¡¾Îó²îͨ¸æ¡¿Î¢Èí6ÔÂÇå¾²¸üжà¸ö²úÆ·¸ßΣÎó²îͨ¸æ
2020-06-10
Ò». Îó²î¸ÅÊö
±±¾©Ê±¼ä6ÔÂ10ÈÕ£¬Î¢ÈíÐû²¼6ÔÂÇå¾²¸üв¹¶¡£¬ÐÞ¸´ÁË130¸öÇå¾²ÎÊÌâ£¬Éæ¼°Microsoft Windows¡¢Internet Explorer¡¢Microsoft Edge¡¢Windows Defender¡¢Microsoft Office¡¢Visual Studio¡¢Adobe Flash PlayerµÈÆÕ±éʹÓõIJúÆ·£¬ÆäÖаüÀ¨ÄÚ´æÐ¹Â¶ºÍÔ¶³Ì´úÂëÖ´ÐеȸßΣÎó²îÀàÐÍ¡£
±¾ÔÂ΢ÈíÔ¶ȸüÐÂÐÞ¸´µÄÎó²îÖУ¬ÑÏÖØË®Æ½ÎªÒªº¦£¨Critical£©µÄÎó²î¹²ÓÐ12¸ö£¬Ö÷Òª£¨Important£©Îó²îÓÐ118¸ö¡£ÕâÊÇ΢ÈíÓÐÊ·ÒÔÀ´ÔÚÒ»¸öÔÂÄÚÐû²¼CVEÊýÄ¿×î¶àµÄÒ»´Î£¬ÆäÖÐWindows SMB Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-1301£©ÓëWindows SMBv3 ¿Í»§¶Ë/·þÎñÆ÷ÐÅÏ¢×ß©Îó²î£¨CVE-2020-1206£©µÄPoCÒѹûÕæ£¬ÇëÏà¹ØÓû§ÊµÊ±¸üв¹¶¡¾ÙÐзÀ»¤£¬ÏêϸÎó²îÁбíÇë²Î¿¼¸½Â¼¡£
²Î¿¼Á´½Ó£º
https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/2020-Jun
¶þ. ÖØµãÎó²î¼òÊö
ƾ֤²úÆ·Ê¢ÐжȺÍÎó²îÖ÷ÒªÐÔɸѡ³ö´Ë´Î¸üÐÂÖаüÀ¨Ó°Ïì½Ï´óµÄÎó²î£¬ÇëÏà¹ØÓû§Öصã¾ÙÐйØ×¢£º
CVE-2020-1206£¨PoCÒѹûÕæ£©£ºWindows SMBv3 ¿Í»§¶Ë/·þÎñÆ÷ÐÅÏ¢×ß©Îó²î
Microsoft Server Message Block 3.1.1 (SMBv3)ÐÒéÔÚ´¦Öóͷ£Ä³Ð©ÇëÇóʱ±£´æÐÅϢй¶Îó²î£¬Î´¾Éí·ÝÑéÖ¤µÄ¹¥»÷Õß¿Éͨ¹ýÏòÄ¿µÄSMB·þÎñÆ÷·¢ËÍÌØÊâÉè¼ÆµÄÊý¾Ý°ü£¬»òÉèÖÃÒ»¸ö¶ñÒâµÄ SMBv3 ·þÎñÆ÷²¢ÓÕµ¼Óû§ÅþÁ¬¡£¹¥»÷ÕßʹÓôËÎó²î¿É»ñÈ¡µ½Ãô¸ÐÐÅÏ¢¡£
ÓëSMBv3GhostÓйصÄÄÚÈݿɲο¼£ºhttps://mp.weixin.qq.com/s/q3dL6YI0K-cFLbNzySabHQ
¹Ù·½Í¨¸æÁ´½Ó£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1206
CVE-2020-1301£¨PoCÒѹûÕæ£©£ºWindows SMB Ô¶³Ì´úÂëÖ´ÐÐÎó²î
Microsoft Server Message Block 1.0 (SMBv1) ·þÎñÆ÷ÔÚ´¦Öóͷ£Ä³Ð©ÇëÇóʱ±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¾ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷ÕßÏòÄ¿µÄ SMBv1 ·þÎñÆ÷·¢ËÍÌØÊâÉè¼ÆµÄÊý¾Ý°ü£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÔÚÄ¿µÄϵͳÉÏÖ´ÐдúÂë¡£
΢ÈíÒÑÔÚ 2014 ÄêÆúÓÃÁË SMBv1 ÐÒ飬ÔÚ Windows 10 ÖРĬÈϽûÓÃSMBv1 ¡£¼ì²âÓë½ûÓà SMBÐÒéÇë²Î¿¼¹Ù·½Îĵµ£ºhttps://docs.microsoft.com/en-us/windows-server/storage/file-server/troubleshoot/detect-enable-and-disable-smbv1-v2-v3
¹Ù·½Í¨¸æÁ´½Ó£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1301
CVE-2020-1281£ºWindows OLE Ô¶³Ì´úÂëÖ´ÐÐÎó²î
ÓÉÓÚMicrosoft Windows OLE ÎÞ·¨×¼È·ÑéÖ¤Óû§ÊäÈ룬¹¥»÷Õß¿ÉÒÔÓÕʹÓû§ÔÚÍøÒ³»òµç×ÓÓʼþÖз¿ªÌØÊâÉè¼ÆµÄÎļþ»ò³ÌÐò£¬´Ó¶øÊ¹ÓôËÎó²îÀ´Ö´ÐжñÒâ´úÂë¡£
¹Ù·½Í¨¸æÁ´½Ó£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1281
CVE-2020-1300£ºWindows Ô¶³ÌÖ´ÐдúÂëÎó²î
ÓÉÓÚMicrosoft Windows ÎÞ·¨×¼È·´¦Öóͷ£ cabinet Îļþ£¬¹¥»÷Õß¿ÉÓÕʹÓû§·¿ªÌØÊâÉè¼ÆµÄ cabinet Îļþ»òÓÕÆÓû§×°ÖÃαװ³É´òÓ¡»úÇý¶¯³ÌÐòµÄ¶ñÒâ cabinet Îļþ£¬´Ó¶øÊ¹ÓôËÎó²îÖ´ÐÐí§Òâ´úÂë¡£
¹Ù·½Í¨¸æÁ´½Ó£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1300
CVE-2020-1181£ºMicrosoft SharePoint Server Ô¶³Ì´úÂëÖ´ÐÐÎó²î
ÓÉÓÚSharePoint ServerÎÞ·¨×¼È·Ê¶±ðºÍɸѡ²»Çå¾²µÄ ASP.NET Web ¿Ø¼þ£¬¾ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷Õßͨ¹ýÉÏ´«Ò»¸öÌØÊâÖÆ×÷µÄÒ³Ãæµ½SharePoint·þÎñÆ÷£¬¿ÉÀÖ³ÉʹÓôËÎó²îÔÚ·þÎñÆ÷ÉÏÖ´ÐÐí§Òâ´úÂë¡£
¹Ù·½Í¨¸æÁ´½Ó£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1181
CVE-2020-1225/1226£ºMicrosoft Excel Ô¶³Ì´úÂëÖ´ÐÐÎó²î
ÓÉÓÚMicrosoft ExcelÎÞ·¨×¼È·´¦Öóͷ£ÄÚ´æÖеŤ¾ß£¬µ¼Ö±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¹¥»÷Õßͨ¹ýÓÕʹÓû§Ê¹ÓÃÊÜÓ°Ïì°æ±¾µÄMicrosoft Excel·¿ª¾ÓÉÌØÊâÉè¼ÆµÄÎļþ¾ÙÐÐʹÓá£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄϵͳ¿ØÖÆÈ¨ÏÞ¡£
