btiÌåÓý

Microsoft 2020Äê9ÔÂÇ徲ͨ¸æ

Ðû²¼Ê±¼ä£º2020-09-17 00:00:00 ×÷Õߣºadmin

9ÔÂ8ÈÕ£¬£¬Î¢ÈíÐû²¼ÁË2020Äê9Ô·ݵÄÔ¶ÈÀýÐÐÇ徲ͨ¸æ£¬£¬ÐÞ¸´ÁËÆä¶à¿î²úÆ·±£´æµÄ125¸öÇå¾²Îó²î¡£¡£¡£ÊÜÓ°ÏìµÄ²úÆ·°üÀ¨£ºWindows 10 2004 & WindowsServer v2004£¨77¸ö£©¡¢¡¢¡¢Windows 10 1909 & WindowsServer v1909£¨75¸ö£©¡¢¡¢¡¢Windows 10 1903 & WindowsServer v1903£¨76¸ö£©¡¢¡¢¡¢Windows 8.1 & Server 2012 R2£¨47¸ö£©¡¢¡¢¡¢Windows RT 8.1£¨41¸ö£©¡¢¡¢¡¢Windows Server 2012£¨45¸ö£©¡¢¡¢¡¢Microsoft Edge (EdgeHTML-based)£¨4¸ö£©¡¢¡¢¡¢Internet Explorer£¨4¸ö£©ºÍMicrosoft Office-related software£¨23¸ö£©¡£¡£¡£

ʹÓÃÉÏÊöÎó²î£¬£¬¹¥»÷Õß¿ÉÒÔÌáÉýȨÏÞ£¬£¬ÈƹýÇå¾²¹¦Ð§ÏÞÖÆ£¬£¬»ñÈ¡Ãô¸ÐÐÅÏ¢£¬£¬Ö´ÐÐÔ¶³Ì´úÂë»òÌᳫ¾Ü¾ø·þÎñ¹¥»÷µÈ¡£¡£¡£ÌáÐÑ¿í´óMicrosoftÓû§¾¡¿ìÏÂÔØ²¹¶¡¸üУ¬£¬×èÖ¹Òý·¢Îó²îÏà¹ØµÄÍøÂçÇå¾²ÊÂÎñ¡£¡£¡£

CVE񅧏

ͨ¸æÎÊÌâºÍÕªÒª

×î¸ßÑÏÖØÆ·¼¶ºÍÎó²îÓ°Ïì

ÊÜÓ°ÏìµÄÈí¼þ

CVE-2020-0718   

Active DirectoryÔ¶³Ì´úÂëÖ´ÐÐÎó²î

µ±Active Directory integrated DNS (ADIDNS) ¹ýʧ´¦ÀíÄÚ´æÖеŤ¾ßʱ£¬£¬±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¾­ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔÔÚÍâµØÏµÍ³ÕÊ»§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£

ҪʹÓôËÎó²î¾ÙÐй¥»÷£¬£¬¾­ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔÏòActive Directory integrated   DNS (ADIDNS) ·þÎñÆ÷·¢ËͶñÒâÇëÇ󡣡£¡£

´Ë¸üÐÂͨ¹ý¸üÕýActive Directory integrated   DNS (ADIDNS) ´¦ÀíÄÚ´æÖй¤¾ßµÄ·½Ê½À´½â¾ö´ËÎó²î¡£¡£¡£

Ö÷Òª

Ô¶³Ì´úÂëÖ´ÐР 

Server 2016

Server 2019

Server, version 1903

Server, version 1909

Server, version 2004

Server 2012

Server 2012 R2   

CVE-2020-0922

Microsoft COM for WindowsÔ¶³Ì´úÂëÖ´ÐÐÎó²î

Microsoft COM for Windows´¦ÀíÄÚ´æÖеŤ¾ß±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£

