9ÔÂ8ÈÕ£¬£¬Î¢ÈíÐû²¼ÁË2020Äê9Ô·ݵÄÔ¶ÈÀýÐÐÇ徲ͨ¸æ£¬£¬ÐÞ¸´ÁËÆä¶à¿î²úÆ·±£´æµÄ125¸öÇå¾²Îó²î¡£¡£¡£ÊÜÓ°ÏìµÄ²úÆ·°üÀ¨£ºWindows 10 2004 & WindowsServer v2004£¨77¸ö£©¡¢¡¢¡¢Windows 10 1909 & WindowsServer v1909£¨75¸ö£©¡¢¡¢¡¢Windows 10 1903 & WindowsServer v1903£¨76¸ö£©¡¢¡¢¡¢Windows 8.1 & Server 2012 R2£¨47¸ö£©¡¢¡¢¡¢Windows RT 8.1£¨41¸ö£©¡¢¡¢¡¢Windows Server 2012£¨45¸ö£©¡¢¡¢¡¢Microsoft Edge (EdgeHTML-based)£¨4¸ö£©¡¢¡¢¡¢Internet Explorer£¨4¸ö£©ºÍMicrosoft Office-related software£¨23¸ö£©¡£¡£¡£
ʹÓÃÉÏÊöÎó²î£¬£¬¹¥»÷Õß¿ÉÒÔÌáÉýȨÏÞ£¬£¬ÈƹýÇå¾²¹¦Ð§ÏÞÖÆ£¬£¬»ñÈ¡Ãô¸ÐÐÅÏ¢£¬£¬Ö´ÐÐÔ¶³Ì´úÂë»òÌᳫ¾Ü¾ø·þÎñ¹¥»÷µÈ¡£¡£¡£ÌáÐÑ¿í´óMicrosoftÓû§¾¡¿ìÏÂÔØ²¹¶¡¸üУ¬£¬×èÖ¹Òý·¢Îó²îÏà¹ØµÄÍøÂçÇå¾²ÊÂÎñ¡£¡£¡£
CVE±àºÅ | ͨ¸æÎÊÌâºÍÕªÒª | ×î¸ßÑÏÖØÆ·¼¶ºÍÎó²îÓ°Ïì | ÊÜÓ°ÏìµÄÈí¼þ |
CVE-2020-0718 | Active DirectoryÔ¶³Ì´úÂëÖ´ÐÐÎó²î µ±Active Directory integrated DNS (ADIDNS) ¹ýʧ´¦ÀíÄÚ´æÖеŤ¾ßʱ£¬£¬±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¾ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔÔÚÍâµØÏµÍ³ÕÊ»§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£ ҪʹÓôËÎó²î¾ÙÐй¥»÷£¬£¬¾ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔÏòActive Directory integrated DNS (ADIDNS) ·þÎñÆ÷·¢ËͶñÒâÇëÇ󡣡£¡£ ´Ë¸üÐÂͨ¹ý¸üÕýActive Directory integrated DNS (ADIDNS) ´¦ÀíÄÚ´æÖй¤¾ßµÄ·½Ê½À´½â¾ö´ËÎó²î¡£¡£¡£ | Ö÷Òª Ô¶³Ì´úÂëÖ´ÐÐ | Server 2016 Server 2019 Server, version 1903 Server, version 1909 Server, version 2004 Server 2012 Server 2012 R2 |
CVE-2020-0922 | Microsoft COM for WindowsÔ¶³Ì´úÂëÖ´ÐÐÎó²î Microsoft COM for Windows´¦ÀíÄÚ´æÖеŤ¾ß±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£ ҪʹÓôËÎó²î£¬£¬Óû§±ØÐè·¿ªÌØÖÆÎļþ»ò½«Ä¿µÄÒýÓÕµ½ÍйܶñÒâJavaScriptµÄÍøÕ¾¡£¡£¡£ ¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýMicrosoft COM for Windows´¦ÀíÄÚ´æÖй¤¾ßµÄ·½Ê½À´½â¾ö´ËÎó²î¡£¡£¡£ | ÑÏÖØ Ô¶³Ì´úÂëÖ´ÐÐ | Windows 10 Server 2016 Server 2019 Server, version 1903 Server, version 1909 Server, version 2004 Windows 8.1 Server 2012 Server 2012 R2 |
