵµÖÐǶÈë±êÓС°Çå¾²³õʼ»¯¡±µÄ ActiveX ¿Ø¼þ¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÔâµ½ÈëÇÖµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÄÚÈÝ¡£¡£¡£¡£¡£¡£

Microsoft¾ç±¾ÒýÇæ

CVE-2019-1427

ÑÏÖØ

¾ç±¾ÒýÇæÄÚ´æËð»µÎó²î

¾ç±¾ÒýÇæÔÚ Microsoft Edge£¨»ùÓÚ HTML£©Öд¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨Ëð»µÄÚ´æ¡£¡£¡£¡£¡£¡£ÀÖ³ÉʹÓøÃÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß±ã¿É¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉËæºó×°ÖóÌÐò£»£»£»£»£»Éó²é¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»£»£»£»£»»òÕß½¨ÉèÓµÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£¡£¡£¡£

ÔÚ»ùÓÚ Web µÄ¹¥»÷ÇéÐÎÖУ¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÖ¼ÔÚͨ¹ý Microsoft Edge£¨»ùÓÚ HTML£©Ê¹ÓÃÕâЩÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÍøÕ¾£¬£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹¿ÉÄÜʹÓÃÔâµ½ÈëÇÖµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾¿ÉÄܰüÀ¨¿ÉÒÔʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÄÚÈÝ¡£¡£¡£¡£¡£¡£

Microsoft¾ç±¾ÒýÇæ

ADV990001

ÑÏÖØ

×îÐÂЧÀÍ¿ÍÕ»¸üÐÂ

ÕâÊÇÿ¸ö²Ù×÷ϵͳµÄ×îÐÂЧÀÍ¿ÍÕ»¸üÐÂÁбí¡£¡£¡£¡£¡£¡£Ã¿µ±ÓÐÐÂЧÀÍ¿ÍÕ»¸üÐÂÐû²¼Ê±£¬£¬£¬£¬£¬£¬£¬´ËÁбí¾Í»á¾ÙÐиüС£¡£¡£¡£¡£¡£ÇëÎñ±Ø×°ÖÃ×îÐÂЧÀÍ¿ÍÕ»¸üС£¡£¡£¡£¡£¡£

ЧÀÍ¿ÍÕ»¸üÐÂ

CVE-2019-1398

ÑÏÖØ

Windows Hyper-VÔ¶³ÌÖ´ÐдúÂëÎó²î

µ±Ö÷»úЧÀÍÆ÷É쵀 Windows Hyper-V ÎÞ·¨×¼È·ÑéÖ¤À´±ö²Ù×÷ϵͳÉϾ­Éí·ÝÑéÖ¤µÄÓû§µÄÊäÈëʱ£¬£¬£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÈôҪʹÓôËÎó²î£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚÀ´±ö²Ù×÷ϵͳÉÏÔËÐо­ÌØÊâÉè¼ÆµÄ¿Éʹ Hyper-V Ö÷»ú²Ù×÷ϵͳִÐÐí§Òâ´úÂëµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÖ÷»ú²Ù×÷ϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£

Windows Hyper-V

CVE-2019-0719

ÑÏÖØ

Hyper-VÔ¶³ÌÖ´ÐдúÂëÎó²î

µ±Ö÷»úЧÀÍÆ÷É쵀 Windows Hyper-V ÍøÂç½»Á÷»úÎÞ·¨×¼È·ÑéÖ¤À´±ö²Ù×÷ϵͳÉϵÄÒÑͨ¹ýÉí·ÝÑéÖ¤µÄÓû§µÄÊäÈëʱ£¬£¬£¬£¬£¬£¬£¬±£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÈôҪʹÓôËÎó²î£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚÀ´±ö²Ù×÷ϵͳÉÏÔËÐо­ÌØÊâÉè¼ÆµÄ¿Éʹ Hyper-V Ö÷»ú²Ù×÷ϵͳִÐÐí§Òâ´úÂëµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÖ÷»ú²Ù×÷ϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£

Windows Hyper-V

CVE-2019-1397

ÑÏÖØ

Windows Hyper-VÔ¶³ÌÖ´ÐдúÂëÎó²î

µ±Ö÷»úЧÀÍÆ÷É쵀 Windows Hyper-V ÎÞ·¨×¼È·ÑéÖ¤À´±ö²Ù×÷ϵͳÉϾ­Éí·ÝÑéÖ¤µÄÓû§µÄÊäÈëʱ£¬£¬£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÈôҪʹÓôËÎó²î£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚÀ´±ö²Ù×÷ϵͳÉÏÔËÐо­ÌØÊâÉè¼ÆµÄ¿Éʹ Hyper-V Ö÷»ú²Ù×÷ϵͳִÐÐí§Òâ´úÂëµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÖ÷»ú²Ù×÷ϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£

