¡¾Îó²îͨ¸æ¡¿Î¢Èí10Ô¶à¸öÇå¾²Îó²î
Ðû²¼Ê±¼ä 2025-10-15Ò»¡¢Îó²î¸ÅÊö
2025Äê10ÔÂ15ÈÕ£¬×ðÁú¿Ê±¼¯ÍÅVSRC¼à²âµ½Î¢ÈíÐû²¼ÁË10ÔÂÇå¾²¸üУ¬±¾´Î¸üÐÂÐÞ¸´ÁË174¸öÎó²î£¬º¸ÇÌØÈ¨ÌáÉý¡¢Ô¶³Ì´úÂëÖ´ÐС¢ÐÅϢй¶µÈ¶àÖÖÎó²îÀàÐÍ¡£Îó²î¼¶±ðÂþÑÜÈçÏ£º15¸öÑÏÖØ¼¶±ðÎó²î£¬157¸öÖ÷Òª¼¶±ðÎó²î£¬2ÆäÖÐΣ¼¶±ðÎó²î£¨Îó²î¼¶±ðÒÀ¾Ý΢Èí¹Ù·½Êý¾Ý£©¡£
ÆäÖУ¬16¸öÎó²î±»Î¢Èí±ê¼ÇΪ¡°¸ü¿ÉÄܱ»Ê¹Óá±¼°¡°¼ì²âʹÓÃÇéÐΡ±£¬Åú×¢ÕâЩÎó²î±£´æ½Ï¸ßµÄʹÓÃΣº¦£¬½¨ÒéÓÅÏÈÐÞ¸´ÒÔ½µµÍDZÔÚÇå¾²Íþв¡£
CVE-ID | CVE ÎÊÌâ | Îó²î¼¶±ð |
CVE-2025-48004 | Microsoft ÊðÀíÎļþÏµÍ³ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-24052 | Windows Agere µ÷ÖÆ½âµ÷Æ÷Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55676 | Windows USB ÊÓÆµÀàϵͳÇý¶¯³ÌÐòÐÅÏ¢Åû¶Îó²î | Ö÷Òª |
CVE-2025-55680 | Windows Cloud Files Mini Filter Driver ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55681 | ×ÀÃæ´°¿ÚÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55692 | Windows ¹ýʧ±¨¸æ·þÎñÌØÈ¨Îó²îÌáÉý | Ö÷Òª |
CVE-2025-55693 | Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55694 | Windows ¹ýʧ±¨¸æ·þÎñÌØÈ¨Îó²îÌáÉý | Ö÷Òª |
CVE-2025-58722 | Microsoft DWM ½¹µã¿âȨÏÞÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59194 | Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59199 | Èí¼þ±£»¤Æ½Ì¨(SPP) ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59246 | Azure Entra ID ÌØÈ¨ÌáÉýÎó²î | ÑÏÖØ |
CVE-2025-59287 | Windows ·þÎñÆ÷¸üзþÎñ (WSUS) Ô¶³Ì´úÂëÖ´ÐÐÎó²î | ÑÏÖØ |
CVE-2025-59502 | Remote Procedure Call Denial of Service Vulnerability | ÖÐ |
CVE-2025-24990 | Windows Agere µ÷ÖÆ½âµ÷Æ÷Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59230 | Windows Ô¶³Ì»á¼ûÅþÁ¬ÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
΢Èí10Ô¸üÐÂÐÞ¸´µÄÍêÕûÎó²îÁбíÈçÏ£º
CVE-ID | CVE ÎÊÌâ | Îó²î¼¶±ð |
CVE-2025-24052 | Windows Agere µ÷ÖÆ½âµ÷Æ÷Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-24990 | Windows Agere µ÷ÖÆ½âµ÷Æ÷Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-25004 | PowerShell ȨÏÞÌáÉýÎó²î | Ö÷Òª |
CVE-2025-47979 | Microsoft ¹ÊÕÏ×ªÒÆÈº¼¯ÐÅÏ¢×ß©Îó²î | Ö÷Òª |
CVE-2025-47989 | Azure Connected Machine Agent ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-48004 | Microsoft ÊðÀíÎļþÏµÍ³ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-48813 | Virtual Secure Mode Spoofing Vulnerability | Ö÷Òª |
CVE-2025-49708 | Microsoft ͼÐÎ×é¼þÌØÈ¨ÌáÉýÎó²î | ÑÏÖØ |
CVE-2025-50152 | Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-50174 | Windows ×°±¸¹ØÁªÖÐתվ·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-50175 | Windows Êý×ÖýÌåÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-53139 | Windows Hello Çå¾²¹¦Ð§ÈƹýÎó²î | Ö÷Òª |
CVE-2025-53717 | Windows »ùÓÚÐéÄ⻯µÄÇå¾²ÐÔ (VBS) Enclave ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-53768 | Xbox IStorageService ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-53782 | Microsoft Exchange Server ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55240 | Visual Studio ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55247 | .NET ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55248 | .NET¡¢.NET Framework ºÍ Visual Studio ÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-55315 | ASP.NET Çå¾²¹¦Ð§ÈƹýÎó²î | Ö÷Òª |
