¡¾·ì϶¹«¸æ¡¿Î¢Èí5Ô¶à¸ö°²È«·ì϶
°ä²¼¹¦·ò 2024-05-15Ò»¡¢·ì϶¸ÅÊö
2024Äê5ÔÂ14ÈÕ£¬Î¢Èí°ä²¼ÁË5Ô°²È«¸üУ¬±¾´Î¸üй²½¨¸´ÁË61¸ö·ì϶£¨²»Ô̺¬Ö®Ç°½¨¸´µÄMicrosoft Edge·ì϶£©£¬·ì϶ÀàÐÍÔ̺¬ÌØÈ¨ÌáÉý·ì϶¡¢°²È«Ö°ÄÜÈÆ¹ý·ì϶¡¢Ô¶³Ì´úÂëÖ´Ðзì϶¡¢ÐÅϢй¶·ì϶¡¢»Ø¾ø·þÎñ·ì϶ºÍºýŪ·ì϶µÈ¡£
±¾´Î°²È«¸üн¨¸´ÁË3¸ö0 day·ì϶£¬ÆäÖÐÁ½¸öÒÑ·¢ÏÖ±»ÀûÓã¬CVE-2024-30046Òѹ«¿ªÅû¶£º
CVE-2024-30040£ºWindows MSHTML Platform°²È«Ö°ÄÜÈÆ¹ý·ì϶
Windows MSHTMLƽ̨´æÔÚ°²È«Ö°ÄÜÈÆ¹ý·ì϶£¬ÆäCVSSÆÀ·ÖΪ8.2£¬¿ÉÄܵ¼ÖÂÈÆ¹ý Microsoft 365 ºÍ Microsoft Office ÖеÄOLE»º½â´ëÊ©£¬ÍþвÕß¿Éͨ¹ýÓÕµ¼Óû§´ò¿ª¶ñÒâÎĵ·´»ñµÃ´úÂëÖ´ÐÐȨÏÞ£¬³É¹¦ÀûÓÿÉÄܵ¼ÖÂÔÚÓû§µÄ¸ßµÍÎÄÖÐÖ´ÐÐËÁÒâ´úÂ롣Ŀǰ¸Ã·ì϶ÒѼì²âµ½·ì϶ÀûÓá£
CVE-2024-30051£ºWindows DWM Core LibraryÌØÈ¨ÌáÉý·ì϶
Windows DWM Ö÷Ìâ¿âÖдæÔÚ»º³åÇøÒç¶Âí½Å£¬ÆäCVSSÆÀ·ÖΪ7.8£¬±¾µØµÍȨÏÞÍþвÕß¿ÉÀûÓø÷ì϶ʵÏÖȨÏÞÌáÉý£¬³É¹¦ÀûÓø÷ì϶¿É»ñµÃSYSTEMȨÏÞ¡£Ä¿Ç°¸Ã·ì϶ÒѾ¹«¿ªÅû¶£¬ÇÒÒÑ·¢ÏÖQakbot¶ñÒâÈí¼þ´¹µö¹¥»÷ʹÓöñÒâÎĵ·´ÀûÓø÷ì϶²¢ÔÚWindowsÉ豸ÉÏ»ñµÃSYSTEMȨÏÞ¡£
CVE-2024-30046£ºVisual Studio»Ø¾ø·þÎñ·ì϶
Visual StudioÖдæÔÚ¾ºÕùǰÌá·ì϶£¬ÆäCVSSÆÀ·ÖΪ5.9£¬³É¹¦ÀûÓÿÉÄܵ¼Ö»ؾø·þÎñ¡£Ä¿Ç°¸Ã·ì϶ÒѾ¹«¿ªÅû¶£¬Î¢ÈíµÄ¿ÉÀûÓÃÐÔÆÀ¹ÀΪ ¡°±»ÀûÓõĿÉÄÜÐÔ½ÏÓס±¡£
±¾´Î°²È«¸üÐÂÖн¨¸´µÄ1¸öÑϳÁ·ì϶Ϊ£º
CVE-2024-30044£ºMicrosoft SharePoint Server Ô¶³Ì´úÂëÖ´Ðзì϶
Microsoft SharePoint ServerÖдæÔÚ·´ÐòÁл¯·ì϶£¬ÆäCVSSÆÀ·ÖΪ8.8£¬ÓµÓÐÍøÕ¾ËùÓÐÕßȨÏ޵ľ¹ýÉí·ÝÑéÖ¤µÄÍþвÕßÄܹ»½«ÌØÔìÎļþÉÏ´«µ½Ö¸±ê Sharepoint Server£¬²¢Ôì×÷ÌØÔìAPIÒªÇóÒÔ´¥·¢Îļþ²ÎÊýµÄ·´ÐòÁл¯£¬³É¹¦ÀûÓÿÉÄܵ¼ÖÂÔÚ Sharepoint ServerµÄ¸ßµÍÎÄÖе¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£Ä¿Ç°¸Ã·ì϶ÔÝδ¹«¿ªÅû¶£¬Î¢ÈíµÄ¿ÉÀûÓÃÐÔÆÀ¹ÀΪ ¡°±»ÀûÓõĿÉÄÜÐԽϸߡ±¡£
³ýÉÏÊö±í·ì϶±í£¬Î¢ÈíµÄ¿ÉÀûÓÃÐÔÆÀ¹ÀÖÐÆäËû¡°±»ÀûÓõĿÉÄÜÐԽϸߡ±µÄ·ì϶»¹Ô̺¬£º
l CVE-2024-29996/CVE-2024-30025/CVE-2024-30037£ºWindows Common Log File System DriverÌØÈ¨ÌáÉý·ì϶
Windows ͨÓÃÈÕÖ¾ÎļþϵͳÇý¶¯·¨Ê½ÖдæÔÚ¶à¸öÔ½½ç¶ÁÈ¡·ì϶£¬³É¹¦ÀûÓÿɻñµÃSYSTEMȨÏÞ¡£
l CVE-2024-30032/ CVE-2024-30035£ºWindows DWM Core LibraryÌØÈ¨ÌáÉý·ì϶
Windows DWM Ö÷Ìâ¿âÖдæÔÚ¶à¸öUse-After-Free·ì϶£¬³É¹¦ÀûÓÿɻñµÃSYSTEMȨÏÞ¡£
l CVE-2024-30034£ºWindows Cloud Files Mini Filter DriverÐÅϢй¶·ì϶
