¡¾·ì϶¹«¸æ¡¿Î¢Èí12Ô¶à¸ö°²È«·ì϶
°ä²¼¹¦·ò 2025-12-10Ò»¡¢·ì϶¸ÅÊö
2025Äê12ÔÂ10ÈÕ£¬GA»Æ½ð¼×¼¯ÍÅVSRC¼à²âµ½Î¢Èí°ä²¼ÁË12Ô°²È«¸üУ¬±¾´Î¸üн¨¸´ÁË57¸ö·ì϶£¬º¸ÇÌØÈ¨ÌáÉý¡¢Ô¶³Ì´úÂëÖ´ÐÓ×¢ÐÅϢй¶µÈ¶àÖÖ·ì϶ÀàÐÍ¡£·ì϶¼¶±ðÉ¢²¼ÈçÏ£º2¸öÑϳÁ¼¶±ð·ì϶£¬54¸ö³ÁÒª¼¶±ð·ì϶£¬1¸öµÍΣ¼¶±ð·ì϶£¨·ì϶¼¶±ðƾ¾Ý΢Èí¹Ù·½Êý¾Ý£©¡£
ÆäÖУ¬7¸ö·ì϶±»Î¢ÈíÏóÕ÷Ϊ¡°¸ü¿ÉÄܱ»ÀûÓá±¼°¡°¼ì²âÀûÓÃÇé¾°¡±£¬Åú×¢ÕâЩ·ì϶´æÔڽϸߵÄÀûÓ÷çÏÕ£¬½¨ÒéÓÅÏȽ¨¸´ÒÔ½µµÍDZÔÚ°²È«Íþв¡£
CVE-ID | CVE ±êÌâ | ·ì϶¼¶±ð |
CVE-2025-59516 | Windows ´æ´¢ VSP Çý¶¯·¨Ê½ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-59517 | Windows ´æ´¢ VSP Çý¶¯·¨Ê½ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62454 | Windows Cloud Files Mini Filter Driver ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62458 | Win32k ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62470 | Windows ͨÓÃÈÕÖ¾ÎļþϵͳÇý¶¯·¨Ê½ÌáÉýȨÏÞ·ì϶ | ³ÁÒª |
CVE-2025-62472 | Windows Ô¶³Ì½Ó¼ûÁ¬ÊÕÊÜÀíÆ÷ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62221 | Windows Cloud Files Mini Filter Driver ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
΢Èí12Ô¸üн¨¸´µÄÆëÈ«·ì϶ÁбíÈçÏ£º
CVE-ID | CVE ±êÌâ | ·ì϶¼¶±ð |
CVE-2025-54100 | PowerShell Ô¶³Ì´úÂëÖ´Ðзì϶ | ³ÁÒª |
CVE-2025-55233 | Windows ͶӰÎļþÏµÍ³ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-59516 | Windows ´æ´¢ VSP Çý¶¯·¨Ê½ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-59517 | Windows ´æ´¢ VSP Çý¶¯·¨Ê½ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62221 | Windows Cloud Files Mini Filter Driver ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62223 | Microsoft Edge£¨»ùÓÚ Chromium£©Mac °æºýŪ·ì϶ | µÍ |
CVE-2025-62454 | Windows Cloud Files Mini Filter Driver ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62455 | Microsoft ÐÂÎŶÓÁÐ (MSMQ) ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62456 | Windows Resilient Îļþϵͳ (ReFS) Ô¶³Ì´úÂëÖ´Ðзì϶ | ³ÁÒª |