CVE-2025-55320 | ÉèÖÃÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55321 | Azure Monitor ÈÕÖ¾ÆÊÎöÓÕÆÎó²î | ÑÏÖØ |
CVE-2025-55325 | Windows ´æ´¢ÖÎÀíÌṩ³ÌÐòÐÅÏ¢Åû¶Îó²î | Ö÷Òª |
CVE-2025-55326 | Windows »¥Áª×°±¸Æ½Ì¨·þÎñ (Cdpsvc) Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-55328 | Windows Hyper-V ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55330 | Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î | Ö÷Òª |
CVE-2025-55331 | Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55332 | Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î | Ö÷Òª |
CVE-2025-55333 | Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î | Ö÷Òª |
CVE-2025-55334 | Windows ÄÚºËÇå¾²¹¦Ð§ÈƹýÎó²î | Ö÷Òª |
CVE-2025-55335 | Windows NTFS ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55336 | Windows Cloud Files Mini Filter Driver ÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-55337 | Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î | Ö÷Òª |
CVE-2025-55338 | Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î | Ö÷Òª |
CVE-2025-55339 | Windows ÍøÂçÇý¶¯³ÌÐò½Ó¿Ú¹æ·¶Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55340 | Windows Ô¶³Ì×ÀÃæÐÒéÇå¾²¹¦Ð§Èƹý | Ö÷Òª |
CVE-2025-55676 | Windows USB ÊÓÆµÀàϵͳÇý¶¯³ÌÐòÐÅÏ¢Åû¶Îó²î | Ö÷Òª |
CVE-2025-55677 | Windows ×°±¸¹ØÁªÖÐתվ·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55678 | DirectX ͼÐÎÄÚºËÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55679 | Windows ÄÚºËÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-55680 | Windows Cloud Files Mini Filter Driver ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55681 | ×ÀÃæ´°¿ÚÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55682 | Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î | Ö÷Òª |
CVE-2025-55683 | Windows ÄÚºËÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-55684 | Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55685 | Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55686 | Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55687 | Windows Resilient Îļþϵͳ (ReFS) ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55688 | Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55689 | Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55690 | Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55691 | Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55692 | Windows ¹ýʧ±¨¸æ·þÎñÌØÈ¨Îó²îÌáÉý | Ö÷Òª |
CVE-2025-55693 | Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55694 | Windows ¹ýʧ±¨¸æ·þÎñÌØÈ¨Îó²îÌáÉý | Ö÷Òª |
CVE-2025-55695 | Windows WLAN AutoConfig ·þÎñÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-55696 | NtQueryInformation Token º¯Êý (ntifs.h) ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55697 | Azure Local ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-55698 | DirectX ͼÐÎÄں˾ܾø·þÎñÎó²î | Ö÷Òª |
CVE-2025-55699 | Windows ÄÚºËÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-55700 | Windows ·ÓɺÍÔ¶³Ì»á¼û·þÎñ (RRAS) ÐÅÏ¢Åû¶Îó²î | Ö÷Òª |