Windows Cloud Files Mini FilterÇý¶¯·¨Ê½ÖдæÔÚÀàÐÍ»ìºÏ·ì϶£¬³É¹¦ÀûÓø÷ì϶¿ÉÄܵ¼ÖÂijЩÄÚºËÄÚ´æÐÅϢй¶¡£
l CVE-2024-30038£ºWin32k ÌØÈ¨ÌáÉý·ì϶
Win32k.sys Çý¶¯·¨Ê½ÖдæÔÚ»º³åÇøÒç¶Âí½Å£¬¾¹ýÉí·ÝÑéÖ¤µÄ±¾µØÍþвÕß¿ÉÀûÓø÷ì϶½«È¨ÏÞÌáÉýΪSYSTEM»òÖÎÀíԱȨÏÞ¡£
l CVE-2024-30049£ºWindows Win32 Kernel SubsystemÌØÈ¨ÌáÉý·ì϶
Windows Win32 ÄÚºË×ÓϵͳÖдæÔÚUse-After-Free·ì϶£¬³É¹¦ÀûÓÿɻñµÃSYSTEMȨÏÞ¡£
l CVE-2024-30050£ºWindows Mark of the Web °²È«Ö°ÄÜÈÆ¹ý·ì϶
ÍþвÕßÄܹ»Ôì×÷¶ñÒâÎļþ²¢ÓÕµ¼Ö¸±êÓû§ÏÂÔØ²¢´ò¿ª¸ÃÎļþÀ´ÀûÓø÷ì϶£¬´Ó¶ø¿ÉÄÜÌÓ±ÜWeb ÏóÕ÷ (MOTW) ·ÀÓù£¬µ¼Ö°²È«Ö°ÄÜ£¨ÀýÈçÒÀÀµ MOTW ÏóÕ÷µÄ Microsoft Office ÖеÄÊܱ£»¤ÊÓͼ£©Èƹý¡£
΢Èí5Ô¸üÐÂÉæ¼°µÄÆëÈ«·ì϶ÁбíÈçÏ£º
CVE ID | CVE ±êÌâ | ÑϳÁÐÔ |
CVE-2024-30044 | Microsoft SharePoint Server Ô¶³Ì´úÂëÖ´Ðзì϶ | ÑϳÁ |
CVE-2024-30045 | .NET & Visual Studio Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30053 | Azure Migrate ¿çÕ¾¾ç±¾·ì϶ | ¸ßΣ |
CVE-2024-30041 | Microsoft Bing Search ºýŪ·ì϶ | ¸ßΣ |
CVE-2024-30007 | Microsoft Brokering File System ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30048 | Dynamics 365 Customer Insights ºýŪ·ì϶ | ¸ßΣ |
CVE-2024-30047 | Dynamics 365 Customer Insights ºýŪ·ì϶ | ¸ßΣ |
CVE-2024-30059 | Microsoft Intune for Android Mobile Application Management ´Û¸Ä·ì϶ | ¸ßΣ |
CVE-2024-30042 | Microsoft Excel Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30043 | Microsoft SharePoint Server ÐÅϢй¶·ì϶ | ¸ßΣ |
CVE-2024-30006 | Microsoft WDAC OLE DB provider for SQL Server Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-29994 | Microsoft Windows SCSI Class System File ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30033 | Windows Search Service ȨÏÞÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30054 | Microsoft Power BI Client JavaScript SDK ÐÅϢй¶·ì϶ | ¸ßΣ |
CVE-2024-30046 | Visual Studio »Ø¾ø·þÎñ·ì϶ | ¸ßΣ |
CVE-2024-32004 | GitHub£ºCVE-2024-32004 ¿ËÂ¡ÌØÔì±¾µØ´æ´¢¿âʱԶ³Ì´úÂëÖ´ÐÐ | ¸ßΣ |
CVE-2024-32002 | CVE-2024-32002 Ö§³Ö·ûºÅÁ´½ÓµÄ²»·Ö±æ´óÓ×дµÄÎļþϵͳÉϵĵݹé¿Ë¡ÈÝÒ×Êܵ½Ô¶³Ì´úÂëÖ´ÐÐ | ¸ßΣ |
