΢ÈíÐû²¼4ÔÂÇå¾²²¹¶¡ ÐÞ¸´113¸öÇå¾²ÎÊÌâ
2020-04-15
΢ÈíÓÚÖܶþÐû²¼ÁË4ÔÂÇå¾²¸üв¹¶¡£¬ÐÞ¸´ÁË113¸ö´Ó¼òÆÓµÄÓÕÆ¹¥»÷µ½Ô¶³ÌÖ´ÐдúÂëµÄÇå¾²ÎÊÌâ¡£²úÆ·Éæ¼°Android App¡¢Apps¡¢Microsoft Dynamics¡¢Microsoft Graphics Component¡¢Microsoft JET Database Engine¡¢Microsoft Office¡¢Microsoft Office SharePoint¡¢Microsoft Scripting Engine¡¢Microsoft Windows¡¢Microsoft Windows DNS¡¢Open Source Software¡¢Remote Desktop Client¡¢Visual Studio¡¢Windows Defender¡¢Windows Hyper-V¡¢Windows Kernel¡¢Windows MediaÒÔ¼°Windows Update Stack¡£
https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/2020-Apr
Òªº¦Îó²î¸ÅÊö
±¾´Î¸üÐÂ΢Èí¹²ÐÞ¸´17¸öCritical¼¶±ðÎó²î£¬²¿·Ö¸ÅÊöÈçÏ¡£
- CVE-2020-0687
Microsoft Graphics Ô¶³Ì´úÂëÖ´ÐÐÎó²î
Îó²îÓÉWindows×ÖÌå¿â¶ÔÌØÖÆÇ¶Èëʽ×ÖÌå´¦Öóͷ£²»µ±Ôì³É£¬¹¥»÷Õß¿ÉÄÜÒÔ¶àÖÖ·½·¨Ê¹ÓôËÎó²î¡£
Ò»ÖÖÊÇÔÚ»ùÓÚ web µÄ³¡¾°ÖУ¬Í¨¹ýÓÕµ¼Óû§»á¼ûÌØÖÆµÄÍøÕ¾À´Ê¹ÓÃÎó²î¡£ÁíÒ»ÖÖÊÇÔÚÎļþ¹²Ïí³¡¾°Ï£¬»áÓÕµ¼Óû§·¿ªÌØÖÆÎĵµ¡£
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0687
- CVE-2020-0907
Microsoft ͼÐÎ×é¼þÔ¶³Ì´úÂëÖ´ÐÐÎó²î
ÔÚ Microsoft ͼÐÎ×é¼þ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄÀú³ÌÖб£´æÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£½öµ±Óû§·¿ªÌØÖÆÎļþʱ£¬²Å»á´¥·¢´ËÎó²î£¬ÀÖ³ÉʹÓÃÎó²îµÄ¹¥»÷Õß¿ÉÒÔÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0907
- CVE-2020-0929£¬CVE-2020-0931£¬CVE-2020-0932
Microsoft SharePointÔ¶³ÌÖ´ÐдúÂëÎó²î
ÈôҪʹÓÃÕâЩÎó²î£¬¹¥»÷ÕßÐèÒª½«ÌØÖƵÄSharePoint³ÌÐò°üÉÏ´«ÖÁÊÜÓ°Ïì°æ±¾µÄSharePoint£¬ÒÔÔÊÐíËûÃÇÔÚSharePointÓ¦ÓóÌÐò³ØºÍSharePoint·þÎñÆ÷ÖÐÖ´ÐÐí§Òâ´úÂë¡£
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0929
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0931
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0932
- CVE-2020-0938ºÍCVE-2020-1020
Windows Adobe Font Manager¿âÔ¶³ÌÖ´ÐдúÂëÎó²î
µ±Windows Adob??e Type Manager¿â¶Ômulti-master×ÖÌ壨Adobe Type 1 PostScriptÃûÌã©´¦Öóͷ£²»µ±Ê±·ºÆðµÄÔ¶³ÌÖ´ÐдúÂëÎó²î¡£
ÈôÊǹ¥»÷ÕßÔÚWindows 10ÒÔÍâµÄÈκβÙ×÷ϵͳÉÏʹÓôËbug£¬¿ÉʵÏÖÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£ÔÚWindows 10ÉÏ£¬ËüÃǽ«½öÏÞÓÚÒÔÓÐÏÞµÄÌØÈ¨ÔÚAppContainerɳÏäÖÐÖ´ÐдúÂë¡£
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0938
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1020
- CVE-2020-0968
Internet Explorer ÖУ¬¾ç±¾ÒýÇæÔÚ´¦Öóͷ£ÄÚ´æÖй¤¾ßµÄÀú³ÌÖб£´æÒ»¸öÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£
¸ÃÎó²î¿ÉÆÆËðÄڴ棬ʹ¹¥»÷ÕßÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂë¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õ߿ɻñµÃÓëÄ¿½ñÓû§ÏàͬµÄȨÏÞ¡£
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0968
- CVE-2020-0970¡¢CVE-2020-0969
»®·ÖÊÇChakraCore¾ç±¾ÒýÇæºÍChakra¾ç±¾ÒýÇæ´¦Öóͷ£ÄÚ´æÖй¤¾ßʱ±£´æµÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î¡£Ó°ÏìMicrosoft Edge (EdgeHTML-based)£¬¸ÃÎó²î¿ÉÆÆËðÄڴ棬ʹ¹¥»÷ÕßÔÚÄ¿½ñÓû§µÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂë¡£ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õ߿ɻñµÃÓëÄ¿½ñÓû§ÏàͬµÄȨÏÞ¡£
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0970
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0969
Ïà¹ØÐÅÏ¢ÈçÏ£º
| ²úÆ· | CVE ±àºÅ | CVE ÎÊÌâ | ÑÏÖØË®Æ½ |
| Microsoft Dynamics | CVE-2020-1022 | Dynamics Business Central Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Critical |
