¡¾Îó²îͨ¸æ¡¿Î¢Èí2Ô¶à¸öÇå¾²Îó²î
Ðû²¼Ê±¼ä 2025-02-12Ò»¡¢Îó²î¸ÅÊö
2025Äê2ÔÂ12ÈÕ£¬£¬£¬£¬£¬¼øºÚµ£±£Íø¼¯ÍÅVSRC¼à²âµ½Î¢ÈíÐû²¼ÁË2ÔÂÇå¾²¸üУ¬£¬£¬£¬£¬±¾´Î¸üÐÂÐÞ¸´ÁË63¸öÎó²î£¬£¬£¬£¬£¬º¸ÇȨÏÞÌáÉý¡¢Ô¶³Ì´úÂëÖ´ÐС¢ÓÕÆµÈ¶àÖÖÎó²îÀàÐÍ¡£¡£¡£¡£¡£¡£¡£Îó²î¼¶±ðÂþÑÜÈçÏ£º4¸öÑÏÖØ¼¶±ðÎó²î£¬£¬£¬£¬£¬56¸öÖ÷Òª¼¶±ðÎó²î£¬£¬£¬£¬£¬1ÆäÖÐΣ¼¶±ðÎó²î£¬£¬£¬£¬£¬2¸öµÍΣ¼¶±ðÎó²î£¨Îó²î¼¶±ðÒÀ¾Ý΢Èí¹Ù·½Êý¾Ý£©¡£¡£¡£¡£¡£¡£¡£
ÆäÖУ¬£¬£¬£¬£¬11¸öÎó²î±»Î¢Èí±ê¼ÇΪ¡°¸ü¿ÉÄܱ»Ê¹Óá±¼°¡°¼ì²âʹÓÃÇéÐΡ±£¬£¬£¬£¬£¬Åú×¢ÕâЩÎó²î±£´æ½Ï¸ßµÄʹÓÃΣº¦£¬£¬£¬£¬£¬½¨ÒéÓÅÏÈÐÞ¸´ÒÔ½µµÍDZÔÚÇå¾²Íþв¡£¡£¡£¡£¡£¡£¡£
CVE-ID | CVE ÎÊÌâ | Îó²î¼¶±ð |
CVE-2025-21400 | Microsoft SharePoint Server Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21377 | NTLM ¹þϣй¶ÓÕÆÎó²î | Ö÷Òª |
CVE-2025-21418 | WinSock µÄ Windows ¸¨Öú¹¦Ð§Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21414 | Windows Core Messaging ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21358 | Windows Core Messaging ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21184 | Windows Core Messaging ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21367 | Windows Win32 ÄÚºË×ÓÏµÍ³ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21391 | Windows ´æ´¢ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21419 | Windows ×°ÖóÌÐòÎļþÕûÀíÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21420 | Windows ´ÅÅÌÕûÀí¹¤¾ßÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21376 | Windows ÇáÁ¿¼¶Ä¿Â¼»á¼ûÐÒé (LDAP) Ô¶³Ì´úÂëÖ´ÐÐÎó²î | ÑÏÖØ |
΢Èí2Ô¸üÐÂÐÞ¸´µÄÍêÕûÎó²îÁбíÈçÏ£º
CVE-ID | CVE ÎÊÌâ | Îó²î¼¶±ð |
CVE-2025-21177 | Microsoft Dynamics 365 Sales ÌØÈ¨ÌáÉýÎó²î | ÑÏÖØ |
CVE-2025-21179 | DHCP ¿Í»§¶ËЧÀ;ܾøÐ§ÀÍÎó²î | Ö÷Òª |
CVE-2025-21181 | Microsoft ÐÂÎÅÐÐÁÐ (MSMQ) ¾Ü¾øÐ§ÀÍÎó²î | Ö÷Òª |
CVE-2025-21182 | Windows »Ø¸´Îļþϵͳ (ReFS) ɾ³ýÖØ¸´Ð§ÀÍÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21183 | Windows »Ø¸´Îļþϵͳ (ReFS) ɾ³ýÖØ¸´Ð§ÀÍÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21184 | Windows Core Messaging ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21188 | Azure ÍøÂçÊÓ²ì³ÌÐò VM À©Õ¹ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21190 | Windows µç»°Ð§ÀÍÔ¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-21194 | Microsoft Surface Çå¾²¹¦Ð§ÈƹýÎó²î | Ö÷Òª |
CVE-2025-21198 | Microsoft ¸ßÐÔÄÜÅÌËã (HPC) ´ò°üÔ¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-21200 | Windows µç»°Ð§ÀÍÔ¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-21201 | Windows Telephony Server Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-21206 | Visual Studio Installer ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21208 | Windows ·ÓɺÍÔ¶³Ì»á¼ûЧÀÍ (RRAS) Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-21212 | Internet ÅþÁ¬¹²Ïí (ICS) ¾Ü¾øÐ§ÀÍÎó²î | Ö÷Òª |
CVE-2025-21216 | Internet ÅþÁ¬¹²Ïí (ICS) ¾Ü¾øÐ§ÀÍÎó²î | Ö÷Òª |