¹Ù·½Í¨¸æÁ´½Ó£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1225
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1226
CVE-2020-1248£ºGDI Ô¶³Ì´úÂëÖ´ÐÐÎó²î
Windows ͼÐÎ×°±¸½Ó¿Ú (GDI) ÔÚ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¹¥»÷Õß¿ÉÒÔʹÓøÃÎó²îÈ«ÐÄÖÆ×÷Ò»¸ö¶ñÒâÍøÕ¾»ò¶ñÒâÎļþ£¬²¢Í¨¹ý´¹ÂÚÓʼþµÈ·½·¨ÓÕµ¼Óû§µã»÷Á´½Ó»ò·¿ª¸½¼þ¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÄÜ»á¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£
¹Ù·½Í¨¸æÁ´½Ó£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1248
CVE-2020-1299£ºLNK Ô¶³Ì´úÂëÖ´ÐÐÎó²î
Windows ÔÚ´¦Öóͷ£ .LNK Îļþʱ±£´æÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¹¥»÷Õß¿ÉÄÜ»áÏòÓû§ÏÔʾ°üÀ¨¶ñÒâ .LNK ÎļþºÍ¹ØÁªµÄ¶ñÒâ¶þ½øÖÆÎļþµÄ¿ÉÒÆ³ýÇý¶¯Æ÷»òÔ¶³Ì¹²Ïí£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õ߿ɻñµÃÓëÍâµØÓû§ÏàͬµÄϵͳȨÏÞ¡£
¹Ù·½Í¨¸æÁ´½Ó£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1299
ADV200010| CVE-2020-9633: Adobe Flash Player í§Òâ´úÂëÖ´ÐÐÎó²î
´ËÇå¾²¸üÐÂÐÞ¸´ÁË Adobe Ç徲ͨ¸æ APSB20-30 ÖÐÐÎòµÄÎó²î£¨CVE-2020-9633£©£¬´ËÎó²îÓ°ÏìWindows¡¢MacOS¡¢LinuxºÍChromeOS£¬ÀÖ³ÉʹÓøÃÎó²î¿ÉÔÚÄ¿½ñÓû§µÄÇéÐÎÖÐÖ´ÐÐí§Òâ´úÂë¡£
¹Ù·½Í¨¸æÁ´½Ó£º
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV200010
https://helpx.adobe.com/cn/security/products/flash-player/apsb20-30.html
Èý. Ó°Ïì¹æÄ£
ÒÔÏÂÎªÖØµã¹Ø×¢Îó²îµÄÊÜÓ°Ïì²úÆ·°æ±¾£¬ÆäËûÎó²îÓ°Ïì²úÆ·¹æÄ£Çë²ÎÔĹٷ½Í¨¸æÁ´½Ó¡£
|
Îó²î±àºÅ |
ÊÜÓ°Ïì²úÆ·°æ±¾ |
|
CVE-2020-1206 |
Windows 10 Version 1903 for 32-bit Systems Windows 10 Version 1903 for ARM64-based Systems Windows 10 Version 1903 for x64-based Systems Windows 10 Version 1909 for 32-bit Systems Windows 10 Version 1909 for ARM64-based Systems Windows 10 Version 1909 for x64-based Systems Windows 10 Version 2004 for 32-bit Systems Windows 10 Version 2004 for ARM64-based Systems Windows 10 Version 2004 for x64-based Systems Windows Server, version 1903 (Server Core installation) Windows Server, version 1909 (Server Core installation) Windows Server, version 2004 (Server Core installation) |
|
CVE-2020-1301 CVE-2020-1281 CVE-2020-1300 |
Windows 10 for 32-bit Systems Windows 10 for x64-based Systems Windows 10 Version 1607 for 32-bit Systems Windows 10 Version 1607 for x64-based Systems Windows 10 Version 1709 for 32-bit Systems Windows 10 Version 1709 for ARM64-based Systems Windows 10 Version 1709 for x64-based Systems Windows 10 Version 1803 for 32-bit Systems Windows 10 Version 1803 for ARM64-based Systems Windows 10 Version 1803 for x64-based Systems Windows 10 Version 1809 for 32-bit Systems Windows 10 Version 1809 for ARM64-based Systems Windows 10 Version 1809 for x64-based Systems Windows 10 Version 1903 for 32-bit Systems Windows 10 Version 1903 for ARM64-based Systems Windows 10 Version 1903 for x64-based Systems Windows 10 Version 1909 for 32-bit Systems Windows 10 Version 1909 for ARM64-based Systems Windows 10 Version 1909 for x64-based Systems Windows 10 Version 2004 for 32-bit Systems Windows 10 Version 2004 for ARM64-based Systems Windows 10 Version 2004 for x64-based Systems Windows 7 