¡¾Ç徲ͨ¸æ¡¿Î¢Èí6ÔÂÇå¾²¸üжà¸ö²úÆ·¸ßΣÎó²îͨ¸æ
2021-06-10
Ò». Îó²î¸ÅÊö
6ÔÂ9ÈÕ£¬AG¹«Ë¾¿Æ¼¼CERT¼à²âµ½Î¢ÈíÐû²¼6ÔÂÇå¾²¸üв¹¶¡£¬ÐÞ¸´ÁË50¸öÇå¾²Îó²î£¬Éæ¼°Windows¡¢Microsoft Office¡¢Microsoft Edge¡¢Visual Studio ¡¢SharePoint ServerµÈÆÕ±éʹÓõIJúÆ·£¬ÆäÖаüÀ¨Ô¶³Ì´úÂëÖ´ÐкÍȨÏÞÌáÉýµÈ¸ßΣÎó²îÀàÐÍ¡£
±¾ÔÂ΢ÈíÔ¶ȸüÐÂÐÞ¸´µÄÎó²îÖУ¬ÑÏÖØË®Æ½ÎªÒªº¦£¨Critical£©µÄÎó²îÓÐ5¸ö£¬Ö÷Òª£¨Important£©Îó²îÓÐ45¸ö¡£ÇëÏà¹ØÓû§¾¡¿ì¸üв¹¶¡¾ÙÐзÀ»¤¡£ÍêÕûÎó²îÁбíÇë²Î¿¼¸½Â¼¡£
AG¹«Ë¾Ô¶³ÌÇå¾²ÆÀ¹Àϵͳ£¨RSAS£©ÒѾ߱¸Î¢Èí´Ë´Î²¹¶¡¸üÐÂÖдó´ó¶¼Îó²îµÄ¼ì²âÄÜÁ¦£¨°üÀ¨CVE-2021-31959¡¢CVE-2021-31963¡¢CVE-2021-33742µÈ¸ßΣÎó²î£©£¬ÇëÏà¹ØÓû§¹Ø×¢AG¹«Ë¾Ô¶³ÌÇå¾²ÆÀ¹Àϵͳϵͳ²å¼þÉý¼¶°üµÄ¸üУ¬ÊµÊ±Éý¼¶ÖÁV6.0R02F01.2305£¬¹ÙÍøÁ´½Ó£ºhttp://update.nsfocus.com/update/listRsasDetail/v/vulsys¡£
²Î¿¼Á´½Ó£º
https://msrc.microsoft.com/update-guide/en-us/releaseNote/2021-Jun
¶þ. ÖØµãÎó²î¼òÊö
ƾ֤²úÆ·Ê¢ÐжȺÍÎó²îÖ÷ÒªÐÔɸѡ³ö´Ë´Î¸üÐÂÖаüÀ¨Ó°Ïì½Ï´óµÄÎó²î£¬ÇëÏà¹ØÓû§Öصã¾ÙÐйØ×¢£º
Windows MSHTML Platform Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2021-33742£©£º
Windows MSHTML Platform±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¸ÃÎó²îÓÉMSHTMLµÄäÖȾÒýÇæ Tridentµ¼Ö£¬Î´ÊÚȨµÄÔ¶³Ì¹¥»÷Õß¿Éͨ¹ýÓÕµ¼Óû§·¿ªÌØÖÆÎļþ»ò»á¼û¶ñÒâÍøÕ¾¾ÙÐÐʹÓ㬴Ӷø¿ØÖÆÓû§ÅÌËã»úϵͳ£¬ÏÖÔÚ´ËÎó²îÒÑ·¢Ã÷ÔÚҰʹÓá£
¹Ù·½Í¨¸æÁ´½Ó£º
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-33742
Microsoft Defender Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2021-31985£©£º
Microsoft Defender±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¸ÃÎó²î¿ÉÈÆ¹ýDefenderµÄ·ÀÓùÕ½ÂÔ£¬¹¥»÷Õßͨ¹ý½á¹¹ÌØÖƵĶþ½øÖƳÌÐò²¢ÓÕµ¼Óû§·¿ª£¬¼´¿ÉÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£
¹Ù·½Í¨¸æÁ´½Ó£º
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-31985
Microsoft SharePoint Server Ô¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2021-31963£©£º
Microsoft SharePoint Server±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬¾ÓÉÉí·ÝÈÏÖ¤µÄ¹¥»÷Õß¿Éͨ¹ý½á¹¹¶ñÒâhttpÇëÇóÖ´Ðз´ÐòÁл¯¹¥»÷£¬´Ó¶ø½ÓÊÜÄ¿µÄ·þÎñÆ÷¡£
¹Ù·½Í¨¸æÁ´½Ó£º
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-31963
Kerberos AppContainer Çå¾²¹¦Ð§ÈƹýÎó²î£¨CVE-2021-31962£©£º
Kerberos AppContainer ±£´æÇå¾²¹¦Ð§ÈƹýÎó²î£¬´ËÎó²îÔÊÐí¹¥»÷ÕßÈÆ¹ý Kerberos Éí·ÝÑéÖ¤£¬¶Ôí§Òâ·þÎñÖ÷ÌåÃû³Æ¾ÙÐÐÉí·ÝÑéÖ¤¡£
¹Ù·½Í¨¸æÁ´½Ó£º
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-31962