CVE-2020-1129 | Microsoft Windows Codecs LibraryÔ¶³ÌÖ´ÐдúÂëÎó²î Microsoft Windows Codecs Library´¦ÀíÄÚ´æÖеŤ¾ß±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñÊØÐÅÏ¢£¬£¬ÒÔ½øÒ»²½Î£º¦Óû§µÄϵͳ¡£¡£¡£ ʹÓôËÎó²îÐèÒª³ÌÐò´¦Àí¾ÌØÊâÉè¼ÆµÄͼÏñÎļþ¡£¡£¡£ ´Ë¸üÐÂͨ¹ý¸üÕýMicrosoft Windows Codecs LibraryÈçÄÇÀïÖÃÄÚ´æÖеŤ¾ßÀ´½â¾öÎó²î¡£¡£¡£ | ÑÏÖØ Ô¶³Ì´úÂëÖ´ÐÐ | Windows 10 Server 2016 Server 2019 Server, version 1903 Server, version 1909 Server, version 2004 |
CVE-2020-1319 | Microsoft Windows Codecs LibraryÔ¶³Ì´úÂëÖ´ÐÐÎó²î Microsoft Windows Codecs Library´¦ÀíÄÚ´æÖеŤ¾ß±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£È»ºó£¬£¬¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò¡£¡£¡£Éó²é£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£ ʹÓôËÎó²îÐèÒª³ÌÐò´¦Àí¾ÌØÊâÉè¼ÆµÄͼÏñÎļþ¡£¡£¡£ ´Ë¸üÐÂͨ¹ý¸üÕýMicrosoft Windows Codecs LibraryÈçÄÇÀïÖÃÄÚ´æÖеŤ¾ßÀ´½â¾öÎó²î¡£¡£¡£ | ÑÏÖØ Ô¶³Ì´úÂëÖ´ÐÐ | Windows 10 Server 2016 Server 2019 Server, version 1903 Server, version 1909 Server, version 2004 Windows 8.1 Server 2012 Server 2012 R2 |
CVE-2020-0908 | Windows Text ServiceÄ£¿éÔ¶³ÌÖ´ÐдúÂëÎó²î µ±Windows Text ServiceÄ£¿éδÄÜ׼ȷ´¦ÀíÄÚ´æÊ±£¬£¬±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÊܺ¦ÕßϵͳÉÏÖ´ÐС£¡£¡£ ¹¥»÷Õß¿Éͨ¹ýMicrosoft Edge£¨»ùÓÚChromium£©Ê¹ÓøÃÎó²îµÄÌØÖÆÍøÕ¾£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔͨ¹ýÌí¼Ó¿ÉÒÔʹÓôËÎó²îµÄÌØÊâÉè¼ÆµÄÄÚÈÝ£¬£¬À´Ê¹ÓÃÊÜѬȾµÄÍøÕ¾ÒÔ¼°½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£ÔÚËùÓÐÇéÐÎÏ£¬£¬¹¥»÷Õß¶¼ÎÞ·¨Ç¿ÆÈÓû§Éó²é¹¥»÷Õß¿ØÖƵÄÄÚÈÝ¡£¡£¡£Ïà·´£¬£¬¹¥»÷Õß±ØÐèÓÕʹÓû§½ÓÄɲ½·¥£¬£¬Í¨³£ÊÇͨ¹ýÓÕʹµç×ÓÓʼþ»òInstant MessengerÐÂÎÅ£¬£¬»òÕßÓÕʹÓû§·¿ªÍ¨¹ýµç×ÓÓʼþ·¢Ë͵ĸ½¼þ¡£¡£¡£ ¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýWindows Text ServiceÄ£¿é´¦ÀíÄÚ´æµÄ·½Ê½À´½â¾öÎó²î¡£¡£¡£ | ÑÏÖØ Ô¶³Ì´úÂëÖ´ÐÐ | Windows 10 Server 2016 Server 2019 Server, version 1903 Server, version 1909 Server, version 2004 |