Windows Hyper-V

CVE-2019-0721

ÑÏÖØ

Hyper-VÔ¶³ÌÖ´ÐдúÂëÎó²î

µ±Ö÷»úЧÀÍÆ÷É쵀 Windows Hyper-V ÍøÂç½»Á÷»úÎÞ·¨×¼È·ÑéÖ¤À´±ö²Ù×÷ϵͳÉϵÄÒÑͨ¹ýÉí·ÝÑéÖ¤µÄÓû§µÄÊäÈëʱ£¬£¬£¬£¬£¬£¬£¬±£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÈôҪʹÓôËÎó²î£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚÀ´±ö²Ù×÷ϵͳÉÏÔËÐо­ÌØÊâÉè¼ÆµÄ¿Éʹ Hyper-V Ö÷»ú²Ù×÷ϵͳִÐÐí§Òâ´úÂëµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÖ÷»ú²Ù×÷ϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£

Windows Hyper-V

CVE-2019-1389

ÑÏÖØ

Windows Hyper-VÔ¶³ÌÖ´ÐдúÂëÎó²î

µ±Ö÷»úЧÀÍÆ÷É쵀 Windows Hyper-V ÎÞ·¨×¼È·ÑéÖ¤À´±ö²Ù×÷ϵͳÉϾ­Éí·ÝÑéÖ¤µÄÓû§µÄÊäÈëʱ£¬£¬£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£ÈôҪʹÓôËÎó²î£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔÔÚÀ´±ö²Ù×÷ϵͳÉÏÔËÐо­ÌØÊâÉè¼ÆµÄ¿Éʹ Hyper-V Ö÷»ú²Ù×÷ϵͳִÐÐí§Òâ´úÂëµÄÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÖ÷»ú²Ù×÷ϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£

Windows Hyper-V

CVE-2019-1430

ÑÏÖØ

Microsoft Windows Media FoundationÔ¶³ÌÖ´ÐдúÂëÎó²î

µ± Windows Media Foundation ²»×¼È·µØÆÊÎö¾­ÌØÊâÉè¼ÆµÄ QuickTime ýÌåÎļþʱ£¬£¬£¬£¬£¬£¬£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¡£¡£¡£¡£¡£

ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÄÜ»á»ñµÃÓëÍâµØÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¡£¡£¡£ÓëÓµÓÐÖÎÀíÓû§È¨ÏÞµÄÓû§Ïà±È£¬£¬£¬£¬£¬£¬£¬ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì¸üС¡£¡£¡£¡£¡£¡£

ΪÁËʹÓøÃÎó²î£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß±ØÐèÏòÓû§·¢ËÍÒ»¸ö¾­ÌØÊâÉè¼ÆµÄ QuickTime Îļþ£¬£¬£¬£¬£¬£¬£¬È»ºóÓÕʹÓû§·­¿ª¸ÃÎļþ¡£¡£¡£¡£¡£¡£·­¿ªºó£¬£¬£¬£¬£¬£¬£¬¶ñÒâ QuickTime Îļþ½«ÔÚÄ¿µÄϵͳÉÏÖ´Ðй¥»÷ÕßÑ¡ÔñµÄ´úÂë¡£¡£¡£¡£¡£¡£

WindowsýÌå²¥·ÅÆ÷


ÐÞ¸´½¨Òé


ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬Î¢Èí¹Ù·½ÒѾ­Ðû²¼²¹¶¡ÐÞ¸´ÁËÉÏÊöÎó²î£¬£¬£¬£¬£¬£¬£¬½¨ÒéÓû§ÊµÊ±È·ÈÏÊÇ·ñÊܵ½Îó²îÓ°Ïì¡£¡£¡£¡£¡£¡£¾¡¿ì½ÓÄÉÐÞ²¹²½·¥£¬£¬£¬£¬£¬£¬£¬ÒÔ×èֹDZÔÚµÄÇå¾²Íþв¡£¡£¡£¡£¡£¡£ÏëÒª¾ÙÐиüУ¬£¬£¬£¬£¬£¬£¬Ö»Ðèתµ½ÉèÖáú¸üкÍÇå¾²¡úWindows ¸üСú¼ì²é¸üУ¬£¬£¬£¬£¬£¬£¬»òÕßÒ²¿ÉÒÔͨ¹ýÊÖ¶¯¾ÙÐиüС£¡£¡£¡£¡£¡£


²Î¿¼Á´½Ó


https://portal.msrc.microsoft.com/zh-cn/security-guidance