Windows Print Spooler ȨÏÞÌáÉýÎó²î£¨CVE-2021-1675£©£º
Windows Print Spooler ±£´æÈ¨ÏÞÌáÉýÎó²î£¬Print SpoolerÊÇWindowsϵͳÖÐÓÃÓÚÖÎÀí´òÓ¡Ïà¹ØÊÂÎñµÄ·þÎñ£¬Î¢ÈíÔÚͨ¸æÖн«¸ÃÎó²î±ê¼ÇΪImportant¼¶±ðµÄÍâµØÈ¨ÏÞÌáÉýÎó²î£¬µ«ÏÖʵÉÏÔÚÓòÇéÐÎÖкÏÊʵÄÌõ¼þÏ£¬ÎÞÐèÈκÎÓû§½»»¥£¬Î´ÊÚȨµÄÔ¶³Ì¹¥»÷Õ߾ͿÉÒÔʹÓøÃÎó²îÒÔSYSTEMȨÏÞÔÚÓò¿ØÖÆÆ÷ÉÏÖ´ÐÐí§Òâ´úÂë¡£
¹Ù·½Í¨¸æÁ´½Ó£º
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-1675
Microsoft Enhanced Cryptographic Provider ȨÏÞÌáÉýÎó²î£¨CVE-2021-31199/CVE-2021-31201£©£º
Microsoft Enhanced Cryptographic Provider±£´æÁ½¸öȨÏÞÌáÉýÎó²î£¨CVE-2021-31199/CVE-2021-31201£©£¬ÍâµØ¹¥»÷Õß¿ÉÒÔÈÆ¹ýMicrosoft Enhanced Cryptographic ProviderµÄÇå¾²ÏÞÖÆ¶ÁÈ¡ºÍÐÞ¸ÄÊÜÏÞÖÆµÄÐÅÏ¢¡£ÕâÁ½¸öÎó²î±»¹¥»÷ÕßÓÃÓÚÓëAdobe ReaderµÄÎó²î£¨CVE-2021-28550£©ÍŽáʹÓ㬹¥»÷Õßͨ¹ýÓÕµ¼Óû§·¿ªÌØÖÆµÄ PDFÎļþ£¬´Ó¶øÊµÏÖÔ¶³Ìí§Òâ´úÂëÖ´ÐС£ÏÖÔÚÒÑ·¢Ã÷ÔÚҰʹÓá£
¹Ù·½Í¨¸æÁ´½Ó£º
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-31199
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-31201
Windows NTFS ȨÏÞÌáÉýÎó²î£¨CVE-2021-31956£©£º
Windows NTFS±£´æÈ¨ÏÞÌáÉýÎó²î£¬´ËÎó²îΪntfs.sys ÖлùÓڶѵĻº³åÇøÒç³öÎó²î£¬¾ÓÉÉí·ÝÈÏÖ¤µÄ¹¥»÷Õß¿Éͨ¹ýÔËÐÐÌØÖÆµÄ³ÌÐò¾ÙÐÐϵͳÌáȨ¡£¹¥»÷Õßͨ³£Í¨¹ýÓÕµ¼Óû§·¿ªÌØÖƵÄÎļþÀ´Ê¹ÓôËÎó²î¡£¸ÃÎó²îÓÉ¿¨°Í˹»ùµÄÑо¿Ö°Ô±·¢Ã÷£¬²¢½«Æä¹ØÁªµ½PuzzleMaker Group£¬¸Ã×éÖ¯½«´ËÎó²îÓëWindows KernelÐÅϢй¶Îó²î£¨CVE-2021-31955£©ÒÔ¼°ChromeÔ¶³Ì´úÂëÖ´ÐÐÎó²îÍŽáʹÓ㬿ÉʵÏÖChromeɳÏäÌÓÒݲ¢»ñȡĿµÄϵͳȨÏÞ¡£ÏÖÔÚÒÑ·¢Ã÷ÔÚҰʹÓá£
¹Ù·½Í¨¸æÁ´½Ó£º
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-31956
Microsoft DWM Core Library ȨÏÞÌáÉýÎó²î£¨CVE-2021-33739£©£º
Microsoft DWM Core Library±£´æÈ¨ÏÞÌáÉýÎó²î£¬¾ÓÉÉí·ÝÈÏÖ¤µÄ¹¥»÷Õß¿Éͨ¹ýÔËÐÐÌØÖÆµÄ³ÌÐò¾ÙÐÐÌáȨ¡£¹¥»÷Õßͨ³£Í¨¹ýÓÕµ¼Óû§·¿ªÌØÖƵÄÎļþÀ´Ê¹ÓôËÎó²î¡£ÏÖÔÚ¸ÃÎó²îϸ½ÚÒѹûÕæ£¬ÇÒÒÑ·¢Ã÷ÔÚҰʹÓá£
¹Ù·½Í¨¸æÁ´½Ó£º
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-33739
Èý. Ó°Ïì¹æÄ£
ÒÔÏÂÎªÖØµã¹Ø×¢Îó²îµÄÊÜÓ°Ïì²úÆ·°æ±¾£¬ÆäËûÎó²îÓ°Ïì²úÆ·¹æÄ£Çë²ÎÔĹٷ½Í¨¸æÁ´½Ó¡£
|
Îó²î±àºÅ |
ÊÜÓ°Ïì²úÆ·°æ±¾ |
|
CVE-2021-33742 |