CVE-2020-1285 | GDI +Ô¶³Ì´úÂëÖ´ÐÐÎó²î Windows Graphics Device Interface (GDI) ´¦ÀíÄÚ´æÖеŤ¾ß±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£È»ºó£¬£¬¹¥»÷Õß¿ÉÄÜ»á×°ÖóÌÐò¡£¡£¡£Éó²é£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£ÓëʹÓÃÖÎÀíÓû§È¨ÏÞ¾ÙÐвÙ×÷µÄÓû§Ïà±È£¬£¬½«ÆäÕÊ»§ÉèÖÃΪÔÚϵͳÉϾßÓнÏÉÙÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì½ÏС¡£¡£¡£ ¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýWindows GDI´¦ÀíÄÚ´æÖй¤¾ßµÄ·½Ê½À´½â¾öÎó²î¡£¡£¡£ | ÑÏÖØ Ô¶³Ì´úÂëÖ´ÐÐ | Windows 10 Server 2016 Server 2019 Server, version 1903 Server, version 1909 Server, version 2004 Windows 8.1 Server 2012 Server 2012 R2 |
CVE-2020-1508 | Windows Media Audio DecoderÔ¶³Ì´úÂëÖ´ÐÐÎó²î µ±Windows Media Audio DecoderδÄÜ׼ȷµØ´¦Àí¹¤¾ßʱ£¬£¬±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£ ¹¥»÷Õß¿ÉÒÔͨ¹ý¶àÖÖ·½Ê½Ê¹ÓôËÎó²î£¬£¬ÀýÈç˵·þÓû§·¿ª¹¹½¨µÄÎĵµ£¬£¬»ò˵·þÓû§»á¼û¶ñÒâÍøÒ³¡£¡£¡£ Çå¾²¸üÐÂͨ¹ý¸üÕýWindows Media Audio Decoder´¦Àí¹¤¾ßµÄ·½Ê½À´½â¾ö¸ÃÎó²î¡£¡£¡£ | ÑÏÖØ Ô¶³Ì´úÂëÖ´ÐÐ | Windows 10 Server 2016 Server 2019 Server, version 1903 Server, version 1909 Server, version 2004 Windows 8.1 Server 2012 Server 2012 R2 |
CVE-2020-0836 | Windows DNS¾Ü¾ø·þÎñÎó²î Windows DNSδÄÜ׼ȷ´¦ÀíÅÌÎÊʱ£¬£¬±£´æ¾Ü¾ø·þÎñÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÄܵ¼ÖÂDNS·þÎñÎÞÏìÓ¦¡£¡£¡£ ΪÁËʹÓôËÎó²î£¬£¬¾ÓÉÉí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔ½«¶ñÒâDNSÅÌÎÊ·¢Ë͵½Ä¿µÄ£¬£¬´Ó¶øµ¼Ö¾ܾø·þÎñ¡£¡£¡£ ´Ë¸üÐÂͨ¹ý¸üÕýWindows DNS´¦ÀíÅÌÎʵķ½Ê½À´½â¾öÎó²î¡£¡£¡£ | Ö÷Òª ¾Ü¾ø·þÎñ | Server 2016 Server 2019 Server, version 1903 Server, version 1909 Server, version 2004 Server 2012 Server 2012 R2 |
CVE-2020-1012 | WinINet APIÌáÉýȨÏÞÎó²î Wininit.dll´¦ÀíÄÚ´æÖеŤ¾ß±£´æÈ¨ÏÞÌáÉýÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÒÔÌáÉýµÄȨÏÞÖ´ÐдúÂë¡£¡£¡£ ¸ÃÇå¾²¸üÐÂͨ¹ýÈ·±£Wininit.dll׼ȷ´¦ÀíÄÚ´æÖеŤ¾ßÀ´½â¾ö´ËÎó²î¡£¡£¡£ | Ö÷Òª ÌØÈ¨ÌáÉý | Internet Explorer 11 |
