΢Èí4Ô¶à¸öÇå¾²Îó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-04-11

Îó²î¸ÅÊö


4ÔÂ9ÈÕ£¬Î¢ÈíÐû²¼ÁË2019Äê4Ô·ݵÄÔ¶ÈÀýÐÐÇ徲ͨ¸æ£¬ÐÞ¸´ÁËÆä¶à¿î²úÆ·±£´æµÄ270¸öÇå¾²Îó²î£¬16¸öÑÏÖØÎó²î¡£ÊÜÓ°ÏìµÄ²úÆ·°üÀ¨£ºWindows 10 v1809 and Windows Server 2019£¨39¸ö£©¡¢Windows 10 v1803 Windows Server v1803£¨40¸ö£©¡¢Windows 10 v1709 Windows Server v1709£¨40¸ö£©¡¢Windows 8.1 and Windows Server 2012 R2£¨34¸ö£©¡¢Windows Server 2012£¨34¸ö£©¡¢Windows7 and Windows Server 2008 R2£¨31¸ö£©¡¢WindowsServer 2008£¨29¸ö£©¡¢Microsoft Edge£¨9¸ö£©¡¢Microsoft Office-related software£¨9¸ö£©ºÍInternet Explorer£¨5¸ö£©¡£


ʹÓÃÉÏÊöÎó²î£¬¹¥»÷Õß¿ÉÒÔÌáÉýȨÏÞ£¬ÈƹýÇå¾²¹¦Ð§ÏÞÖÆ£¬»ñÈ¡Ãô¸ÐÐÅÏ¢£¬Ö´ÐÐÔ¶³Ì´úÂë»òÌᳫ¾Ü¾ø·þÎñ¹¥»÷µÈ¡£ÌáÐÑ¿í´óMicrosoftÓû§¾¡¿ìÏÂÔØ²¹¶¡¸üУ¬×èÖ¹Òý·¢Îó²îÏà¹ØµÄÍøÂçÇå¾²ÊÂÎñ¡£


CVE 񅧏

ÑÏÖØË®Æ½

CVE ÎÊÌâ

Îó²îÐÎò

²úÆ·

ADV190011

ÑÏÖØ

April 2019 Adobe Flash Çå¾²¸üÐÂ

´ËÇå¾²¸üнâ¾öÁËÒÔÏÂÎó²î£¬ÕâЩÎó²îÔÚAdobeÇ徲ͨ¸æAPSB19-19£ºCVE-2019-7096£¬CVE-2019-7108ÖÐÓÐËùÐÎò¡£

Adobe Flash Player

CVE-2019-0853

ÑÏÖØ

GDI+ Ô¶³Ì´úÂëÖ´ÐÐÎó²î

WindowsͼÐÎ×°±¸½Ó¿Ú£¨GDI£©´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£ ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£ È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò; Éó²é£¬¸ü¸Ä»òɾ³ýÊý¾Ý; »ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£ ÕÊ»§±»ÉèÖÃΪӵÓнÏÉÙϵͳÓû§È¨ÏÞµÄÓû§¿ÉÄܱÈʹÓÃÖÎÀíÓû§È¨ÏÞµÄÓû§Êܵ½µÄÓ°ÏìҪС¡£

Microsoft Graphics Component

CVE-2019-0739

ÑÏÖØ

Scripting Engine ÄÚ´æÆÆËðÎó²î

¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0812

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò; Éó²é£¬¸ü¸Ä»òɾ³ýÊý¾Ý; »ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0829

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£ ¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò; Éó²é£¬¸ü¸Ä»òɾ³ýÊý¾Ý; »ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0753

ÑÏÖØ

Scripting Engine ÄÚ´æÆÆËðÎó²î

¾ç±¾ÒýÇæÔÚInternet ExplorerÖд¦Öóͷ£ÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò;Éó²é£¬¸ü¸Ä»òɾ³ýÊý¾Ý;»ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0806

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£ È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò; Éó²é£¬¸ü¸Ä»òɾ³ýÊý¾Ý; »ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0861

ÑÏÖØ

Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î

Chakra¾ç±¾ÒýÇæ´¦Öóͷ£Microsoft EdgeÄÚ´æÖй¤¾ßµÄ·½·¨Öб£´æÒ»¸öÔ¶³ÌÖ´ÐдúÂëÎó²î¡£ ¸ÃÎó²î¿ÉÄÜÒÔÒ»ÖÖ¹¥»÷Õß¿ÉÒÔÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂëµÄ·½·¨À´ÆÆËðÄÚ´æ¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ»ñµÃÓëÄ¿½ñÓû§ÏàͬµÄÓû§È¨ÏÞ¡£ÈôÊÇÄ¿½ñÓû§Ê¹ÓÃÖÎÀíÓû§È¨Ï޵Ǽ£¬ÔòÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔ¿ØÖÆÊÜÓ°ÏìµÄϵͳ¡£ È»ºó¹¥»÷Õß¿ÉÒÔ×°ÖóÌÐò; Éó²é£¬¸ü¸Ä»òɾ³ýÊý¾Ý; »ò½¨Éè¾ßÓÐÍêÈ«Óû§È¨ÏÞµÄÐÂÕÊ»§¡£

