΢Èí4Ô¶à¸ö°²È«·ì϶°²È«¹«¸æ

°ä²¼¹¦·ò 2019-04-11

·ì϶¸ÅÊö


4ÔÂ9ÈÕ £¬Î¢Èí°ä²¼ÁË2019Äê4Ô·ݵÄÔ¶ÈÀýÐа²È«²¼¸æ £¬½¨¸´ÁËÆä¶à¿î²úÆ·´æÔÚµÄ270¸ö°²È«·ì϶ £¬16¸öÑϳÁ·ì϶¡£ÊÜÓ°ÏìµÄ²úÆ·Ô̺¬£ºWindows 10 v1809 and Windows Server 2019£¨39¸ö£©¡¢Windows 10 v1803 Windows Server v1803£¨40¸ö£©¡¢Windows 10 v1709 Windows Server v1709£¨40¸ö£©¡¢Windows 8.1 and Windows Server 2012 R2£¨34¸ö£©¡¢Windows Server 2012£¨34¸ö£©¡¢Windows7 and Windows Server 2008 R2£¨31¸ö£©¡¢WindowsServer 2008£¨29¸ö£©¡¢Microsoft Edge£¨9¸ö£©¡¢Microsoft Office-related software£¨9¸ö£©ºÍInternet Explorer£¨5¸ö£©¡£


ÀûÓÃÉÏÊö·ì϶ £¬¹¥»÷ÕßÄܹ»ÌáÉýȨÏÞ £¬Èƹý°²È«Ö°ÄÜÏÞ¶È £¬»ñÈ¡Ãô¸ÐÐÅÏ¢ £¬Ö´ÐÐÔ¶³Ì´úÂë»òÌáÒ黨¾ø·þÎñ¹¥»÷µÈ¡£ÌáÐÑ¿í´óMicrosoftÓû§¾¡¿ìÏÂÔØ²¹¶¡¸üР£¬Ô¤·ÀÒý·¢·ì϶ÓйصÄÍøÂ簲ȫÊÂÎñ¡£


CVE 񅧏

ÑϳÁˮƽ

CVE ±êÌâ

·ìϼûèÊö

²úÆ·

ADV190011

ÑϳÁ

April 2019 Adobe Flash °²È«¸üÐÂ

´Ë°²È«¸üнâ¾öÁËÒÔÏ·ì϶ £¬ÕâЩ·ì϶ÔÚAdobe°²È«²¼¸æAPSB19-19£ºCVE-2019-7096 £¬CVE-2019-7108ÖÐÓÐËùÃèÊö¡£

Adobe Flash Player

CVE-2019-0853

ÑϳÁ

GDI+ Ô¶³Ì´úÂëÖ´Ðзì϶

WindowsͼÐÎÉ豸½Ó¿Ú£¨GDI£©´¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£ ³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£ ¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½; ²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý; »ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£ ÕÊ»§±»ÅäÖÃΪռÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§¿ÉÄܱÈʹÓÃÖÎÀíÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°ÏìÒªÓס£

Microsoft Graphics Component

CVE-2019-0739

ÑϳÁ

Scripting Engine ÄÚ´æ·ÛËé·ì϶

¾ç±¾ÒýÇæ´¦ÖÃMicrosoft EdgeÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0812

ÑϳÁ

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Chakra¾ç±¾ÒýÇæ´¦ÖÃMicrosoft EdgeÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½; ²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý; »ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0829

ÑϳÁ

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Chakra¾ç±¾ÒýÇæ´¦ÖÃMicrosoft EdgeÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£ ¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½; ²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý; »ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0753

ÑϳÁ

Scripting Engine ÄÚ´æ·ÛËé·ì϶

¾ç±¾ÒýÇæÔÚInternet ExplorerÖд¦ÖÃÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½;²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0806

ÑϳÁ

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Chakra¾ç±¾ÒýÇæ´¦ÖÃMicrosoft EdgeÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£ ¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½; ²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý; »ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0861

ÑϳÁ

Chakra Scripting Engine ÄÚ´æ·ÛËé·ì϶

Chakra¾ç±¾ÒýÇæ´¦ÖÃMicrosoft EdgeÄÚ´æÖжÔÏóµÄ·½Ê½ÖдæÔÚÒ»¸öÔ¶³ÌÖ´ÐдúÂë·ì϶¡£ ¸Ã·ì϶¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷ÕßÄܹ»ÔÚµ±Ç°Óû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂëµÄ·½Ê½À´·ÛËéÄÚ´æ¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»»ñµÃÓ뵱ǰÓû§Ò»ÑùµÄÓû§È¨ÏÞ¡£ÈôÊǵ±Ç°Óû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ £¬Ôò³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»½ÚÔìÊÜÓ°ÏìµÄϵͳ¡£ ¶øºó¹¥»÷ÕßÄܹ»×°Ö÷¨Ê½; ²é¿´ £¬¸ü¸Ä»òɾ³ýÊý¾Ý; »ò´´½¨ÓµÓÐÆëÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0845