CVE-2020-0878 | Microsoft BrowserÄÚ´æÆÆËðÎó²î Microsoft browsers»á¼ûÄÚ´æÖй¤¾ßµÄ·½Ê½Öб£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖÔÊÐí¹¥»÷ÕßÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½Ê½À´ÆÆËðÄÚ´æ¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬Ôò¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£È»ºó£¬£¬¹¥»÷Õß¿ÉÄÜ»á×°ÖóÌÐò¡£¡£¡£Éó²é£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£ ¹¥»÷Õß¿Éͨ¹ýMicrosoft browsersʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¹¥»÷Õß»¹¿ÉÒÔͨ¹ýÌí¼Ó¿ÉÒÔʹÓôËÎó²îµÄ¾ÌØÊâÉè¼ÆµÄÄÚÈÝ£¬£¬À´Ê¹ÓÃÊÜѬȾµÄÍøÕ¾»ò½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ»ò¹ã¸æµÄÍøÕ¾¡£¡£¡£ÔÚËùÓÐÇéÐÎÏ£¬£¬¹¥»÷Õß¶¼ÎÞ·¨Ç¿ÆÈÓû§Éó²é¹¥»÷Õß¿ØÖƵÄÄÚÈÝ¡£¡£¡£Ïà·´£¬£¬¹¥»÷Õß±ØÐè˵·þÓû§½ÓÄɲ½·¥£¬£¬Í¨³£ÊÇͨ¹ýÓÕʹµç×ÓÓʼþ»ò¼´Ê±ÐÂÎÅ£¬£¬»òÕßÓÕʹÓû§·¿ªµç×ÓÓʼþ¸½¼þ¡£¡£¡£ ¸ÃÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄMicrosoft browsers´¦ÀíÄÚ´æÖй¤¾ßµÄ·½Ê½À´½â¾ö´ËÎó²î¡£¡£¡£ | ÑÏÖØ Ô¶³Ì´úÂëÖ´ÐÐ | Internet Explorer 11 Internet Explorer 9 Microsoft Edge(EdgeHTML-based) ChakraCore |
CVE-2020-16884 | Internet Explorer Browser Helper Object (BHO) ÄÚ´æÆÆËðÎó²î Internet ExplorerÉϵÄIEToEdge Browser Helper Object (BHO)²å¼þ´¦ÀíÄÚ´æÖеŤ¾ßµÄ·½Ê½±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½Ê½À´ÆÆËðÄÚ´æ¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£ ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬¹¥»÷Õß¿ÉʹÓôËÎó²îµÄÌØÖÆÍøÕ¾£¬£¬È»ºóÓÕʹÓû§Éó²é¸ÃÍøÕ¾¡£¡£¡£¹¥»÷ÕßÎÞ·¨Ç¿ÆÈÓû§Éó²é¹¥»÷Õß¿ØÖƵÄÄÚÈÝ¡£¡£¡£Ïà·´£¬£¬¹¥»÷Õß±ØÐè˵·þÓû§½ÓÄɲ½·¥£¬£¬Í¨³£ÊÇÈÃÓû§µ¥»÷µç×ÓÓʼþ»òInstant MessengerÐÂÎÅÖеÄÁ´½Ó£¨½«Óû§´øµ½¹¥»÷ÕßµÄÍøÕ¾£©£¬£¬»òÕß·¿ªÍ¨¹ýµç×ÓÓʼþ·¢Ë͵ĸ½¼þ¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£È»ºó£¬£¬¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò¡£¡£¡£Éó²é£¬£¬¸ü¸Ä»òɾ³ýÊý¾Ý£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£ ¸ÃÇå¾²¸üÐÂͨ¹ýÐÞ¸ÄIEToEdge BHO²å¼þ´¦ÀíÄÚ´æÖй¤¾ßµÄ·½Ê½À´½â¾ö¸ÃÎó²î¡£¡£¡£ | Ö÷Òª Ô¶³Ì´úÂëÖ´ÐÐ | Internet Explorer 11 Microsoft Edge (Chromium based) |