for 32-bit Systems Service Pack 1 Windows 7 for x64-based Systems Service Pack 1 Windows 8.1 for 32-bit systems Windows 8.1 for x64-based systems Windows RT 8.1 Windows Server 2008 for 32-bit Systems Service Pack 2 Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation) Windows Server 2008 for Itanium-Based Systems Service Pack 2 Windows Server 2008 for x64-based Systems Service Pack 2 Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation) Windows Server 2008 R2 for Itanium-Based Systems Service Pack 1 Windows Server 2008 R2 for x64-based Systems Service Pack 1 Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation) Windows Server 2012 Windows Server 2012 (Server Core installation) Windows Server 2012 R2 Windows Server 2012 R2 (Server Core installation) Windows Server 2016 Windows Server 2016 (Server Core installation) Windows Server 2019 Windows Server 2019 (Server Core installation) Windows Server, version 1803 (Server Core Installation) Windows Server, version 1903 (Server Core installation) Windows Server, version 1909 (Server Core installation) Windows Server, version 2004 (Server Core installation) |
|
CVE-2020-1181 |
Microsoft SharePoint Enterprise Server 2016 Microsoft SharePoint Foundation 2010 Service Pack 2 Microsoft SharePoint Foundation 2013 Service Pack 1 Microsoft SharePoint Server 2019 |
|
CVE-2020-1225 CVE-2020-1226 |
Microsoft 365 Apps for Enterprise for 32-bit Systems Microsoft 365 Apps for Enterprise for 64-bit Systems Microsoft Excel 2010 Service Pack 2 (32-bit editions) Microsoft Excel 2010 Service Pack 2 (64-bit editions) Microsoft Excel 2013 RT Service Pack 1 Microsoft Excel 2013 Service Pack 1 (32-bit editions) Microsoft Excel 2013 Service Pack 1 (64-bit editions) Microsoft Excel 2016 (32-bit edition) Microsoft Excel 2016 (64-bit edition) Microsoft Office 2016 for Mac Microsoft Office 2019 for 32-bit editions Microsoft Office 2019 for 64-bit editions Microsoft Office 2019 for Mac |
|
CVE-2020-1248 |
Windows 10 Version 1903 for 32-bit Systems Windows 10 Version 1903 for ARM64-based Systems Windows 10 Version 1903 for x64-based Systems Windows 10 Version 1909 for 32-bit Systems Windows 10 Version 1909 for ARM64-based Systems Windows 10 Version 1909 for x64-based Systems Windows 10 Version 2004 for 32-bit Systems Windows 10 Version 2004 for ARM64-based Systems Windows 10 Version 2004 for x64-based Systems Windows Server, version 1903 (Server Core installation) Windows Server, version 1909 (Server Core installation) Windows Server, version 2004 (Server Core installation) |
|
CVE-2020-1299 |