Windows Server 2012 R2 Windows Server 2012 Windows Server 2008 R2 for x64-based Systems Service Pack 1 Windows Server 2008 for x64-based Systems Service Pack 2 Windows Server 2008 for 32-bit Systems Service Pack 2 Windows RT 8.1 Windows 8.1 for x64-based systems Windows 8.1 for 32-bit systems Windows 7 for x64-based Systems Service Pack 1 Windows 7 for 32-bit Systems Service Pack 1 Windows Server 2016 Windows 10 Version 1607 for x64-based Systems Windows 10 Version 1607 for 32-bit Systems Windows 10 for x64-based Systems Windows 10 for 32-bit Systems Windows 10 Version 20H2 for ARM64-based Systems Windows 10 Version 20H2 for 32-bit Systems Windows 10 Version 20H2 for x64-based Systems Windows 10 Version 2004 for x64-based Systems Windows 10 Version 2004 for ARM64-based Systems Windows 10 Version 2004 for 32-bit Systems Windows 10 Version 21H1 for 32-bit Systems Windows 10 Version 21H1 for ARM64-based Systems Windows 10 Version 21H1 for x64-based Systems Windows 10 Version 1909 for ARM64-based Systems Windows 10 Version 1909 for x64-based Systems Windows 10 Version 1909 for 32-bit Systems Windows Server 2019 Windows 10 Version 1809 for ARM64-based Systems Windows 10 Version 1809 for x64-based Systems Windows 10 Version 1809 for 32-bit Systems |
|
CVE-2021-31985 |
Microsoft Malware Protection Engine < 1.1.18200.3 |
|
CVE-2021-31963 |
Microsoft SharePoint Foundation 2013 Service Pack 1 Microsoft SharePoint Server 2019 Microsoft SharePoint Enterprise Server 2013 Service Pack 1 Microsoft SharePoint Enterprise Server 2016 |
|
CVE-2021-31962 CVE-2021-1675 CVE-2021-31199 CVE-2021-31201 CVE-2021-31956 |
Windows Server 2012 R2 (Server Core installation) Windows Server 2012 R2 Windows Server 2012 (Server Core installation) Windows Server 2012 Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation) Windows Server 2008 R2 for x64-based Systems Service Pack 1 Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation) Windows Server 2008 for x64-based Systems Service Pack 2 Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation) Windows Server 2008 for 32-bit Systems Service Pack 2 Windows RT 8.1 Windows 8.1 for x64-based systems Windows 8.1 for 32-bit systems Windows 7 for x64-based Systems Service Pack 1 Windows 7 for 32-bit Systems Service Pack 1 Windows Server 2016 (Server Core installation) Windows Server 2016 Windows 10 Version 1607 for x64-based Systems Windows 10 Version 1607 for 32-bit Systems Windows 10 for x64-based Systems