CVE-2020-1210 | Microsoft SharePointÔ¶³Ì´úÂëÖ´ÐÐÎó²î µ±Èí¼þδÄܼì²éÓ¦ÓóÌÐò°üµÄÔ´±ê¼Çʱ£¬£¬Microsoft SharePoint±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚSharePointÓ¦ÓóÌÐò³ØºÍSharePoint·þÎñÆ÷³¡ÕÊ»§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£ ҪʹÓôËÎó²î£¬£¬ÐèÒªÓû§½«ÌØÖƵÄSharePointÓ¦ÓóÌÐò°üÉÏ´«µ½ÊÜÓ°ÏìµÄSharePoint°æ±¾¡£¡£¡£ ¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýSharePointÔõÑù¼ì²éÓ¦ÓóÌÐò°üµÄÔ´±ê¼ÇµÄ·½Ê½À´½â¾öÎó²î¡£¡£¡£ | ÑÏÖØ Ô¶³Ì´úÂëÖ´ÐÐ | SharePoint Server 2010 SharePoint Enterprise Server 2013 SharePoint Enterprise Server 2016 SharePoint Server 2019 Business Prod Servers 2010 |
CVE-2020-1595 | Microsoft SharePointÔ¶³Ì´úÂëÖ´ÐÐÎó²î Microsoft SharePoint´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬ÔÚ¸ÃÎó²îÖУ¬£¬Î´ÄÜ׼ȷ±£»¤APIÃâÊܲ»Çå¾²Êý¾ÝÊäÈëµÄ¹¥»÷¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚSharePointÓ¦ÓóÌÐò³ØºÍSharePoint·þÎñÆ÷³¡ÕÊ»§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£ ʹÓôËÎó²îÒªÇóÓû§Ê¹ÓÃÌØÊâÃûÌõÄÊäÈëÔÚÊÜÓ°ÏìµÄSharePoint°æ±¾ÉÏ»á¼ûÒ×ÊÜѬȾµÄAPI¡£¡£¡£ ¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýSharePoint´¦Àí²»ÐÅÈÎÊý¾ÝµÄ·´ÐòÁл¯µÄ·½Ê½À´½â¾ö´ËÎó²î¡£¡£¡£ | ÑÏÖØ Ô¶³Ì´úÂëÖ´ÐÐ | SharePoint Foundation 2013 SharePoint Enterprise Server 2013 SharePoint Enterprise Server 2016 SharePoint Server 2019 |
CVE-2020-1218 | Microsoft WordÔ¶³Ì´úÂëÖ´ÐÐÎó²î µ±Microsoft WordÈí¼þδÄÜ׼ȷ´¦ÀíÄÚ´æÖеŤ¾ßʱ£¬£¬±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔʹÓÃÌØÖÆÎļþÔÚÄ¿½ñÓû§µÄÇå¾²ÉÏÏÂÎÄÖÐÖ´ÐвÙ×÷¡£¡£¡£ÀýÈ磬£¬ÎļþÈ»ºó¿ÉÒÔ´ú±íµÇÈÎÃü»§Ö´ÐÐÓëÄ¿½ñÓû§ÏàͬµÄȨÏÞÀ´Ö´ÐвÙ×÷¡£¡£¡£ ҪʹÓôËÎó²î£¬£¬Óû§±ØÐèʹÓÃÊÜÓ°ÏìµÄMicrosoft WordÈí¼þ°æ±¾·¿ªÌØÖÆÎļþ¡£¡£¡£ÔÚµç×ÓÓʼþ¹¥»÷ÇéÐÎÖУ¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ý½«ÌØÖÆÎļþ·¢Ë͸øÓû§²¢Ëµ·þÓû§·¿ªÎļþÀ´Ê¹ÓôËÎó²î¡£¡£¡£ÔÚ»ùÓÚWebµÄ¹¥»÷ÇéÐÎÖУ¬£¬¹¥»÷Õß¿ÉÄÜÓµÓÐÒ»¸öÍøÕ¾£¨»òʹÓÃÊÜѬȾµÄÍøÕ¾À´½ÓÊÜ»òÍйÜÓû§ÌṩµÄÄÚÈÝ£©£¬£¬¸ÃÍøÕ¾°üÀ¨Ö¼ÔÚʹÓôËÎó²îµÄÌØÖÆÎļþ¡£¡£¡£¹¥»÷ÕßÎÞ·¨Ç¿ÆÈÓû§»á¼û¸ÃÍøÕ¾¡£¡£¡£Ïà·´£¬£¬¹¥»÷Õß±ØÐèÓÕʹÓû§µ¥»÷Á´½Ó£¨Í¨³£ÊÇͨ¹ýÓÕʹµç×ÓÓʼþ»òInstant