ÑϳÁ

Windows IOleCvt Interface Ô¶³Ì´úÂëÖ´Ðзì϶

IOleCvt½Ó¿Ú³öÏÖASPÍøÒ³ÄÚÈÝʱ´æÔÚÔ¶³ÌÖ´ÐдúÂë·ì϶¡£ ³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»Ô¶³ÌÔËÐжñÒâ´úÂëÀ´½ÚÔìÓû§µÄϵͳ¡£

Microsoft Windows

CVE-2019-0790

ÑϳÁ

MS XML Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft XML Core Services MSXML·ÖÎö·¨Ê½´¦ÖÃÓû§ÊäÈëʱ´æÔÚÔ¶³ÌÖ´ÐдúÂë·ì϶¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»Ô¶³ÌÔËÐжñÒâ´úÂëÀ´½ÚÔìÓû§µÄϵͳ¡£

Microsoft XML

CVE-2019-0791

ÑϳÁ

MS XML Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft XML Core Services MSXML·ÖÎö·¨Ê½´¦ÖÃÓû§ÊäÈëʱ´æÔÚÔ¶³ÌÖ´ÐдúÂë·ì϶¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»Ô¶³ÌÔËÐжñÒâ´úÂëÀ´½ÚÔìÓû§µÄϵͳ¡£

Microsoft XML

CVE-2019-0792

ÑϳÁ

MS XML Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft XML Core Services MSXML·ÖÎö·¨Ê½´¦ÖÃÓû§ÊäÈëʱ´æÔÚÔ¶³ÌÖ´ÐдúÂë·ì϶¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»Ô¶³ÌÔËÐжñÒâ´úÂëÀ´½ÚÔìÓû§µÄϵͳ¡£

Microsoft XML

CVE-2019-0793

ÑϳÁ

MS XML Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft XML Core Services MSXML·ÖÎö·¨Ê½´¦ÖÃÓû§ÊäÈëʱ´æÔÚÔ¶³ÌÖ´ÐдúÂë·ì϶¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»Ô¶³ÌÔËÐжñÒâ´úÂëÀ´½ÚÔìÓû§µÄϵͳ¡£

Microsoft XML

CVE-2019-0795

ÑϳÁ

MS XML Ô¶³Ì´úÂëÖ´Ðзì϶

Microsoft XML Core Services MSXML·ÖÎö·¨Ê½´¦ÖÃÓû§ÊäÈëʱ´æÔÚÔ¶³ÌÖ´ÐдúÂë·ì϶¡£³É¹¦ÀûÓô˷ì϶µÄ¹¥»÷ÕßÄܹ»Ô¶³ÌÔËÐжñÒâ´úÂëÀ´½ÚÔìÓû§µÄϵͳ¡£

Microsoft XML

ADV990001

ÑϳÁ

Latest Servicing Stack Updates

ÕâÊÇÿ¸ö²Ù×÷ϵͳµÄ×îзþÎñ²Ö¿â¸üÐÂÁбí¡£ ÿµ±°ä²¼ÐµķþÎñ²Ö¿â¸üÐÂʱ £¬½«¸üдËÁбí¡£ ×°ÖÃ×îеķþÎñ²Ö¿â¸üм«¶È³ÁÒª¡£

Servicing Stack Updates

CVE-2019-0786

ÑϳÁ

SMB Server ÌØÈ¨ÌáÉý·ì϶

µ±Ö÷»ú·þÎñÆ÷ÉϵÄWindows Hyper-VÎÞ·¨ÕýÈ·ÑéÖ¤vSMBÊý¾Ý°üÊý¾Ýʱ £¬´æÔÚÔ¶³ÌÖ´ÐдúÂë·ì϶¡£³É¹¦ÀûÓÃÕâЩ·ì϶µÄ¹¥»÷ÕßÄܹ»ÔÚÖ¸±ê²Ù×÷ϵͳÉÏÖ´ÐÐËÁÒâ´úÂë¡£

Windows SMB Server


½¨¸´½¨Òé


Ŀǰ £¬Î¢Èí¹Ù·½ÒѾ­°ä²¼²¹¶¡½¨¸´ÁËÉÏÊö·ì϶ £¬½¨ÒéÓû§ÊµÊ±È·ÈÏÊÇ·ñÊܵ½·ì϶ӰÏì £¬

¾¡¿ì²ÉÈ¡½¨²¹´ëÊ© £¬ÒÔÔ¤·ÀDZÔڵݲȫÍþв¡£ÏëÒª½øÐиüР£¬Ö»Ðèתµ½ÉèÖáú¸üкͰ²È«¡úWindows ¸üСú²é³­¸üР£¬»òÕßÒ²Äܹ»Í¨¹ýÊÖ¶¯½øÐиüС£


²Î¿¼Á´½Ó


https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/18306ed5-1019-e911-a98b-000d3a33a34d