CVE-2025-55701 | Windows Éí·ÝÑéÖ¤ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-58714 | WinSock µÄ Windows ¸¨Öú¹¦Ð§Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-58715 | Windows ÓïÒôÔËÐÐÊ±ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-58716 | Windows ÓïÒôÔËÐÐÊ±ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-58717 | Windows ·ÓɺÍÔ¶³Ì»á¼û·þÎñ (RRAS) ÐÅÏ¢Åû¶Îó²î | Ö÷Òª |
CVE-2025-58718 | Ô¶³Ì×ÀÃæ¿Í»§¶ËÔ¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-58719 | Windows »¥Áª×°±¸Æ½Ì¨·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-58720 | Windows ¼ÓÃÜ·þÎñÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-58722 | Microsoft DWM ½¹µã¿âȨÏÞÌáÉýÎó²î | Ö÷Òª |
CVE-2025-58724 | ÒÑÆôÓÃArc µÄ·þÎñÆ÷ - Azure Connected Machine Agent ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-58725 | Windows COM+ ÊÂÎñϵͳ·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-58726 | Windows SMB Server Elevation of Privilege Vulnerability | Ö÷Òª |
CVE-2025-58727 | Windows »¥Áª×°±¸Æ½Ì¨·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-58728 | Windows Bluetooth ·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-58729 | Windows ÍâµØ¾Û»áÖÎÀíÆ÷ (LSM) ¾Ü¾ø·þÎñÎó²î | Ö÷Òª |
CVE-2025-58730 | ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-58731 | ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-58732 | ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-58733 | ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-58734 | ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-58735 | ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-58736 | ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-58737 | Ô¶³Ì×ÀÃæÐÒéÔ¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-58738 | ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-58739 | Microsoft Windows Îļþ×ÊÔ´ÖÎÀíÆ÷ÓÕÆÎó²î | Ö÷Òª |
CVE-2025-59184 | ´æ´¢¿Õ¼äֱͨѶϢй¶Îó²î | Ö÷Òª |
CVE-2025-59185 | NTLM ¹þϣй¶ÓÕÆÎó²î | Ö÷Òª |
CVE-2025-59186 | Windows ÄÚºËÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59187 | Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59188 | Microsoft ¹ÊÕÏ×ªÒÆÈº¼¯ÐÅÏ¢×ß©Îó²î | Ö÷Òª |
CVE-2025-59189 | Microsoft ÊðÀíÎļþÏµÍ³ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59190 | Windows Search ·þÎñ¾Ü¾ø·þÎñÎó²î | Ö÷Òª |
CVE-2025-59191 | Windows »¥Áª×°±¸Æ½Ì¨·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59192 | Storport.sys Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59193 | Windows ÖÎÀí·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59194 | Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59195 | Microsoft ͼÐÎ×é¼þ¾Ü¾ø·þÎñÎó²î | Ö÷Òª |
CVE-2025-59196 | Windows ¼òÆÓËÑË÷ºÍ·¢Ã÷ÐÒé (SSDP) ·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59197 | Windows ETL ͨµÀÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59198 | Windows Search ·þÎñ¾Ü¾ø·þÎñÎó²î | Ö÷Òª |
CVE-2025-59199 | Èí¼þ±£»¤Æ½Ì¨(SPP) ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59200 | Êý¾Ý¹²Ïí·þÎñÓÕÆÎó²î | Ö÷Òª |