CVE-2024-30034 | Windows Cloud Files Mini Filter Driver ÐÅϢй¶·ì϶ | ¸ßΣ |
CVE-2024-30031 | Windows CNG Key Isolation Service ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-29996 | Windows Common Log File System Driver ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30037 | Windows Common Log File System Driver ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30025 | Windows Common Log File System Driver ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30020 | Windows Cryptographic Services Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30016 | Windows Cryptographic Services ÐÅϢй¶·ì϶ | ¸ßΣ |
CVE-2024-30036 | Windows Deployment Services ÐÅϢй¶·ì϶ | ¸ßΣ |
CVE-2024-30019 | DHCP Server Service »Ø¾ø·þÎñ·ì϶ | ¸ßΣ |
CVE-2024-30008 | Windows DWM Core Library ÐÅϢй¶·ì϶ | ¸ßΣ |
CVE-2024-30051 | Windows DWM Core Library ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30035 | Windows DWM Core Library ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30032 | Windows DWM Core Library ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30011 | Windows Hyper-V »Ø¾ø·þÎñ·ì϶ | ¸ßΣ |
CVE-2024-30017 | Windows Hyper-V Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30010 | Windows Hyper-V Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30018 | Windows ÄÚºËÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30002 | Windows Mobile Broadband Driver Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-29997 | Windows Mobile Broadband Driver Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30003 | Windows Mobile Broadband Driver Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30012 | Windows Mobile Broadband Driver Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-29999 | Windows Mobile Broadband Driver Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-29998 | Windows Mobile Broadband Driver Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30000 | Windows Mobile Broadband