Windows 10 for 32-bit Systems Windows 10 for x64-based Systems Windows 10 Version 1607 for 32-bit Systems Windows 10 Version 1607 for x64-based Systems Windows 10 Version 1709 for 32-bit Systems Windows 10 Version 1709 for ARM64-based Systems Windows 10 Version 1709 for x64-based Systems Windows 10 Version 1803 for 32-bit Systems Windows 10 Version 1803 for ARM64-based Systems Windows 10 Version 1803 for x64-based Systems Windows 10 Version 1809 for 32-bit Systems Windows 10 Version 1809 for ARM64-based Systems Windows 10 Version 1809 for x64-based Systems Windows 10 Version 1903 for 32-bit Systems Windows 10 Version 1903 for ARM64-based Systems Windows 10 Version 1903 for x64-based Systems Windows 10 Version 1909 for 32-bit Systems Windows 10 Version 1909 for ARM64-based Systems Windows 10 Version 1909 for x64-based Systems Windows 10 Version 2004 for 32-bit Systems Windows 10 Version 2004 for ARM64-based Systems Windows 10 Version 2004 for x64-based Systems Windows 7 for 32-bit Systems Service Pack 1 Windows 7 for x64-based Systems Service Pack 1 Windows 8.1 for 32-bit systems Windows 8.1 for x64-based systems Windows RT 8.1 Windows Server 2008 R2 for Itanium-Based Systems Service Pack 1 Windows Server 2008 R2 for x64-based Systems Service Pack 1 Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation) Windows Server 2012 Windows Server 2012 (Server Core installation) Windows Server 2012 R2 Windows Server 2012 R2 (Server Core installation) Windows Server 2016 Windows Server 2016 (Server Core installation) Windows Server 2019 Windows Server 2019 (Server Core installation) Windows Server, version 1803 (Server Core Installation) Windows Server, version 1903 (Server Core installation) Windows Server, version 1909 (Server Core installation) Windows Server, version 2004 (Server Core installation) |
|
ADV200010 | CVE-2020-9633 |
Windows 10 Version 1803 for 32-bit Systems Windows 10 Version 1803 for x64-based Systems Windows 10 Version 1803 for ARM64-based Systems Windows 10 Version 1809 for 32-bit Systems Windows 10 Version 1809 for x64-based Systems Windows 10 Version 1809 for ARM64-based Systems Windows Server 2019 Windows 10 Version 1909 for 32-bit Systems Windows 10 Version 1909 for x64-based Systems Windows 10 Version 1909 for ARM64-based Systems Windows 10 Version 1709 for 32-bit Systems Windows 10 Version 1709 for x64-based Systems Windows 10 Version 1709 for ARM64-based Systems Windows 10 Version 1903 for 32-bit Systems Windows 10 Version 1903 for x64-based Systems Windows 10 Version 1903 for ARM64-based Systems Windows 10 for 32-bit Systems Windows 10 for x64-based Systems Windows 10 Version 1607 for 32-bit Systems Windows 10 Version 1607 for x64-based Systems Windows Server 2016 Windows 8.1 for 32-bit systems Windows 8.1 for x64-based systems Windows RT 8.1 Windows Server 2012 Windows Server 2012 R2 Windows 10 Version 2004 for x64-based Systems Windows 10 Version 2004 for ARM64-based Systems Windows 10 Version 2004 for 32-bit Systems |
ËÄ. Îó²î·À»¤
4.1 ²¹¶¡¸üÐÂ
ÏÖÔÚ΢Èí¹Ù·½ÒÑÕë¶ÔÊÜÖ§³ÖµÄ²úÆ·°æ±¾Ðû²¼ÁËÐÞ¸´ÒÔÉÏÎó²îµÄÇå¾²²¹¶¡£¬Ç¿ÁÒ½¨ÒéÊÜÓ°ÏìÓû§¾¡¿ì×°Öò¹¶¡¾ÙÐзÀ»¤£¬¹Ù·½ÏÂÔØÁ´½Ó£º
https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/2020-Jun
×¢£ºÓÉÓÚÍøÂçÎÊÌâ¡¢ÅÌËã»úÇéÐÎÎÊÌâµÈÔµ¹ÊÔÓÉ£¬Windows UpdateµÄ²¹¶¡¸üпÉÄÜ·ºÆðʧ°Ü¡£Óû§ÔÚ×°Öò¹¶¡ºó£¬Ó¦ÊµÊ±¼ì²é²¹¶¡ÊÇ·ñÀֳɸüС£
ÓÒ¼üµã»÷Windowsͼ±ê£¬Ñ¡Ôñ“ÉèÖÃ(N)”£¬Ñ¡Ôñ“¸üкÍÇå¾²”-“Windows¸üД£¬Éó²é¸ÃÒ³ÃæÉϵÄÌáÐÑÐÅÏ¢£¬Ò²¿Éµã»÷“Éó²é¸üÐÂÀúÊ·¼Í¼”Éó²éÀúÊ·¸üÐÂÇéÐΡ£