CVE-2025-59201 | ÍøÂçÅþÁ¬×´Ì¬Ö¸Ê¾Æ÷(NCSI) ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59202 | Windows Ô¶³Ì×ÀÃæ·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59203 | Windows ״̬´æ´¢¿â API ·þÎñÆ÷ÎļþÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59204 | Windows ÖÎÀí·þÎñÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59205 | Windows ͼÐÎ×é¼þÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59206 | Windows »Ø¸´Îļþϵͳ (ReFS) ɾ³ýÖØ¸´·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59207 | Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59208 | Windows MapUrlToZone ÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59209 | Windows ÍÆËÍ֪ͨÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59210 | Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability | Ö÷Òª |
CVE-2025-59211 | Windows ÍÆËÍ֪ͨÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59213 | ÉèÖÃÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59214 | Microsoft Windows Îļþ×ÊÔ´ÖÎÀíÆ÷ÓÕÆÎó²î | Ö÷Òª |
CVE-2025-59218 | Azure Entra ID ÌØÈ¨ÌáÉýÎó²î | ÑÏÖØ |
CVE-2025-59221 | Microsoft Word Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-59222 | Microsoft Word Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-59223 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-59224 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-59225 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-59226 | Microsoft Office Visio Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-59227 | Microsoft Office Ô¶³ÌÖ´ÐдúÂëÎó²î | ÑÏÖØ |
CVE-2025-59228 | Microsoft SharePoint Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-59229 | Microsoft Office ¾Ü¾ø·þÎñÎó²î | Ö÷Òª |
CVE-2025-59230 | Windows Ô¶³Ì»á¼ûÅþÁ¬ÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59231 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-59232 | Microsoft Excel ÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59233 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-59234 | Microsoft Office Ô¶³ÌÖ´ÐдúÂëÎó²î | ÑÏÖØ |
CVE-2025-59235 | Microsoft Excel ÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59236 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | ÑÏÖØ |
CVE-2025-59237 | Microsoft SharePoint Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-59238 | Microsoft PowerPoint Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-59241 | Windows ¿µ½¡ºÍÓÅ»¯ÌåÑéÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59242 | WinSock µÄ Windows ¸¨Öú¹¦Ð§Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59243 | Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î | Ö÷Òª |
CVE-2025-59244 | NTLM ¹þϣй¶ÓÕÆÎó²î | Ö÷Òª |
CVE-2025-59246 | Azure Entra ID ÌØÈ¨ÌáÉýÎó²î | ÑÏÖØ |
CVE-2025-59247 | Azure PlayFab ÌØÈ¨ÌáÉýÎó²î | ÑÏÖØ |
CVE-2025-59248 | Microsoft Exchange Server ÓÕÆÎó²î | Ö÷Òª |
CVE-2025-59249 | Microsoft Exchange Server ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59250 | SQL Server JDBC Çý¶¯³ÌÐòÓÕÆÎó²î | Ö÷Òª |
CVE-2025-59252 | M365 Copilot ÓÕÆÎó²î | ÑÏÖØ |
CVE-2025-59253 | Windows Search ·þÎñ¾Ü¾ø·þÎñÎó²î | Ö÷Òª |
CVE-2025-59254 | Microsoft DWM ½¹µã¿âȨÏÞÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59255 | Windows DWM ½¹µã¿âÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59257 | Windows ÍâµØ¾Û»áÖÎÀíÆ÷ (LSM) ¾Ü¾ø·þÎñÎó²î | Ö÷Òª |