ҪʹÓôËÎó²î£¬£¬Óû§±ØÐè·­¿ªÌØÖÆÎļþ»ò½«Ä¿µÄÒýÓÕµ½ÍйܶñÒâJavaScriptµÄÍøÕ¾¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýMicrosoft COM for Windows´¦ÀíÄÚ´æÖй¤¾ßµÄ·½Ê½À´½â¾ö´ËÎó²î¡£¡£¡£

ÑÏÖØ

Ô¶³Ì´úÂëÖ´ÐÐ

Windows 10

Server 2016

Server 2019

Server, version 1903

Server, version 1909

Server, version 2004

Windows 8.1

Server 2012

Server 2012 R2

CVE-2020-1129

Microsoft Windows Codecs LibraryÔ¶³ÌÖ´ÐдúÂëÎó²î

Microsoft Windows Codecs Library´¦ÀíÄÚ´æÖеŤ¾ß±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñÊØÐÅÏ¢£¬£¬ÒÔ½øÒ»²½Î£º¦Óû§µÄϵͳ¡£¡£¡£

ʹÓôËÎó²îÐèÒª³ÌÐò´¦Àí¾­ÌØÊâÉè¼ÆµÄͼÏñÎļþ¡£¡£¡£

´Ë¸üÐÂͨ¹ý¸üÕýMicrosoft Windows Codecs   LibraryÈçÄÇÀïÖÃÄÚ´æÖеŤ¾ßÀ´½â¾öÎó²î¡£¡£¡£

ÑÏÖØ

Ô¶³Ì´úÂëÖ´ÐÐ

Windows 10

Server 2016

Server 2019

Server, version 1903

Server, version 1909

Server, version 2004 

CVE-2020-1319

Microsoft Windows Codecs LibraryÔ¶³Ì´úÂëÖ´ÐÐÎó²î

Microsoft Windows Codecs Library´¦ÀíÄÚ´æÖеŤ¾ß±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£È»ºó£¬£¬¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò¡£¡£¡£Éó²é£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£

ʹÓôËÎó²îÐèÒª³ÌÐò´¦Àí¾­ÌØÊâÉè¼ÆµÄͼÏñÎļþ¡£¡£¡£

´Ë¸üÐÂͨ¹ý¸üÕýMicrosoft Windows Codecs   LibraryÈçÄÇÀïÖÃÄÚ´æÖеŤ¾ßÀ´½â¾öÎó²î¡£¡£¡£

ÑÏÖØ

Ô¶³Ì´úÂëÖ´ÐÐ

Windows 10

Server 2016

Server 2019

Server, version 1903

Server, version 1909

Server, version 2004

Windows 8.1

Server 2012

Server 2012 R2

CVE-2020-0908

Windows Text ServiceÄ£¿éÔ¶³ÌÖ´ÐдúÂëÎó²î

µ±Windows Text ServiceÄ£¿éδÄÜ׼ȷ´¦ÀíÄÚ´æÊ±£¬£¬±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÊܺ¦ÕßϵͳÉÏÖ´ÐС£¡£¡£

¹¥»÷Õß¿Éͨ¹ýMicrosoft Edge£¨»ùÓÚChromium£©Ê¹ÓøÃÎó²îµÄÌØÖÆÍøÕ¾£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔͨ¹ýÌí¼Ó¿ÉÒÔʹÓôËÎó²îµÄÌØÊâÉè¼ÆµÄÄÚÈÝ£¬£¬À´Ê¹ÓÃÊÜѬȾµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£ÔÚËùÓÐÇéÐÎÏ£¬£¬¹¥»÷Õß¶¼ÎÞ·¨Ç¿ÆÈÓû§Éó²é¹¥»÷Õß¿ØÖƵÄÄÚÈÝ¡£¡£¡£Ïà·´£¬£¬¹¥»÷Õß±ØÐèÓÕʹÓû§½ÓÄɲ½·¥£¬£¬Í¨³£ÊÇͨ¹ýÓÕʹµç×ÓÓʼþ»òInstant MessengerÐÂÎÅ£¬£¬»òÕßÓÕʹÓû§·­¿ªÍ¨¹ýµç×ÓÓʼþ·¢Ë͵ĸ½¼þ¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýWindows Text ServiceÄ£¿é´¦ÀíÄÚ´æµÄ·½Ê½À´½â¾öÎó²î¡£¡£¡£