Driver Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30005 | Windows Mobile Broadband Driver Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30004 | Windows Mobile Broadband Driver Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30021 | Windows Mobile Broadband Driver Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30001 | Windows Mobile Broadband Driver Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30040 | Windows MSHTML Platform °²È«Ö°ÄÜÈÆ¹ý·ì϶ | ¸ßΣ |
CVE-2024-30027 | NTFS ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30039 | Windows Remote Access Connection Manager ÐÅϢй¶·ì϶ | ¸ßΣ |
CVE-2024-30009 | Windows Routing and Remote Access Service (RRAS) Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30024 | Windows Routing and Remote Access Service (RRAS) Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30015 | Windows Routing and Remote Access Service (RRAS) Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30029 | Windows Routing and Remote Access Service (RRAS) Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30023 | Windows Routing and Remote Access Service (RRAS) Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30014 | Windows Routing and Remote Access Service (RRAS) Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-30022 | Windows Routing and Remote Access Service (RRAS) Ô¶³Ì´úÂëÖ´Ðзì϶ | ¸ßΣ |
CVE-2024-26238 | Microsoft PLUGScheduler Scheduled Task ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30030 | Win32k ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30038 | Win32k ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30049 | Windows Win32 Kernel Subsystem ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30028 | Win32k ÌØÈ¨ÌáÉý·ì϶ | ¸ßΣ |
CVE-2024-30050 | Windows Mark of the Web °²È«Ö°ÄÜÈÆ¹ý·ì϶ | ÖÐΣ |
CVE-2024-30055 | Microsoft Edge£¨»ùÓÚ Chromium£©ºýŪ·ì϶ | µÍΣ |
CVE-2024-4558 | Chromium£ºCVE-2024-4558 ÔÚ ANGLE ÖÐ Use-after-free | δ֪ |