CVE-2025-59258 | Windows Active Directory ÍŽáÉí·ÝÑéÖ¤·þÎñ (ADFS) ÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59259 | Windows ÍâµØ¾Û»áÖÎÀíÆ÷ (LSM) ¾Ü¾ø·þÎñÎó²î | Ö÷Òª |
CVE-2025-59260 | Microsoft ¹ÊÕÏ×ªÒÆÈº¼¯ÐéÄâÇý¶¯³ÌÐòÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59261 | Windows ͼÐÎ×é¼þÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59271 | Redis Enterprise ÌØÈ¨ÌáÉýÎó²î | ÑÏÖØ |
CVE-2025-59272 | Copilot ÓÕÆÎó²î | ÑÏÖØ |
CVE-2025-59275 | Windows Éí·ÝÑéÖ¤ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59277 | Windows Éí·ÝÑéÖ¤ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59278 | Windows Éí·ÝÑéÖ¤ÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59280 | Windows SMB ¿Í»§¶Ë¸Ä¶¯Îó²î | Ö÷Òª |
CVE-2025-59281 | Xbox ÓÎÏ··þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59282 | Internet Information Services (IIS) Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability | Ö÷Òª |
CVE-2025-59284 | Windows NTLM ÓÕÆÎó²î | Ö÷Òª |
CVE-2025-59285 | Azure Monitor ÊðÀíÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59286 | Copilot ÓÕÆÎó²î | ÑÏÖØ |
CVE-2025-59287 | Windows ·þÎñÆ÷¸üзþÎñ (WSUS) Ô¶³Ì´úÂëÖ´ÐÐÎó²î | ÑÏÖØ |
CVE-2025-59288 | Playwright ÓÕÆÎó²î | ÖÐ |
CVE-2025-59289 | Windows Bluetooth ·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59290 | Windows Bluetooth ·þÎñÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59291 | ÉñÃØAzure ÈÝÆ÷ʵÀýȨÏÞÌáÉýÎó²î | ÑÏÖØ |
CVE-2025-59292 | Azure Compute Gallery ÌØÈ¨ÌáÉýÎó²î | ÑÏÖØ |
CVE-2025-59294 | Windows ʹÃüÀ¸ÊµÊ±Ô¤ÀÀÐÅϢй¶Îó²î | Ö÷Òª |
CVE-2025-59295 | Windows URL ÆÊÎöÔ¶³Ì´úÂëÖ´ÐÐÎó²î | Ö÷Òª |
CVE-2025-59494 | Azure Monitor ÊðÀíÌØÈ¨ÌáÉýÎó²î | Ö÷Òª |
CVE-2025-59497 | Microsoft Defender for Linux ¾Ü¾ø·þÎñÎó²î | Ö÷Òª |
CVE-2025-59502 | Remote Procedure Call Denial of Service Vulnerability | ÖÐ |
¶þ¡¢Ó°Ïì¹æÄ£
ÊÜÓ°ÏìµÄ²úÆ·/¹¦Ð§/·þÎñ/×é¼þ°üÀ¨£º
Agere Windows Modem Driver
Microsoft PowerShell
Windows Failover Cluster
Azure Connected Machine Agent
Microsoft Brokering File System
Virtual Secure Mode
Microsoft Graphics Component
Windows Kernel
Windows Device Association Broker service
Windows Digital Media
Windows Hello
Windows Virtualization-Based Security (VBS) Enclave
Xbox
Microsoft Exchange Server
Visual Studio
.NET
.NET, .NET Framework, Visual Studio
ASP.NET Core
Microsoft Configuration Manager
Azure Monitor
Windows Storage Management Provider
Connected Devices Platform Service (Cdpsvc)
Windows Hyper-V
Windows BitLocker
Windows PrintWorkflowUserSvc
Windows NTFS
Windows Cloud Files Mini Filter Driver
Windows NDIS
Windows Remote Desktop Protocol
Windows USB Video Driver
Windows DirectX
Windows DWM
Windows Resilient File System (ReFS)
Windows Error Reporting
Windows WLAN Auto Config Service
NtQueryInformation Token function (ntifs.h)
Azure Local
Windows Routing and Remote Access Service (RRAS)
Microsoft Windows
Windows Ancillary Function Driver for WinSock
Microsoft Windows Speech
Remote Desktop Client
Windows Cryptographic Services