ÑÏÖØ

Ô¶³Ì´úÂëÖ´ÐÐ

Windows 10

Server 2016

Server 2019

Server, version 1903

Server, version 1909

Server, version 2004

CVE-2020-1285

GDI +Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Windows Graphics Device Interface (GDI) ´¦ÀíÄÚ´æÖеŤ¾ß±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£È»ºó£¬£¬¹¥»÷Õß¿ÉÄÜ»á×°ÖóÌÐò¡£¡£¡£Éó²é£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£ÓëʹÓÃÖÎÀíÓû§È¨ÏÞ¾ÙÐвÙ×÷µÄÓû§Ïà±È£¬£¬½«ÆäÕÊ»§ÉèÖÃΪÔÚϵͳÉϾßÓнÏÉÙÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì½ÏС¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýWindows GDI´¦ÀíÄÚ´æÖй¤¾ßµÄ·½Ê½À´½â¾öÎó²î¡£¡£¡£

ÑÏÖØ

Ô¶³Ì´úÂëÖ´ÐÐ

Windows 10

Server 2016

Server 2019

Server, version 1903

Server, version 1909

Server, version 2004

Windows 8.1

Server 2012

Server 2012 R2

CVE-2020-1508

Windows Media Audio DecoderÔ¶³Ì´úÂëÖ´ÐÐÎó²î

µ±Windows Media Audio DecoderδÄÜ׼ȷµØ´¦Àí¹¤¾ßʱ£¬£¬±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£

¹¥»÷Õß¿ÉÒÔͨ¹ý¶àÖÖ·½Ê½Ê¹ÓôËÎó²î£¬£¬ÀýÈç˵·þÓû§·­¿ª¹¹½¨µÄÎĵµ£¬£¬»ò˵·þÓû§»á¼û¶ñÒâÍøÒ³¡£¡£¡£

Çå¾²¸üÐÂͨ¹ý¸üÕýWindows Media Audio Decoder´¦Àí¹¤¾ßµÄ·½Ê½À´½â¾ö¸ÃÎó²î¡£¡£¡£

ÑÏÖØ

Ô¶³Ì´úÂëÖ´ÐÐ

Windows 10

Server 2016

Server 2019

Server, version 1903

Server, version 1909

Server, version 2004

Windows 8.1

Server 2012

Server 2012 R2

CVE-2020-0836

Windows DNS¾Ü¾ø·þÎñÎó²î

Windows DNSδÄÜ׼ȷ´¦ÀíÅÌÎÊʱ£¬£¬±£´æ¾Ü¾ø·þÎñÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÄܵ¼ÖÂDNS·þÎñÎÞÏìÓ¦¡£¡£¡£

ΪÁËʹÓôËÎó²î£¬£¬¾­ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔ½«¶ñÒâDNSÅÌÎÊ·¢Ë͵½Ä¿µÄ£¬£¬´Ó¶øµ¼Ö¾ܾø·þÎñ¡£¡£¡£

´Ë¸üÐÂͨ¹ý¸üÕýWindows DNS´¦ÀíÅÌÎʵķ½Ê½À´½â¾öÎó²î¡£¡£¡£

Ö÷Òª

¾Ü¾ø·þÎñ

Server 2016

Server 2019

Server, version 1903

Server, version 1909

Server, version 2004

Server 2012

Server 2012 R2

CVE-2020-1012

WinINet APIÌáÉýȨÏÞÎó²î

Wininit.dll´¦ÀíÄÚ´æÖеŤ¾ß±£´æÈ¨ÏÞÌáÉýÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÒÔÌáÉýµÄȨÏÞÖ´ÐдúÂë¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ýÈ·±£Wininit.dll׼ȷ´¦ÀíÄÚ´æÖеŤ¾ßÀ´½â¾ö´ËÎó²î¡£¡£¡£