CVE-2025-21253 | Microsoft Edge£¨iOS ºÍ Android °æ£©ÓÕÆÎó²î | ÖÐ |
CVE-2025-21254 | Internet ÅþÁ¬¹²Ïí (ICS) ¾Ü¾øÐ§ÀÍÎó²î | Ö÷Òª |
CVE-2025-21259 | Microsoft Outlook ÓÕÆÎó²î | Ö÷Òª |
CVE-2025-21267 | »ùÓÚ Chromium µÄ Microsoft Edge ÓÕÆÎó²î | µÍ |
CVE-2025-21279 | »ùÓÚ Chromium µÄ Microsoft Edge Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21283 | »ùÓÚ Chromium µÄ Microsoft Edge Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21322 | Microsoft PC Manager ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21337 | Windows NTFS ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21342 | »ùÓÚ Chromium µÄ Microsoft Edge Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21347 | Windows °²ÅÅЧÀ;ܾøÐ§ÀÍÎó²î | Ö÷Òª |
CVE-2025-21349 | Windows Ô¶³Ì×ÀÃæÉèÖÃЧÀ͸͝Îó²î | Ö÷Òª |
CVE-2025-21350 | Windows Kerberos ¾Ü¾øÐ§ÀÍÎó²î | Ö÷Òª |
CVE-2025-21351 | Windows Active Directory ÓòЧÀÍ API ЧÀ;ܾøÎó²î | Ö÷Òª |
CVE-2025-21352 | Internet ÅþÁ¬¹²Ïí (ICS) ¾Ü¾øÐ§ÀÍÎó²î | Ö÷Òª |
CVE-2025-21358 | Windows Core Messaging ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21359 | Windows ÄÚºËÇå¾²¹¦Ð§ÈƹýÎó²î | Ö÷Òª |
CVE-2025-21367 | Windows Win32 ÄÚºË×ÓÏµÍ³ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21368 | Microsoft Digest Éí·ÝÑéÖ¤Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-21369 | Microsoft Digest Éí·ÝÑéÖ¤Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-21371 | Windows µç»°Ð§ÀÍÔ¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-21373 | Windows Installer ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21375 | Kernel Streaming WOW Thunk ЧÀÍÇý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21376 | Windows ÇáÁ¿¼¶Ä¿Â¼»á¼ûÐÒé (LDAP) Ô¶³Ì´úÂëÖ´ÐÐÎó²î | ÑÏÖØ |
CVE-2025-21377 | NTLM ¹þϣй¶ÓÕÆÎó²î | Ö÷Òª |
CVE-2025-21379 | DHCP ¿Í»§¶ËЧÀÍÔ¶³Ì´úÂëÖ´ÐÐÎó²î | ÑÏÖØ |
CVE-2025-21381 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | ÑÏÖØ |
CVE-2025-21383 | Microsoft Excel ÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-21386 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21387 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21390 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21391 | Windows ´æ´¢ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21392 | Microsoft Office Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21394 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21397 | Microsoft Office Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21400 | Microsoft SharePoint Server Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21404 | »ùÓÚ Chromium µÄ Microsoft Edge ÓÕÆÎó²î | µÍ |