CVE-2025-62457 | Windows Cloud Files Mini Filter Driver ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62458 | Win32k ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62461 | Windows ͶӰÎļþÏµÍ³ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62462 | Windows ͶӰÎļþÏµÍ³ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62463 | DirectX ͼÐÎÄں˻ؾø·þÎñ·ì϶ | ³ÁÒª |
CVE-2025-62464 | Windows ͶӰÎļþÏµÍ³ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62465 | DirectX ͼÐÎÄں˻ؾø·þÎñ·ì϶ | ³ÁÒª |
CVE-2025-62466 | Windows ¿Í»§¶Ë»º´æÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62467 | Windows ͶӰÎļþÏµÍ³ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62468 | Windows Defender ·À»ðǽ·þÎñÐÅϢй¶·ì϶ | ³ÁÒª |
CVE-2025-62469 | Microsoft ´úÀíÎļþÏµÍ³ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62470 | Windows ͨÓÃÈÕÖ¾ÎļþϵͳÇý¶¯·¨Ê½ÌáÉýȨÏÞ·ì϶ | ³ÁÒª |
CVE-2025-62472 | Windows Ô¶³Ì½Ó¼ûÁ¬ÊÕÊÜÀíÆ÷ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62473 | Windows ·ÓɺÍÔ¶³Ì½Ó¼û·þÎñ (RRAS) ÐÅÏ¢Åû¶·ì϶ | ³ÁÒª |
CVE-2025-62474 | Windows Ô¶³Ì½Ó¼ûÁ¬ÊÕÊÜÀíÆ÷ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62549 | Windows ·ÓɺÍÔ¶³Ì½Ó¼û·þÎñ (RRAS) Ô¶³Ì´úÂëÖ´Ðзì϶ | ³ÁÒª |
CVE-2025-62550 | Azure Monitor ´úÀíÔ¶³Ì´úÂëÖ´Ðзì϶ | ³ÁÒª |
CVE-2025-62552 | Microsoft Access Ô¶³ÌÖ´ÐдúÂë·ì϶ | ³ÁÒª |
CVE-2025-62553 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂë·ì϶ | ³ÁÒª |
CVE-2025-62554 | Microsoft Office Ô¶³ÌÖ´ÐдúÂë·ì϶ | ÑϳÁ |
CVE-2025-62555 | Microsoft Word Ô¶³ÌÖ´ÐдúÂë·ì϶ | ³ÁÒª |
CVE-2025-62556 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂë·ì϶ | ³ÁÒª |
CVE-2025-62557 | Microsoft Office Ô¶³ÌÖ´ÐдúÂë·ì϶ | ÑϳÁ |
CVE-2025-62558 | Microsoft Word Ô¶³ÌÖ´ÐдúÂë·ì϶ | ³ÁÒª |
CVE-2025-62559 | Microsoft Word Ô¶³ÌÖ´ÐдúÂë·ì϶ | ³ÁÒª |
CVE-2025-62560 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂë·ì϶ | ³ÁÒª |
CVE-2025-62561 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂë·ì϶ | ³ÁÒª |
CVE-2025-62562 | Microsoft Outlook Ô¶³Ì´úÂëÖ´Ðзì϶ | ³ÁÒª |
CVE-2025-62563 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂë·ì϶ | ³ÁÒª |
CVE-2025-62564 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂë·ì϶ | ³ÁÒª |