Windows COM
Windows SMB Server
Windows Connected Devices Platform Service
Windows Bluetooth Service
Windows Local Session Manager (LSM)
Inbox COM Objects
Windows Remote Desktop
Windows File Explorer
Windows High Availability Services
Windows Core Shell
Microsoft Windows Search Component
Storport.sys Driver
Windows Management Services
Windows SSDP Service
Windows ETL Channel
Software Protection Platform (SPP)
Data Sharing Service Client
Network Connection Status Indicator (NCSI)
Windows Remote Desktop Services
Windows StateRepository API
Windows Resilient File System (ReFS) Deduplication Service
Windows MapUrlToZone
Windows Push Notification Core
Azure Entra ID
Microsoft Office Word
Microsoft Office Excel
Microsoft Office Visio
Microsoft Office
Microsoft Office SharePoint
Windows Remote Access Connection Manager
Microsoft Office PowerPoint
Windows Health and Optimized Experiences Service
Azure PlayFab
JDBC Driver for SQL Server
Copilot
Windows DWM Core Library
Active Directory Federation Services
Microsoft Failover Cluster Virtual Driver
Redis Enterprise
Windows Authentication Methods
Windows SMB Client
XBox Gaming Services
Windows NTLM
Azure Monitor Agent
Windows Server Update Service
GitHub
Confidential Azure Container Instances
Windows Taskbar Live
Internet Explorer
Microsoft Defender for Linux
Windows Remote Procedure Cal
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
ÏÖÔÚ΢ÈíÒÑÐû²¼Ïà¹ØÇå¾²¸üУ¬½¨ÒéÊÜÓ°ÏìµÄÓû§¾¡¿ìÐÞ¸´¡£
£¨Ò»£©Windows Update×Ô¶¯¸üÐÂ
Microsoft UpdateĬÈÏÆôÓ㬵±ÏµÍ³¼ì²âµ½¿ÉÓøüÐÂʱ£¬½«»á×Ô¶¯ÏÂÔØ¸üв¢ÔÚÏÂÒ»´ÎÆô¶¯Ê±×°Öá£Ò²¿ÉÑ¡Ôñͨ¹ýÒÔϰ취ÊÖ¶¯¾ÙÐиüУº
1¡¢µã»÷¡°×îÏȲ˵¥¡±»ò°´Windows¿ì½Ý¼ü£¬µã»÷½øÈë¡°ÉèÖá±
2¡¢Ñ¡Ôñ¡°¸üкÍÇå¾²¡±£¬½øÈë¡°Windows¸üС±£¨Windows 8¡¢Windows 8.1¡¢Windows Server 2012ÒÔ¼°Windows Server 2012 R2¿Éͨ¹ý¿ØÖÆÃæ°å½øÈë¡°Windows¸üС±£¬Ïêϸ°ì·¨Îª¡°¿ØÖÆÃæ°å¡±->¡°ÏµÍ³ºÍÇå¾²¡±->¡°Windows¸üС±£©
3¡¢Ñ¡Ôñ¡°¼ì²é¸üС±£¬ÆÚ´ýϵͳ×Ô¶¯¼ì²é²¢ÏÂÔØ¿ÉÓøüС£
4¡¢¸üÐÂÍê³ÉºóÖØÆôÅÌËã»ú£¬¿Éͨ¹ý½øÈë¡°Windows¸üС±->¡°Éó²é¸üÐÂÀúÊ·¼Í¼¡±Éó²éÊÇ·ñÀÖ³É×°ÖÃÁ˸üС£¹ØÓÚûÓÐÀÖ³É×°ÖõĸüУ¬¿ÉÒÔµã»÷¸Ã¸üÐÂÃû³Æ½øÈë΢Èí¹Ù·½¸üÐÂÐÎòÁ´½Ó£¬µã»÷×îеÄSSUÃû³Æ²¢ÔÚÐÂÁ´½ÓÖеã»÷¡°Microsoft ¸üÐÂĿ¼¡±£¬È»ºóÔÚÐÂÁ´½ÓÖÐÑ¡ÔñÊÊÓÃÓÚÄ¿µÄϵͳµÄ²¹¶¡¾ÙÐÐÏÂÔØ²¢×°Öá£
£¨¶þ£©ÊÖ¶¯×°ÖøüÐÂ
Microsoft¹Ù·½ÏÂÔØÏìÓ¦²¹¶¡¾ÙÐиüС£
2025Äê10ÔÂÇå¾²¸üÐÂÏÂÔØÁ´½Ó£º
https://msrc.microsoft.com/update-guide/releaseNote/2025-Oct
²¹¶¡ÏÂÔØÊ¾Àý£¨²Î¿¼£©£º
1.·¿ªÉÏÊöÏÂÔØÁ´½Ó£¬µã»÷Îó²îÁбíÖÐÒªÐÞ¸´µÄCVEÁ´½Ó¡£

Àý1£ºÎ¢ÈíÎó²îÁÐ±í£¨Ê¾Àý£©
2.ÔÚ΢Èíͨ¸æÒ³Ãæµ×²¿×ó²à¡¾²úÆ·¡¿ÁÐÑ¡ÔñÏìÓ¦µÄϵͳÀàÐÍ£¬µã»÷ÓҲࡾÏÂÔØ¡¿Áз¿ª²¹¶¡ÏÂÔØÁ´½Ó¡£

Àý2£ºCVE-2022-21989²¹¶¡ÏÂÔØÊ¾Àý
3.µã»÷¡¾Çå¾²¸üС¿£¬·¿ª²¹¶¡ÏÂÔØÒ³Ãæ£¬ÏÂÔØÏìÓ¦²¹¶¡²¢¾ÙÐÐ×°Öá£

Àý3£º²¹¶¡ÏÂÔØ½çÃæ
4.×°ÖÃÍê³ÉºóÖØÆôÅÌËã»ú¡£
3.2 ÔÝʱ²½·¥
ÔÝÎÞ¡£
3.3 ͨÓý¨Òé
? °´ÆÚ¸üÐÂϵͳ²¹¶¡£¬ïÔÌϵͳÎó²î£¬ÌáÉý·þÎñÆ÷µÄÇå¾²ÐÔ¡£
? ÔöǿϵͳºÍÍøÂçµÄ»á¼û¿ØÖÆ£¬Ð޸ķÀ»ðǽսÂÔ£¬¹Ø±Õ·ÇÐëÒªµÄÓ¦Óö˿ڻò·þÎñ£¬ïÔ̽«Î£ÏÕ·þÎñ£¨ÈçSSH¡¢RDPµÈ£©Ì»Â¶µ½¹«Íø£¬ïÔ̹¥»÷Ãæ¡£
? ʹÓÃÆóÒµ¼¶Çå¾²²úÆ·£¬ÌáÉýÆóÒµµÄÍøÂçÇå¾²ÐÔÄÜ¡£
? ÔöǿϵͳÓû§ºÍȨÏÞÖÎÀí£¬ÆôÓöàÒòËØÈÏÖ¤»úÖÆºÍ×îСȨÏÞÔÔò£¬Óû§ºÍÈí¼þȨÏÞÓ¦¼á³ÖÔÚ×îµÍÏÞ¶È¡£
? ÆôÓÃÇ¿ÃÜÂëÕ½ÂÔ²¢ÉèÖÃΪ°´ÆÚÐ޸ġ£
3.4 ²Î¿¼Á´½Ó
https://msrc.microsoft.com/update-guide/releaseNote/2025-Oct


¾©¹«Íø°²±¸11010802024551ºÅ