MessengerÐÂÎŵķ½Ê½£©£¬£¬È»ºóÓÕʹÓû§·¿ªÌØÖÆÎļþ¡£¡£¡£ ¸ÃÇå¾²¸üÐÂͨ¹ý¸üÕýMicrosoft Word´¦ÀíÄÚ´æÖÐÎļþµÄ·½Ê½À´½â¾ö´ËÎó²î¡£¡£¡£ | Ö÷Òª Ô¶³Ì´úÂëÖ´ÐÐ | Word 2010/2013/2016 Office 2010 Office 2019 365 Apps Enterprise SharePoint Server 2010 SharePoint Enterprise Server 2013 SharePoint Enterprise Server 2016 SharePoint Server 2019 Office Online Server Office Web Apps 2010 Office 2016/2019 for Mac |
CVE-2020-1335 | Microsoft ExcelÔ¶³Ì´úÂëÖ´ÐÐÎó²î µ±Microsoft ExcelÈí¼þδÄÜ׼ȷ´¦ÀíÄÚ´æÖеŤ¾ßʱ£¬£¬¸ÃÈí¼þÖб£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£¡£¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÔËÐÐí§Òâ´úÂë¡£¡£¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬£¬¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£¡£¡£È»ºó£¬£¬¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò£»Éó²é¡¢¡¢¡¢¸ü¸Ä»òɾ³ýÊý¾Ý£»»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£¡£¡£ÓëʹÓÃÖÎÀíÓû§È¨ÏÞ²Ù×÷µÄÓû§Ïà±È£¬£¬ÕÊ»§ÉèÖÃΪÔÚϵͳÉϾßÓнÏÉÙÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°Ïì½ÏС¡£¡£¡£ ʹÓôËÎó²îÐèÒªÓû§Ê¹ÓÃÊÜÓ°ÏìµÄMicrosoft Excel°æ±¾·¿ª¹¹½¨µÄÎļþ¡£¡£¡£ÔÚµç×ÓÓʼþ¹¥»÷³¡¾°ÖУ¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ýÏòÓû§·¢Ë͹¹½¨µÄÎļþ²¢Ëµ·þÓû§·¿ª¸ÃÎļþÀ´Ê¹ÓøÃÎó²î¾ÙÐй¥»÷¡£¡£¡£ÔÚ»ùÓÚwebµÄ¹¥»÷³¡¾°ÖУ¬£¬¹¥»÷Õß¿ÉÒÔÍйÜÒ»¸öÍøÕ¾£¨»òʹÓýÓÊÜ»òÍйÜÓû§ÌṩÄÚÈݵÄÊÜËðÍøÕ¾£©£¬£¬¸ÃÍøÕ¾°üÀ¨È«ÐÄÌåÀýµÄÎļþ£¬£¬Ö¼ÔÚʹÓôËÎó²î¾ÙÐй¥»÷¡£¡£¡£¹¥»÷ÕßÎÞ·¨Ç¿ÆÈÓû§»á¼û¸ÃÍøÕ¾¡£¡£¡£Ïà·´£¬£¬¹¥»÷Õß±ØÐè˵·þÓû§µ¥»÷Á´½Ó£¬£¬Í¨³£ÊÇͨ¹ýµç×ÓÓʼþ»ò¼´Ê±ÐÂÎÅÖеÄÓջ󣬣¬È»ºó˵·þÓû§·¿ªÈ«ÐÄÌåÀýµÄÎļþ¡£¡£¡£ Çå¾²¸üÐÂͨ¹ý¸üÕýMicrosoft ExcelÈçÄÇÀïÖÃÄÚ´æÖеŤ¾ßÀ´½â¾ö¸ÃÎó²î¡£¡£¡£ | Ö÷Òª Ô¶³Ì´úÂëÖ´ÐÐ | Excel 2010/2013/2016 Office 2010/2013/2016/2019 365 Apps Enterprise SharePoint Server 2019 Office Online Server |
²Î¿¼ÐÅÏ¢£º
https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/2020-Sep
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/adv990001