Microsoft Scripting Engine

CVE-2019-0845

ÑÏÖØ

Windows IOleCvt Interface Ô¶³Ì´úÂëÖ´ÐÐÎó²î

IOleCvt½Ó¿Ú·ºÆðASPÍøÒ³ÄÚÈÝʱ±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£ ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔ¶³ÌÔËÐжñÒâ´úÂëÀ´¿ØÖÆÓû§µÄϵͳ¡£

Microsoft Windows

CVE-2019-0790

ÑÏÖØ

MS XML Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Microsoft XML Core Services MSXMLÆÊÎö³ÌÐò´¦Öóͷ£Óû§ÊäÈëʱ±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔ¶³ÌÔËÐжñÒâ´úÂëÀ´¿ØÖÆÓû§µÄϵͳ¡£

Microsoft XML

CVE-2019-0791

ÑÏÖØ

MS XML Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Microsoft XML Core Services MSXMLÆÊÎö³ÌÐò´¦Öóͷ£Óû§ÊäÈëʱ±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔ¶³ÌÔËÐжñÒâ´úÂëÀ´¿ØÖÆÓû§µÄϵͳ¡£

Microsoft XML

CVE-2019-0792

ÑÏÖØ

MS XML Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Microsoft XML Core Services MSXMLÆÊÎö³ÌÐò´¦Öóͷ£Óû§ÊäÈëʱ±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔ¶³ÌÔËÐжñÒâ´úÂëÀ´¿ØÖÆÓû§µÄϵͳ¡£

Microsoft XML

CVE-2019-0793

ÑÏÖØ

MS XML Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Microsoft XML Core Services MSXMLÆÊÎö³ÌÐò´¦Öóͷ£Óû§ÊäÈëʱ±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔ¶³ÌÔËÐжñÒâ´úÂëÀ´¿ØÖÆÓû§µÄϵͳ¡£

Microsoft XML

CVE-2019-0795

ÑÏÖØ

MS XML Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Microsoft XML Core Services MSXMLÆÊÎö³ÌÐò´¦Öóͷ£Óû§ÊäÈëʱ±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔ¶³ÌÔËÐжñÒâ´úÂëÀ´¿ØÖÆÓû§µÄϵͳ¡£

Microsoft XML

ADV990001

ÑÏÖØ

Latest Servicing Stack Updates

ÕâÊÇÿ¸ö²Ù×÷ϵͳµÄ×îзþÎñ¿ÍÕ»¸üÐÂÁбí¡£ ÿµ±Ðû²¼ÐµķþÎñ¿ÍÕ»¸üÐÂʱ£¬½«¸üдËÁбí¡£ ×°ÖÃ×îеķþÎñ¿ÍÕ»¸üкÜÊÇÖ÷Òª¡£

Servicing Stack Updates

CVE-2019-0786

ÑÏÖØ

SMB Server ÌØÈ¨ÌáÉýÎó²î

µ±Ö÷»ú·þÎñÆ÷ÉϵÄWindows Hyper-VÎÞ·¨×¼È·ÑéÖ¤vSMBÊý¾Ý°üÊý¾Ýʱ£¬±£´æÔ¶³ÌÖ´ÐдúÂëÎó²î¡£ÀÖ³ÉʹÓÃÕâЩÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿µÄ²Ù×÷ϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£

Windows SMB Server


ÐÞ¸´½¨Òé


ÏÖÔÚ£¬Î¢Èí¹Ù·½ÒѾ­Ðû²¼²¹¶¡ÐÞ¸´ÁËÉÏÊöÎó²î£¬½¨ÒéÓû§ÊµÊ±È·ÈÏÊÇ·ñÊܵ½Îó²îÓ°Ï죬

¾¡¿ì½ÓÄÉÐÞ²¹²½·¥£¬ÒÔ×èֹDZÔÚµÄÇå¾²Íþв¡£ÏëÒª¾ÙÐиüУ¬Ö»Ðèתµ½ÉèÖáú¸üкÍÇå¾²¡úWindows ¸üСú¼ì²é¸üУ¬»òÕßÒ²¿ÉÒÔͨ¹ýÊÖ¶¯¾ÙÐиüС£


²Î¿¼Á´½Ó


https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/18306ed5-1019-e911-a98b-000d3a33a34d