CVE-2024-4331 | Chromium£ºCVE-2024-4331 ÔÚ»ÖлÖÐ Use-after-free | δ֪ |
CVE-2024-4671 | Chromium£ºCVE-2024-4671 ÔÚVisuals ÖÐ Use-after-free | δ֪ |
CVE-2024-4368 | Chromium£ºCVE-2024-4368 ÔÚ Dawn ÖÐ Use-after-free | δ֪ |
CVE-2024-4559 | Chromium£ºCVE-2024-4559 WebAudio ÖеĶѻº³åÇøÒç³ö | δ֪ |
¶þ¡¢Ó°ÏìÁìÓò
ÊÜÓ°ÏìµÄ²úÆ·/Ö°ÄÜ/·þÎñ/×é¼þÔ̺¬£º
Windows Task Scheduler
Microsoft Windows SCSI Class System File
Windows Common Log File System Driver
Windows Mobile Broadband
Microsoft WDAC OLE DB provider for SQL
Microsoft Brokering File System
Windows DWM Core Library
Windows Routing and Remote Access Service (RRAS)
Windows Hyper-V
Windows Cryptographic Services
Windows Kernel
Windows DHCP Server
Windows NTFS
Windows Win32K - ICOMP
Windows Win32K - GRFX
Windows CNG Key Isolation Service
Microsoft Windows Search Component
Windows Cloud Files Mini Filter Driver
Windows Deployment Services
Windows Remote Access Connection Manager
Windows MSHTML Platform
Microsoft Bing
Microsoft Office Excel
Microsoft Office SharePoint
.NET and Visual Studio
Visual Studio
Microsoft Dynamics 365 Customer Insights
Windows Mark of the Web (MOTW)
Azure Migrate
Power BI
Microsoft Edge (Chromium-based)
Microsoft Intune
Èý¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
Ŀǰ΢ÈíÒѰ䲼Óйذ²È«¸üУ¬½¨ÒéÊÜÓ°ÏìµÄÓû§¾¡¿ì½¨¸´¡£
£¨Ò»£© Windows Update×Ô¶¯¸üÐÂ
Microsoft UpdateĬÈÏÆôÓ㬵±ÏµÍ³¼ì²âµ½¿ÉÓøüÐÂʱ£¬½«»á×Ô¶¯ÏÂÔØ¸üв¢±ÉÈËÒ»´ÎÆô¶¯Ê±×°Öá£Ò²¿ÉÑ¡Ôñͨ¹ýÒÔϲ½ÖèÊÖ¶¯½øÐиüУº
1¡¢µã»÷¡°ÆðÍ·²Ëµ¥¡±»ò°´Windows¿ì½Ý¼ü£¬µã»÷½øÈë¡°ÉèÖá±
2¡¢Ñ¡Ôñ¡°¸üкͰ²È«¡±£¬½øÈë¡°Windows¸üС±£¨Windows 8¡¢Windows 8.1¡¢Windows Server 2012ÒÔ¼°Windows Server 2012 R2¿Éͨ¹ý½ÚÔìÃæ°å½øÈë¡°Windows¸üС±£¬¾ßÌå²½ÖèΪ¡°½ÚÔìÃæ°å¡±->¡°ÏµÍ³ºÍ°²È«¡±->¡°Windows¸üС±£©
3¡¢Ñ¡Ôñ¡°²é³¸üС±£¬ÆÚ´ýϵͳ×Ô¶¯²é³²¢ÏÂÔØ¿ÉÓøüС£
4¡¢¸üÐÂʵÏÖºó³ÁÆôÍÆËã»ú£¬¿Éͨ¹ý½øÈë¡°Windows¸üС±->¡°²é¿´¸üк¹Çà¼Í¼¡±²é¿´ÊÇ·ñ³É¹¦×°ÖÃÁ˸üС£¶ÔÓÚûÓгɹ¦×°ÖõĸüУ¬Äܹ»µã»÷¸Ã¸üÐÂÃû³Æ½øÈë΢Èí¹Ù·½¸üÐÂÃèÊöÁ´½Ó£¬µã»÷×îеÄSSUÃû³Æ²¢ÔÚÐÂÁ´½ÓÖеã»÷¡°Microsoft ¸üÐÂĿ¼¡±£¬¶øºóÔÚÐÂÁ´½Óµ±Ñ¡ÔñºÏÓÃÓÚÖ¸±êϵͳµÄ²¹¶¡½øÐÐÏÂÔØ²¢×°Öá£