CVE-2025-21406 | Windows µç»°Ð§ÀÍÔ¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-21407 | Windows µç»°Ð§ÀÍÔ¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-21408 | »ùÓÚ Chromium µÄ Microsoft Edge Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-21410 | Windows ·ÓɺÍÔ¶³Ì»á¼ûЧÀÍ (RRAS) Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-21414 | Windows Core Messaging ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21418 | WinSock µÄ Windows ¸¨Öú¹¦Ð§Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21419 | Windows ×°ÖóÌÐòÎļþÕûÀíÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-21420 | Windows ´ÅÅÌÕûÀí¹¤¾ßÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-24036 | Microsoft AutoUpdate (MAU) ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-24039 | Visual Studio Code ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-24042 | Visual Studio Code JS µ÷ÊÔÀ©Õ¹ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
¶þ¡¢Ó°Ïì¹æÄ£
ÊÜÓ°ÏìµÄ²úÆ·/¹¦Ð§/ЧÀÍ/×é¼þ°üÀ¨£º
Microsoft Dynamics 365 Sales
Windows DHCP Client
Windows Message Queuing
Windows Resilient File System (ReFS) Deduplication Service
Windows CoreMessaging
Azure Network Watcher
Windows Telephony Service
Microsoft Surface
Microsoft High Performance Compute Pack (HPC) Linux Node Agent
Windows Telephony Server
Visual Studio
Windows Routing and Remote Access Service (RRAS)
Windows Internet Connection Sharing (ICS)
Microsoft Edge for iOS and Android
Outlook for Android
Microsoft Edge (Chromium-based)
Microsoft PC Manager
Microsoft Windows
Windows Update Stack
Windows Remote Desktop Services
Windows Kerberos
Active Directory Domain Services
Windows Kernel
Windows Win32 Kernel Subsystem
Microsoft Digest Authentication
Windows Installer
Microsoft Streaming Service
Windows LDAP - Lightweight Directory Access Protocol
Windows NTLM
Windows DHCP Server
Microsoft Office Excel
Windows Storage
Microsoft Office
Microsoft Office SharePoint
Windows DWM Core Library
Windows Ancillary Function Driver for WinSock
Windows Setup Files Cleanup
Windows Disk Cleanup Tool
Microsoft AutoUpdate (MAU)
Visual Studio Code
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
ÏÖÔÚ΢ÈíÒÑÐû²¼Ïà¹ØÇå¾²¸üУ¬£¬£¬£¬£¬½¨ÒéÊÜÓ°ÏìµÄÓû§¾¡¿ìÐÞ¸´¡£¡£¡£¡£¡£¡£¡£
£¨Ò»£© Windows Update×Ô¶¯¸üÐÂ
Microsoft UpdateĬÈÏÆôÓ㬣¬£¬£¬£¬µ±ÏµÍ³¼ì²âµ½¿ÉÓøüÐÂʱ£¬£¬£¬£¬£¬½«»á×Ô¶¯ÏÂÔØ¸üв¢ÔÚÏÂÒ»´ÎÆô¶¯Ê±×°Öᣡ£¡£¡£¡£¡£¡£Ò²¿ÉÑ¡Ôñͨ¹ýÒÔϰ취ÊÖ¶¯¾ÙÐиüУº
4¡¢¸üÐÂÍê³ÉºóÖØÆôÅÌËã»ú£¬£¬£¬£¬£¬¿Éͨ¹ý½øÈë¡°Windows¸üС±->¡°Éó²é¸üÐÂÀúÊ·¼Í¼¡±Éó²éÊÇ·ñÀÖ³É×°ÖÃÁ˸üС£¡£¡£¡£¡£¡£¡£¹ØÓÚûÓÐÀÖ³É×°ÖõĸüУ¬£¬£¬£¬£¬¿ÉÒÔµã»÷¸Ã¸üÐÂÃû³Æ½øÈë΢Èí¹Ù·½¸üÐÂÐÎòÁ´½Ó£¬£¬£¬£¬£¬µã»÷×îеÄSSUÃû³Æ²¢ÔÚÐÂÁ´½ÓÖеã»÷¡°Microsoft ¸üÐÂĿ¼¡±£¬£¬£¬£¬£¬È»ºóÔÚÐÂÁ´½ÓÖÐÑ¡ÔñÊÊÓÃÓÚÄ¿µÄϵͳµÄ²¹¶¡¾ÙÐÐÏÂÔØ²¢×°Öᣡ£¡£¡£¡£¡£¡£
Microsoft¹Ù·½ÏÂÔØÏìÓ¦²¹¶¡¾ÙÐиüС£¡£¡£¡£¡£¡£¡£
2025Äê2ÔÂÇå¾²¸üÐÂÏÂÔØÁ´½Ó£º
²¹¶¡ÏÂÔØÊ¾Àý£¨²Î¿¼£©£º
Àý1£ºÎ¢ÈíÎó²îÁÐ±í£¨Ê¾Àý£©
Àý2£ºCVE-2022-21989²¹¶¡ÏÂÔØÊ¾Àý
Àý3£º²¹¶¡ÏÂÔØ½çÃæ
3.2 ÔÝʱ²½·¥
ÔÝÎÞ¡£¡£¡£¡£¡£¡£¡£