Ö÷Òª

ÌØÈ¨ÌáÉý

Internet Explorer 11

CVE-2020-0878

Microsoft BrowserÄÚ´æÆÆËðÎó²î

Microsoft browsers»á¼ûÄÚ´æÖй¤¾ßµÄ·½Ê½Öб£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖÔÊÐí¹¥»÷ÕßÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½Ê½À´ÆÆËðÄÚ´æ¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬Ôò¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£È»ºó£¬£¬¹¥»÷Õß¿ÉÄÜ»á×°ÖóÌÐò¡£¡£¡£Éó²é£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£

¹¥»÷Õß¿Éͨ¹ýMicrosoft browsersʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔͨ¹ýÌí¼Ó¿ÉÒÔʹÓôËÎó²îµÄ¾­ÌØÊâÉè¼ÆµÄÄÚÈÝ£¬£¬À´Ê¹ÓÃÊÜѬȾµÄÍøÕ¾»ò½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£ÔÚËùÓÐÇéÐÎÏ£¬£¬¹¥»÷Õß¶¼ÎÞ·¨Ç¿ÆÈÓû§Éó²é¹¥»÷Õß¿ØÖƵÄÄÚÈÝ¡£¡£¡£Ïà·´£¬£¬¹¥»÷Õß±ØÐè˵·þÓû§½ÓÄɲ½·¥£¬£¬Í¨³£ÊÇͨ¹ýÓÕʹµç×ÓÓʼþ»ò¼´Ê±ÐÂÎÅ£¬£¬»òÕßÓÕʹÓû§·­¿ªµç×ÓÓʼþ¸½¼þ¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄMicrosoft browsers´¦ÀíÄÚ´æÖй¤¾ßµÄ·½Ê½À´½â¾ö´ËÎó²î¡£¡£¡£

ÑÏÖØ

Ô¶³Ì´úÂëÖ´ÐÐ

Internet Explorer 11

Internet Explorer 9

Microsoft Edge(EdgeHTML-based)

ChakraCore

CVE-2020-16884

Internet Explorer Browser Helper Object (BHO) ÄÚ´æÆÆËðÎó²î

Internet ExplorerÉϵÄIEToEdge Browser Helper Object (BHO)²å¼þ´¦ÀíÄÚ´æÖеŤ¾ßµÄ·½Ê½±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½Ê½À´ÆÆËðÄÚ´æ¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£

ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬¹¥»÷Õß¿ÉʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¹¥»÷ÕßÎÞ·¨Ç¿ÆÈÓû§Éó²é¹¥»÷Õß¿ØÖƵÄÄÚÈÝ¡£¡£¡£Ïà·´£¬£¬¹¥»÷Õß±ØÐè˵·þÓû§½ÓÄɲ½·¥£¬£¬Í¨³£ÊÇÈÃÓû§µ¥»÷µç×ÓÓʼþ»òInstant MessengerÐÂÎÅÖеÄÁ´½Ó£¨½«Óû§´øµ½¹¥»÷ÕßµÄÍøÕ¾£©£¬£¬»òÕß·­¿ªÍ¨¹ýµç×ÓÓʼþ·¢Ë͵ĸ½¼þ¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£È»ºó£¬£¬¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò¡£¡£¡£Éó²é£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄIEToEdge BHO²å¼þ´¦ÀíÄÚ´æÖй¤¾ßµÄ·½Ê½À´½â¾ö¸ÃÎó²î¡£¡£¡£

Ö÷Òª

Ô¶³Ì´úÂëÖ´ÐÐ

Internet Explorer 11

Microsoft Edge (Chromium based)

CVE-2020-1210

Microsoft SharePointÔ¶³Ì´úÂëÖ´ÐÐÎó²î

µ±Èí¼þδÄܼì²éÓ¦ÓóÌÐò°üµÄÔ´±ê¼Çʱ£¬£¬Microsoft SharePoint±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚSharePointÓ¦ÓóÌÐò³ØºÍSharePoint·þÎñÆ÷³¡ÕÊ»§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£