Windows 10 for 32-bit Systems Windows Server, version 20H2 (Server Core Installation) Windows 10 Version 20H2 for ARM64-based Systems Windows 10 Version 20H2 for 32-bit Systems Windows 10 Version 20H2 for x64-based Systems Windows Server, version 2004 (Server Core installation) Windows 10 Version 2004 for x64-based Systems Windows 10 Version 2004 for ARM64-based Systems Windows 10 Version 2004 for 32-bit Systems Windows 10 Version 21H1 for 32-bit Systems Windows 10 Version 21H1 for ARM64-based Systems Windows 10 Version 21H1 for x64-based Systems Windows 10 Version 1909 for ARM64-based Systems Windows 10 Version 1909 for x64-based Systems Windows 10 Version 1909 for 32-bit Systems Windows Server 2019 (Server Core installation) Windows Server 2019 Windows 10 Version 1809 for ARM64-based Systems Windows 10 Version 1809 for x64-based Systems Windows 10 Version 1809 for 32-bit Systems |
|
CVE-2021-33739 |
Windows Server, version 20H2 (Server Core Installation) Windows 10 Version 20H2 for ARM64-based Systems Windows 10 Version 20H2 for 32-bit Systems Windows 10 Version 20H2 for x64-based Systems Windows Server, version 2004 (Server Core installation) Windows 10 Version 2004 for x64-based Systems Windows 10 Version 2004 for ARM64-based Systems Windows 10 Version 2004 for 32-bit Systems Windows 10 Version 21H1 for 32-bit Systems Windows 10 Version 21H1 for ARM64-based Systems Windows 10 Version 21H1 for x64-based Systems Windows 10 Version 1909 for ARM64-based Systems Windows 10 Version 1909 for x64-based Systems Windows 10 Version 1909 for 32-bit Systems |
ËÄ. Îó²î·À»¤
4.1 ²¹¶¡¸üÐÂ
ÏÖÔÚ΢Èí¹Ù·½ÒÑÕë¶ÔÊÜÖ§³ÖµÄ²úÆ·°æ±¾Ðû²¼ÁËÐÞ¸´ÒÔÉÏÎó²îµÄÇå¾²²¹¶¡£¬Ç¿ÁÒ½¨ÒéÊÜÓ°ÏìÓû§¾¡¿ì×°Öò¹¶¡¾ÙÐзÀ»¤£¬¹Ù·½ÏÂÔØÁ´½Ó£º
https://msrc.microsoft.com/update-guide/en-us/releaseNote/2021-Jun
×¢£ºÓÉÓÚÍøÂçÎÊÌâ¡¢ÅÌËã»úÇéÐÎÎÊÌâµÈÔµ¹ÊÔÓÉ£¬Windows UpdateµÄ²¹¶¡¸üпÉÄÜ·ºÆðʧ°Ü¡£Óû§ÔÚ×°Öò¹¶¡ºó£¬Ó¦ÊµÊ±¼ì²é²¹¶¡ÊÇ·ñÀֳɸüС£
ÓÒ¼üµã»÷Windowsͼ±ê£¬Ñ¡Ôñ“ÉèÖÃ(N)”£¬Ñ¡Ôñ“¸üкÍÇå¾²”-“Windows¸üД£¬Éó²é¸ÃÒ³ÃæÉϵÄÌáÐÑÐÅÏ¢£¬Ò²¿Éµã»÷“Éó²é¸üÐÂÀúÊ·¼Í¼”Éó²éÀúÊ·¸üÐÂÇéÐΡ£
Õë¶ÔδÀÖ³É×°ÖõĸüУ¬¿Éµã»÷¸üÐÂÃû³ÆÌø×ªµ½Î¢Èí¹Ù·½ÏÂÔØÒ³Ãæ£¬½¨ÒéÓû§µã»÷¸ÃÒ³ÃæÉϵÄÁ´½Ó£¬×ªµ½“Microsoft¸üÐÂĿ¼”ÍøÕ¾ÏÂÔØ×ÔÁ¦³ÌÐò°ü²¢×°Öá£

AG¹«Ë¾ÔÆ