Õë¶ÔδÀÖ³É×°ÖõĸüУ¬¿Éµã»÷¸üÐÂÃû³ÆÌø×ªµ½Î¢Èí¹Ù·½ÏÂÔØÒ³Ãæ£¬½¨ÒéÓû§µã»÷¸ÃÒ³ÃæÉϵÄÁ´½Ó£¬×ªµ½“Microsoft¸üÐÂĿ¼”ÍøÕ¾ÏÂÔØ×ÔÁ¦³ÌÐò°ü²¢×°Öá£
¸½Â¼£ºÎó²îÁбí
|
Ó°Ïì²úÆ· |
CVE 񅧏 |
Îó²îÎÊÌâ |
ÑÏÖØË®Æ½ |
|
Microsoft Office |
CVE-2020-1181 |
Microsoft SharePoint Server Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Critical |
|
Internet Explorer |
CVE-2020-1213 |
VBScript Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Critical |
|
Internet Explorer |
CVE-2020-1216 |
VBScript Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Critical |
|
ChakraCore,Microsoft Edge,Internet Explorer |
CVE-2020-1219 |
Microsoft Browser ÄÚ´æÐ¹Â¶Îó²î |
Critical |
|
Adobe Flash |
ADV200010 |
June 2020 Adobe Flash Security Update |
Critical |
|
ChakraCore,Microsoft Edge |
CVE-2020-1073 |
Scripting Engine ÄÚ´æÐ¹Â¶Îó²î |
Critical |
|
Windows |
CVE-2020-1286 |
Windows Shell Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Critical |
|
Windows |
CVE-2020-1300 |
Windows Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Critical |
|
Windows |
CVE-2020-1248 |
GDI+ Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Critical |
|
Internet Explorer |
CVE-2020-1260 |
VBScript Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Critical |
|
Windows |
CVE-2020-1281 |
Windows OLE Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Critical |
|
Windows |
CVE-2020-1299 |
LNK Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Critical |
|
Windows |
CVE-2020-0915 |
Windows GDI ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-0916 |
Windows GDI ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-0986 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1183 |
Microsoft Office SharePoint XSSÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1225 |
Microsoft Excel Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1226 |
Microsoft Excel Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1229 |
Microsoft Outlook Security ¹¦Ð§Èƹý |
Important |
|
Windows |
CVE-2020-1334 |
Windows Runtime ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1348 |
Windows GDI ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1196 |
Windows Print Configuration ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1197 |
Windows Error Reporting Manager ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1199 |
Windows Feedback Hub ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1201 |
Windows Now Playing Session Manager ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Visual Studio,Windows |
CVE-2020-1202 |
Diagnostic Hub Standard Collector ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Visual Studio,Windows |
CVE-2020-1203 |
Diagnostic Hub Standard Collector ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1204 |
Windows Mobile Device Management Diagnostics ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1206 |
Windows SMBv3 Client/Server ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1207 |
Win32k ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1208 |