ҪʹÓôËÎó²î£¬£¬ÐèÒªÓû§½«ÌØÖƵÄSharePointÓ¦ÓóÌÐò°üÉÏ´«µ½ÊÜÓ°ÏìµÄSharePoint°æ±¾¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýSharePointÔõÑù¼ì²éÓ¦ÓóÌÐò°üµÄÔ´±ê¼ÇµÄ·½Ê½À´½â¾öÎó²î¡£¡£¡£

ÑÏÖØ

Ô¶³Ì´úÂëÖ´ÐÐ

SharePoint Server 2010

SharePoint Enterprise

Server 2013

SharePoint Enterprise

Server 2016

SharePoint Server 2019

Business Prod Servers 2010

CVE-2020-1595

Microsoft SharePointÔ¶³Ì´úÂëÖ´ÐÐÎó²î

Microsoft SharePoint´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬ÔÚ¸ÃÎó²îÖУ¬£¬Î´ÄÜ׼ȷ±£»¤APIÃâÊܲ»Çå¾²Êý¾ÝÊäÈëµÄ¹¥»÷¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚSharePointÓ¦ÓóÌÐò³ØºÍSharePoint·þÎñÆ÷³¡ÕÊ»§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£

ʹÓôËÎó²îÒªÇóÓû§Ê¹ÓÃÌØÊâÃûÌõÄÊäÈëÔÚÊÜÓ°ÏìµÄSharePoint°æ±¾ÉÏ»á¼ûÒ×ÊÜѬȾµÄAPI¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýSharePoint´¦Àí²»ÐÅÈÎÊý¾ÝµÄ·´ÐòÁл¯µÄ·½Ê½À´½â¾ö´ËÎó²î¡£¡£¡£

ÑÏÖØ

Ô¶³Ì´úÂëÖ´ÐÐ

SharePoint Foundation 2013

SharePoint Enterprise Server 2013

SharePoint Enterprise Server 2016

SharePoint Server 2019

CVE-2020-1218

Microsoft WordÔ¶³Ì´úÂëÖ´ÐÐÎó²î

µ±Microsoft WordÈí¼þδÄÜ׼ȷ´¦ÀíÄÚ´æÖеŤ¾ßʱ£¬£¬±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔʹÓÃÌØÖÆÎļþÔÚÄ¿½ñÓû§µÄÇå¾²ÉÏÏÂÎÄÖÐÖ´ÐвÙ×÷¡£¡£¡£ÀýÈ磬£¬ÎļþÈ»ºó¿ÉÒÔ´ú±íµÇÈÎÃü»§Ö´ÐÐÓëÄ¿½ñÓû§ÏàͬµÄȨÏÞÀ´Ö´ÐвÙ×÷¡£¡£¡£

ҪʹÓôËÎó²î£¬£¬Óû§±ØÐèʹÓÃÊÜÓ°ÏìµÄMicrosoft WordÈí¼þ°æ±¾·­¿ªÌØÖÆÎļþ¡£¡£¡£ÔÚµç×ÓÓʼþ¹¥»÷ÇéÐÎÖУ¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ý½«ÌØÖÆÎļþ·¢Ë͸øÓû§²¢Ëµ·þÓû§·­¿ªÎļþÀ´Ê¹ÓôËÎó²î¡£¡£¡£ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÍøÕ¾£¨»òʹÓÃÊÜѬȾµÄÍøÕ¾À´½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ£©£¬£¬¸ÃÍøÕ¾°üÀ¨Ö¼ÔÚʹÓôËÎó²îµÄÌØÖÆÎļþ¡£¡£¡£¹¥»÷ÕßÎÞ·¨Ç¿ÆÈÓû§»á¼û¸ÃÍøÕ¾¡£¡£¡£Ïà·´£¬£¬¹¥»÷Õß±ØÐèÓÕʹÓû§µ¥»÷Á´½Ó£¨Í¨³£ÊÇͨ¹ýÓÕʹµç×ÓÓʼþ»òInstant MessengerÐÂÎŵķ½Ê½£©£¬£¬È»ºóÓÕʹÓû§·­¿ªÌØÖÆÎļþ¡£¡£¡£

¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýMicrosoft Word´¦ÀíÄÚ´æÖÐÎļþµÄ·½Ê½À´½â¾ö´ËÎó²î¡£¡£¡£

Ö÷Òª

Ô¶³Ì´úÂëÖ´ÐÐ

Word 2010/2013/2016

Office 2010

Office 2019

365 Apps Enterprise

SharePoint Server 2010

SharePoint Enterprise

Server 2013

SharePoint Enterprise

Server 2016

SharePoint Server 2019

Office Online Server

Office Web Apps 2010

Office 2016/2019 for Mac

CVE-2020-1335

Microsoft ExcelÔ¶³Ì´úÂëÖ´ÐÐÎó²î

µ±Microsoft ExcelÈí¼þδÄÜ׼ȷ´¦ÀíÄÚ´æÖеŤ¾ßʱ£¬£¬¸ÃÈí¼þÖб£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£È»ºó£¬£¬¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò£»Éó²é¡¢¡¢¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£ÓëʹÓÃÖÎÀíÓû§È¨ÏÞ²Ù×÷µÄÓû§Ïà±È£¬£¬ÕÊ»§ÉèÖÃΪÔÚϵͳÉϾßÓнÏÉÙÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì½ÏС¡£¡£¡£

ʹÓôËÎó²îÐèÒªÓû§Ê¹ÓÃÊÜÓ°ÏìµÄMicrosoft Excel°æ±¾·­¿ª¹¹½¨µÄÎļþ¡£¡£¡£ÔÚµç×ÓÓʼþ¹¥»÷³¡¾°ÖУ¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ýÏòÓû§·¢Ë͹¹½¨µÄÎļþ²¢Ëµ·þÓû§·­¿ª¸ÃÎļþÀ´Ê¹ÓøÃÎó²î¾ÙÐй¥»÷¡£¡£¡£ÔÚ»ùÓÚwebµÄ¹¥»÷³¡¾°ÖУ¬£¬¹¥»÷Õß¿ÉÒÔÍйÜÒ»¸öÍøÕ¾£¨»òʹÓýÓÊÜ»òÍйÜÓû§ÌṩÄÚÈݵÄÊÜËðÍøÕ¾£©£¬£¬¸ÃÍøÕ¾°üÀ¨È«ÐÄÌåÀýµÄÎļþ£¬£¬Ö¼ÔÚʹÓôËÎó²î¾ÙÐй¥»÷¡£¡£¡£¹¥»÷ÕßÎÞ·¨Ç¿ÆÈÓû§»á¼û¸ÃÍøÕ¾¡£¡£¡£Ïà·´£¬£¬¹¥»÷Õß±ØÐè˵·þÓû§µ¥»÷Á´½Ó£¬£¬Í¨³£ÊÇͨ¹ýµç×ÓÓʼþ»ò¼´Ê±ÐÂÎÅÖеÄÓջ󣬣¬È»ºó˵·þÓû§·­¿ªÈ«ÐÄÌåÀýµÄÎļþ¡£¡£¡£

Çå¾²¸üÐÂͨ¹ý¸üÕýMicrosoft ExcelÈçÄÇÀïÖÃÄÚ´æÖеŤ¾ßÀ´½â¾ö¸ÃÎó²î¡£¡£¡£

Ö÷Òª

Ô¶³Ì´úÂëÖ´ÐÐ

Excel 2010/2013/2016

Office 2010/2013/2016/2019

365 Apps Enterprise

SharePoint Server 2019

Office Online Server

²Î¿¼ÐÅÏ¢£º

https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/2020-Sep

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/adv990001

 


¡¾ÍøÕ¾µØÍ¼¡¿
_visitcount?siteId=156&type=3&articleId=143016