£¨¶þ£© ÊÖ¶¯×°ÖøüÐÂ
Microsoft¹Ù·½ÏÂÔØÏàÓ¦²¹¶¡½øÐиüС£
2024Äê5Ô°²È«¸üÐÂÏÂÔØÁ´½Ó£º
https://msrc.microsoft.com/update-guide/releaseNote/2024-May
²¹¶¡ÏÂÔØÊ¾Àý£¨²Î¿¼£©£º
1.´ò¿ªÉÏÊöÏÂÔØÁ´½Ó£¬µã»÷·ì϶ÁбíÖÐÒª½¨¸´µÄCVEÁ´½Ó¡£

Àý1£ºÎ¢Èí·ì϶ÁÐ±í£¨Ê¾Àý£©
2.ÔÚ΢Èí²¼¸æÒ³Ãæµ×²¿×ó²à¡¾²úÆ·¡¿Ñ¡ÔñÏàÓ¦µÄϵͳÀàÐÍ£¬µã»÷ÓҲࡾÏÂÔØ¡¿´¦´ò¿ª²¹¶¡ÏÂÔØÁ´½Ó¡£

Àý2£ºCVE-2022-21989²¹¶¡ÏÂÔØÊ¾Àý
3.µã»÷¡¾°²È«¸üС¿£¬´ò¿ª²¹¶¡ÏÂÔØÒ³Ãæ£¬ÏÂÔØÏàÓ¦²¹¶¡²¢½øÐÐ×°Öá£

Àý3£º²¹¶¡ÏÂÔØ½çÃæ
4.×°ÖÃʵÏÖºó³ÁÆôÍÆËã»ú¡£
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£
3.3 ͨÓý¨Òé
l ¶¨ÆÚ¸üÐÂϵͳ²¹¶¡£¬Ï÷¼õϵͳ·ì϶£¬ÌáÉý·þÎñÆ÷µÄ°²È«ÐÔ¡£
l ¼ÓǿϵͳºÍÍøÂçµÄ½Ó¼û½ÚÔ죬Åú¸Ä·À»ðǽսÊõ£¬¹Ø¹Ø·Ç±ØÒªµÄÀûÓö˿ڻò·þÎñ£¬Ï÷¼õ½«Î£ÏÕ·þÎñ£¨ÈçSSH¡¢RDPµÈ£©Â¶³öµ½¹«Íø£¬Ï÷¼õ¹¥»÷Ãæ¡£
l ʹÓÃÆóÒµ¼¶°²È«²úÆ·£¬ÌáÉýÆóÒµµÄÍøÂ簲ȫ»úÄÜ¡£
l ¼ÓǿϵͳÓû§ºÍȨÏÞÖÎÀí£¬ÆôÓöà³É·ÖÈÏÖ¤»úÔìºÍ×îÓ×ȨÏÞ×¼Ôò£¬Óû§ºÍÈí¼þȨÏÞӦά³ÖÔÚ×îµÍÏÞ¶È¡£
l ÆôÓÃÇ¿ÃÜÂëÕ½Êõ²¢ÉèÖÃΪ¶¨ÆÚÅú¸Ä¡£
3.4 ²Î¿¼Á´½Ó
https://msrc.microsoft.com/update-guide/releaseNote/2024-May
https://www.bleepingcomputer.com/news/microsoft/microsoft-may-2024-patch-tuesday-fixes-3-zero-days-61-flaws/
https://securelist.com/cve-2024-30051/112618/
ËÄ¡¢°æ±¾ÐÅÏ¢
°æ±¾ | ÈÕÆÚ | ±¸×¢ |
V1.0 | 2024-05-15 | ³õ´Î°ä²¼ |
Îå¡¢¸½Â¼
5.1 GA»Æ½ð¼×¼ò½é
GA»Æ½ð¼×³ÉÁ¢ÓÚ1996Ä꣬ÊÇÓÉÁôÃÀ²©Ê¿ÑÏÍû¼ÑŮʿ´´½¨µÄ¡¢Õ¼ÓÐÆëÈ«×ÔÖ÷֪ʶ²úȨµÄÐÅÏ¢°²È«¸ß¿Æ¼¼ÆóÒµ¡£ÊǹúÄÚ×î¾ßʵÁ¦µÄÐÅÏ¢°²È«²úÆ·¡¢°²È«·þÎñ½â¾ö¹æ»®µÄÁ캽ÆóÒµÖ®Ò»¡£
¹«Ë¾×ܲ¿Î»ÓÚ±±¾©ÊÐÖйشåÈí¼þÔ°GA»Æ½ð¼×´óÏ㬹«Ë¾Ô±¹¤6000ÓàÈË£¬Ñз¢ÍŶÓ1200ÓàÈË, ¼¼Êõ·þÎñÍŶÓ1300ÓàÈË¡£ÔÚÈ«¹ú¸÷Ê¡¡¢ÊÓ×¢×ÔÖÎÇøÉèÁ¢·ÖÖ§»ú¹¹ÁùÊ®¶à¸ö£¬Õ¼Óи²¸ÇÈ«¹úµÄÏúÊÛϵͳ¡¢Çþ·ϵͳºÍ¼¼ÊõÖ§³Öϵͳ¡£¹«Ë¾ÓÚ2010Äê6ÔÂ23ÈÕÔÚÉîÛÚÖÐÓ×°å¹ÒÅÆÉÏÊС££¨¹ÉƱ´úÂ룺002439£©
¶àÄêÀ´£¬GA»Æ½ð¼×ÖÂÁ¦ÓÚÌṩӵÓйú¼Ê¾ºÕùÁ¦µÄ×ÔÖ÷´´Ðµİ²È«²úÆ·ºÍ×î¼Ñʵ¼Ê·þÎñ£¬Ô®ÊÖ¿Í»§È«ÃæÌáÉýÆäIT»ù´¡ÉèÊ©µÄ°²È«ÐԺͳö²úЧÁ¦£¬Îª´òÔìºÍÌáÉý¹ú¼Ê»¯µÄÃñ×åÐÅÏ¢°²È«²úÒµÁì¾üÆ·ÅÆ¶ø²»Ð¸ÖÂÁ¦¡£
5.2 ¹ØÓÚGA»Æ½ð¼×
GA»Æ½ð¼×°²È«Ó¦¼±ÏìÓ¦ÖÐÐÄÒѰ䲼1000¶à¸ö·ì϶¹«¸æÎ¢·çÏÕÔ¤¾¯£¬ÎÒÃǽ«³ÖÐø¸ú×ÙÈ«Çò×îеÄÍøÂ簲ȫÊÂÎñºÍ·ì϶£¬ÎªÆóÒµµÄÐÅÏ¢°²È«±£¼Ý»¤º½¡£
¹Ø×¢ÎÒÃÇ£º



¾©¹«Íø°²±¸11010802024551ºÅ