CVE-2025-62565 | Windows Îļþ×ÊÔ´ÖÎÀíÆ÷ȨÏÞÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62567 | Windows Hyper-V »Ø¾ø·þÎñ·ì϶ | ³ÁÒª |
CVE-2025-62569 | Microsoft ´úÀíÎļþÏµÍ³ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62570 | Windows Ïà»ú¹¹Í¼·þÎñÆ÷¼à¶½Æ÷ÐÅϢй¶·ì϶ | ³ÁÒª |
CVE-2025-62571 | Windows Installer ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62572 | ÀûÓ÷¨Ê½ÐÅÏ¢·þÎñÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-62573 | DirectX ͼÐÎÄÚºËÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-64658 | Windows Îļþ×ÊÔ´ÖÎÀíÆ÷ȨÏÞÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-64661 | Windows Shell ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-64666 | Microsoft Exchange Server ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-64667 | Microsoft Exchange Server ºýŪ·ì϶ | ³ÁÒª |
CVE-2025-64670 | Windows DirectX ÐÅϢй¶·ì϶ | ³ÁÒª |
CVE-2025-64671 | Jetbrains µÄ GitHub Copilot Ô¶³Ì´úÂëÖ´Ðзì϶ | ³ÁÒª |
CVE-2025-64672 | Microsoft SharePoint Server ºýŪ·ì϶ | ³ÁÒª |
CVE-2025-64673 | Windows ´æ´¢ VSP Çý¶¯·¨Ê½ÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-64678 | Windows ·ÓɺÍÔ¶³Ì½Ó¼û·þÎñ (RRAS) Ô¶³Ì´úÂëÖ´Ðзì϶ | ³ÁÒª |
CVE-2025-64679 | Windows DWM Ö÷Ìâ¿âÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
CVE-2025-64680 | Windows DWM Ö÷Ìâ¿âÌØÈ¨ÌáÉý·ì϶ | ³ÁÒª |
¶þ¡¢Ó°ÏìÁìÓò
ÊÜÓ°ÏìµÄ²úÆ·/Ö°ÄÜ/·þÎñ/×é¼þÔ̺¬£º
Windows PowerShell
Windows Projected File System
Windows Storage VSP Driver
Windows Cloud Files Mini Filter Driver
Microsoft Edge for iOS
Windows Message Queuing
Windows Resilient File System (ReFS)
Windows Win32K - GRFX
Windows Projected File System Filter Driver
Windows DirectX
Windows Client-Side Caching (CSC) Service
Windows Defender Firewall Service
Microsoft Brokering File System
Windows Common Log File System Driver
Windows Remote Access Connection Manager
Windows Routing and Remote Access Service (RRAS)
Azure Monitor Agent
Microsoft Office Access
Microsoft Office Excel