Jet Database Engine Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Important |
|
Windows |
CVE-2020-1209 |
Windows Network List Service ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1211 |
Connected Devices Platform Service ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1212 |
OLE Automation ȨÏÞÌáÉýÎó²î |
Important |
|
Internet Explorer |
CVE-2020-1214 |
VBScript Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Important |
|
Internet Explorer |
CVE-2020-1215 |
VBScript Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Important |
|
Windows |
CVE-2020-1217 |
Windows Runtime ÐÅÏ¢Åû¶Îó²î |
Important |
|
Microsoft Edge (Chromium-based) in IE Mode |
CVE-2020-1220 |
Microsoft Edge (Chromium-based) in IE Mode ÓÕÆÎó²î |
Important |
|
Windows |
CVE-2020-1222 |
Microsoft Store Runtime ȨÏÞÌáÉýÎó²î |
Important |
|
NuGetGallery |
CVE-2020-1340 |
NuGetGallery ÓÕÆÎó²î |
Important |
|
Microsoft Visual Studio Code Live Share extension |
CVE-2020-1343 |
Visual Studio Code Live Share ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1120 |
Connected User Experiences and Telemetry Service ¾Ü¾ø·þÎñÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1148 |
Microsoft SharePoint ÓÕÆÎó²î |
Important |
|
Windows |
CVE-2020-1194 |
Windows Registry ¾Ü¾ø·þÎñÎó²î |
Important |
|
Apps |
CVE-2020-1223 |
Word for Android Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Important |
|
Internet Explorer |
CVE-2020-1230 |
VBScript Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Important |
|
Windows |
CVE-2020-1231 |
Windows Runtime ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1232 |
Media Foundation ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1233 |
Windows Runtime ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1234 |
Windows Error Reporting ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1235 |
Windows Runtime ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1236 |
Jet Database Engine Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Important |
|
Windows |
CVE-2020-1237 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1238 |
Media Foundation ÄÚ´æÐ¹Â¶Îó²î |
Important |
|
Windows |
CVE-2020-1239 |
Media Foundation ÄÚ´æÐ¹Â¶Îó²î |
Important |
|
Microsoft Edge |
CVE-2020-1242 |
Microsoft Edge ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1246 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1247 |
Win32k ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1262 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1269 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1271 |
Windows Backup Service ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1274 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1275 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1277 |
Windows Installer ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Visual Studio,Windows |
CVE-2020-1278 |
Diagnostics Hub Standard Collector ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1279 |
Windows Lockscreen ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1280 |