Microsoft Office
Microsoft Office Word
Microsoft Office Outlook
Windows Shell
Windows Hyper-V
Windows Camera Frame Server Monitor
Windows Installer
Application Information Services
Microsoft Exchange Server
Microsoft Graphics Component
Copilot
Microsoft Office SharePoint
Storvsp.sys Driver
Windows DWM Core Library
Èý¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
Ŀǰ΢ÈíÒѰ䲼Óйذ²È«¸üУ¬½¨ÒéÊÜÓ°ÏìµÄÓû§¾¡¿ì½¨¸´¡£
£¨Ò»£©Windows Update×Ô¶¯¸üÐÂ
Microsoft UpdateĬÈÏÆôÓ㬵±ÏµÍ³¼ì²âµ½¿ÉÓøüÐÂʱ£¬½«»á×Ô¶¯ÏÂÔØ¸üв¢±ÉÈËÒ»´ÎÆô¶¯Ê±×°Öá£Ò²¿ÉÑ¡Ôñͨ¹ýÒÔϲ½ÖèÊÖ¶¯½øÐиüУº
1¡¢µã»÷¡°ÆðÍ·²Ëµ¥¡±»ò°´Windows¿ì½Ý¼ü£¬µã»÷½øÈë¡°ÉèÖá±
2¡¢Ñ¡Ôñ¡°¸üкͰ²È«¡±£¬½øÈë¡°Windows¸üС±£¨Windows 8¡¢Windows 8.1¡¢Windows Server 2012ÒÔ¼°Windows Server 2012 R2¿Éͨ¹ý½ÚÔìÃæ°å½øÈë¡°Windows¸üС±£¬¾ßÌå²½ÖèΪ¡°½ÚÔìÃæ°å¡±->¡°ÏµÍ³ºÍ°²È«¡±->¡°Windows¸üС±£©
3¡¢Ñ¡Ôñ¡°²é³¸üС±£¬ÆÚ´ýϵͳ×Ô¶¯²é³²¢ÏÂÔØ¿ÉÓøüС£
4¡¢¸üÐÂʵÏÖºó³ÁÆôÍÆËã»ú£¬¿Éͨ¹ý½øÈë¡°Windows¸üС±->¡°²é¿´¸üк¹Çà¼Í¼¡±²é¿´ÊÇ·ñ³É¹¦×°ÖÃÁ˸üС£¶ÔÓÚûÓгɹ¦×°ÖõĸüУ¬Äܹ»µã»÷¸Ã¸üÐÂÃû³Æ½øÈë΢Èí¹Ù·½¸üÐÂÃèÊöÁ´½Ó£¬µã»÷×îеÄSSUÃû³Æ²¢ÔÚÐÂÁ´½ÓÖеã»÷¡°Microsoft ¸üÐÂĿ¼¡±£¬¶øºóÔÚÐÂÁ´½Óµ±Ñ¡ÔñºÏÓÃÓÚÖ¸±êϵͳµÄ²¹¶¡½øÐÐÏÂÔØ²¢×°Öá£
£¨¶þ£©ÊÖ¶¯×°ÖøüÐÂ
Microsoft¹Ù·½ÏÂÔØÏàÓ¦²¹¶¡½øÐиüС£
2025Äê12Ô°²È«¸üÐÂÏÂÔØÁ´½Ó£º
https://msrc.microsoft.com/update-guide/releaseNote/2025-Dec
²¹¶¡ÏÂÔØÊ¾Àý£¨²Î¿¼£©£º
1.´ò¿ªÉÏÊöÏÂÔØÁ´½Ó£¬µã»÷·ì϶ÁбíÖÐÒª½¨¸´µÄCVEÁ´½Ó¡£

Àý1£ºÎ¢Èí·ì϶ÁÐ±í£¨Ê¾Àý£©
2.ÔÚ΢Èí²¼¸æÒ³Ãæµ×²¿×ó²à¡¾²úÆ·¡¿ÁÐÑ¡ÔñÏàÓ¦µÄϵͳÀàÐÍ£¬µã»÷ÓҲࡾÏÂÔØ¡¿Áдò¿ª²¹¶¡ÏÂÔØÁ´½Ó¡£

Àý2£ºCVE-2022-21989²¹¶¡ÏÂÔØÊ¾Àý
3.µã»÷¡¾°²È«¸üС¿£¬´ò¿ª²¹¶¡ÏÂÔØÒ³Ãæ£¬ÏÂÔØÏàÓ¦²¹¶¡²¢½øÐÐ×°Öá£

Àý3£º²¹¶¡ÏÂÔØ½çÃæ
4.×°ÖÃʵÏÖºó³ÁÆôÍÆËã»ú¡£
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£
3.3 ͨÓý¨Òé
? ¶¨ÆÚ¸üÐÂϵͳ²¹¶¡£¬Ï÷¼õϵͳ·ì϶£¬ÌáÉý·þÎñÆ÷µÄ°²È«ÐÔ¡£
? ¼ÓǿϵͳºÍÍøÂçµÄ½Ó¼û½ÚÔ죬Åú¸Ä·À»ðǽսÊõ£¬¹Ø¹Ø·Ç±ØÒªµÄÀûÓö˿ڻò·þÎñ£¬Ï÷¼õ½«Î£ÏÕ·þÎñ£¨ÈçSSH¡¢RDPµÈ£©Â¶³öµ½¹«Íø£¬Ï÷¼õ¹¥»÷Ãæ¡£
? ʹÓÃÆóÒµ¼¶°²È«²úÆ·£¬ÌáÉýÆóÒµµÄÍøÂ簲ȫ»úÄÜ¡£
? ¼ÓǿϵͳÓû§ºÍȨÏÞÖÎÀí£¬ÆôÓöà³É·ÖÈÏÖ¤»úÔìºÍ×îÓ×ȨÏÞ×¼Ôò£¬Óû§ºÍÈí¼þȨÏÞӦά³ÖÔÚ×îµÍÏÞ¶È¡£
? ÆôÓÃÇ¿ÃÜÂëÕ½Êõ²¢ÉèÖÃΪ¶¨ÆÚÅú¸Ä¡£


¾©¹«Íø°²±¸11010802024551ºÅ