Windows Bluetooth Service ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1282 |
Windows Runtime ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1284 |
Windows SMBv3 Client/Server ¾Ü¾ø·þÎñÎó²î |
Important |
|
Windows |
CVE-2020-1294 |
Windows WalletService ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1295 |
Microsoft SharePoint ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1298 |
Microsoft Office SharePoint XSSÎó²î |
Important |
|
Windows |
CVE-2020-1307 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1310 |
Win32k ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1311 |
Component Object Model ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1312 |
Windows Installer ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1316 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1320 |
Microsoft Office SharePoint XSSÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1321 |
Microsoft Office Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1322 |
Microsoft Project ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1324 |
Windows ȨÏÞÌáÉýÎó²î |
Important |
|
System Center |
CVE-2020-1331 |
System Center Operations Manager ÓÕÆÎó²î |
Important |
|
Windows |
CVE-2020-1160 |
Microsoft Graphics Component ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1162 |
Windows ȨÏÞÌáÉýÎó²î |
Important |
|
System Center |
CVE-2020-1163 |
Microsoft Windows Defender ȨÏÞÌáÉýÎó²î |
Important |
|
System Center |
CVE-2020-1170 |
Microsoft Windows Defender ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1177 |
Microsoft Office SharePoint XSSÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1178 |
Microsoft SharePoint Server ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1241 |
Windows Kernel Security ¹¦Ð§Èƹý |
Important |
|
Windows |
CVE-2020-1244 |
Connected User Experiences and Telemetry Service ¾Ü¾ø·þÎñÎó²î |
Important |
|
Windows |
CVE-2020-1251 |
Win32k ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1253 |
Win32k ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1254 |
Windows Modules Installer Service ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1255 |
Windows Background Intelligent Transfer Service ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Visual Studio,Windows |
CVE-2020-1257 |
Diagnostics Hub Standard Collector ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1258 |
DirectX ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1259 |
Windows Host Guardian Service Security ¹¦Ð§Èƹý |
Important |
|
Windows |
CVE-2020-1261 |
Windows Error Reporting ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1263 |
Windows Error Reporting ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1264 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1265 |
Windows Runtime ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1266 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1268 |
Windows Service ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1270 |
Windows WLAN Service ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1272 |
Windows Installer ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1273 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1276 |
Windows Kernel ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1283 |
Windows ¾Ü¾ø·þÎñÎó²î |
Important |
|
Windows |
CVE-2020-1287 |
Windows WalletService ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1289 |
Microsoft SharePoint ÓÕÆÎó²î |
Important |
|
Windows |
CVE-2020-1290 |
Win32k ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1291 |
Windows Network Connections Service ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1292 |
OpenSSH for Windows ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Visual Studio,Windows |
CVE-2020-1293 |
Diagnostics Hub Standard Collector ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1296 |
Windows Diagnostics & feedback ÐÅÏ¢Åû¶Îó²î |
Important |
|
Microsoft Office |
CVE-2020-1297 |
Microsoft Office SharePoint XSSÎó²î |
Important |
|
Windows |
CVE-2020-1301 |
Windows SMB Ô¶³Ì´úÂëÖ´ÐÐÎó²î |
Important |
|
Windows |
CVE-2020-1302 |
Windows Installer ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1304 |
Windows Runtime ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1305 |
Windows State Repository Service ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1306 |
Windows Runtime ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1309 |
Microsoft Store Runtime ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1313 |
Windows Update Orchestrator Service ȨÏÞÌáÉýÎó²î |
Important |
|
Windows |
CVE-2020-1314 |
Windows Text Service Framework ȨÏÞÌáÉýÎó²î |
Important |
|
Internet Explorer |
CVE-2020-1315 |
Internet Explorer ÐÅÏ¢Åû¶Îó²î |
Important |
|
Windows |
CVE-2020-1317 |
Group Policy ȨÏÞÌáÉýÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1318 |
Microsoft Office SharePoint XSSÎó²î |
Important |
|
Microsoft Office |
CVE-2020-1323 |
SharePoint Open Redirect Vulnerability |
Important |
|
Azure DevOps Server |
CVE-2020-1327 |
Azure DevOps Server HTML Injection Vulnerability |
Important |
|
Apps |
CVE-2020-1329 |
Microsoft Bing Search ÓÕÆÎó²î |
Important |
ÉùÃ÷
±¾Ç徲ͨ¸æ½öÓÃÀ´ÐÎò¿ÉÄܱ£´æµÄÇå¾²ÎÊÌ⣬AG¹«Ë¾¿Æ¼¼²»Îª´ËÇ徲ͨ¸æÌṩÈκΰü¹Ü»òÔÊÐí¡£ÓÉÓÚÈö²¥¡¢Ê¹ÓôËÇ徲ͨ¸æËùÌṩµÄÐÅÏ¢¶øÔì³ÉµÄÈκÎÖ±½Ó»òÕß¼ä½ÓµÄЧ¹û¼°Ëðʧ£¬¾ùÓÉʹÓÃÕß×Ô¼ºÈÏÕæ£¬AG¹«Ë¾¿Æ¼¼ÒÔ¼°Ç徲ͨ¸æ×÷Õß²»Îª´Ë¼ç¸ºÈκÎÔðÈΡ£
AG¹«Ë¾¿Æ¼¼ÓµÓжԴËÇ徲ͨ¸æµÄÐÞ¸ÄÏ¢ÕùÊÍȨ¡£ÈçÓû×ªÔØ»òÈö²¥´ËÇ徲ͨ¸æ£¬±ØÐè°ü¹Ü´ËÇ徲ͨ¸æµÄÍêÕûÐÔ£¬°üÀ¨°æÈ¨ÉùÃ÷µÈËùÓÐÄÚÈÝ¡£Î´¾AG¹«Ë¾¿Æ¼¼ÔÊÐí£¬²»µÃí§ÒâÐ޸ĻòÕßÔö¼õ´ËÇ徲ͨ¸æÄÚÈÝ£¬²»µÃÒÔÈκη½·¨½«ÆäÓÃÓÚÉÌҵĿµÄ¡£
¹ØÓÚAG¹«Ë¾¿Æ¼¼
AG¹«Ë¾£¨¼ò³ÆAG¹«Ë¾¿Æ¼¼£©½¨ÉèÓÚ2000Äê4Ô£¬×ܲ¿Î»ÓÚ±±¾©¡£ÔÚº£ÄÚÍâÉèÓÐ40¸ö·ÖÖ§»ú¹¹£¬ÎªÕþ¸®¡¢ÔËÓªÉÌ¡¢½ðÈÚ¡¢ÄÜÔ´¡¢»¥ÁªÍøÒÔ¼°½ÌÓý¡¢Ò½ÁƵÈÐÐÒµÓû§£¬Ìṩ¾ßÓн¹µã¾ºÕùÁ¦µÄÇå¾²²úÆ·¼°½â¾ö¼Æ»®£¬×ÊÖú¿Í»§ÊµÏÖÓªÒµµÄÇ徲˳³©ÔËÐС£
»ùÓÚ¶àÄêµÄÇå¾²¹¥·ÀÑо¿£¬AG¹«Ë¾¿Æ¼¼ÔÚÍøÂç¼°ÖÕ¶ËÇå¾²¡¢»¥ÁªÍø»ù´¡Çå¾²¡¢ºÏ¹æ¼°Çå¾²ÖÎÀíµÈÁìÓò£¬Îª¿Í»§ÌṩÈëÇÖ¼ì²â/·À»¤¡¢¿¹¾Ü¾ø·þÎñ¹¥»÷¡¢Ô¶³ÌÇå¾²ÆÀ¹ÀÒÔ¼°WebÇå¾²·À»¤µÈ²úÆ·ÒÔ¼°×¨ÒµÇå¾²·þÎñ¡£
AG¹«Ë¾ÓÚ2014Äê1ÔÂ29ÈÕÆðÔÚÉîÛÚ֤ȯÉúÒâËù´´Òµ°åÉÏÊУ¬¹ÉƱ¼ò³Æ£ºAG¹«Ë¾¿Æ¼¼£¬¹ÉƱ´úÂ룺300369¡£

AG¹«Ë¾ÔÆ