| Microsoft Graphics Component | CVE-2020-0907 | Microsoft Graphics Components Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Critical |
| Microsoft Graphics Component | CVE-2020-0687 | Microsoft Graphics Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Critical |
| Microsoft Graphics Component | CVE-2020-0938 | Adobe Font Manager Library Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Critical |
| Microsoft Graphics Component | CVE-2020-1020 | Adobe Font Manager Library Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Critical |
| Microsoft Office | CVE-2020-0931 | Microsoft SharePoint Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Critical |
| Microsoft Office SharePoint | CVE-2020-0929 | Microsoft SharePoint Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Critical |
| Microsoft Office SharePoint | CVE-2020-0932 | Microsoft SharePoint Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Critical |
| Microsoft Office SharePoint | CVE-2020-0974 | Microsoft SharePoint Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Critical |
| Microsoft Scripting Engine | CVE-2020-0968 | Scripting Engine ÄÚ´æÆÆËðÎó²î | Critical |
| Microsoft Scripting Engine | CVE-2020-0969 | Chakra Scripting Engine ÄÚ´æÆÆËðÎó²î | Critical |
| Microsoft Scripting Engine | CVE-2020-0970 | Scripting Engine ÄÚ´æÆÆËðÎó²î | Critical |
| Microsoft Windows | CVE-2020-0965 | Microsoft Windows Codecs Library Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Critical |
| Windows Hyper-V | CVE-2020-0910 | Windows Hyper-V Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Critical |
| Windows Media | CVE-2020-0948 | Media Foundation ÄÚ´æÆÆËðÎó²î | Critical |
| Windows Media | CVE-2020-0949 | Media Foundation ÄÚ´æÆÆËðÎó²î | Critical |
| Windows Media | CVE-2020-0950 | Media Foundation ÄÚ´æÆÆËðÎó²î | Critical |
| Android App | CVE-2020-0943 | Microsoft YourPhone Application for Android Authentication Bypass Vulnerability | Important |
| Apps | CVE-2020-1019 | Microsoft RMS Sharing App for Mac ÌØÈ¨ÌáÉýÎó²î | Important |
| Microsoft Dynamics | CVE-2020-1018 | Microsoft Dynamics Business Central/NAV Information Disclosure | Important |
| Microsoft Dynamics | CVE-2020-1049 | Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability | Important |
| Microsoft Dynamics | CVE-2020-1050 | Microsoft Dynamics 365 (On-Premise) Cross Site Scripting Vulnerability | Important |
| Microsoft Graphics Component | CVE-2020-0784 | DirectX ÌØÈ¨ÌáÉýÎó²î | Important |
| Microsoft Graphics Component | CVE-2020-0987 | Microsoft Graphics Component ÐÅϢй¶Îó²î | Important |
| Microsoft Graphics Component | CVE-2020-1004 | Windows Graphics Component ÌØÈ¨ÌáÉýÎó²î | Important |
| Microsoft Graphics Component | CVE-2020-1005 | Microsoft Graphics Component ÐÅϢй¶Îó²î | Important |
| Microsoft Graphics Component | CVE-2020-0952 | Windows GDI ÐÅϢй¶Îó²î | Important |
| Microsoft Graphics Component | CVE-2020-0958 | Win32k ÌØÈ¨ÌáÉýÎó²î | Important |
| Microsoft Graphics Component | CVE-2020-0964 | GDI+ Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Important |
| Microsoft Graphics Component | CVE-2020-0982 | Microsoft Graphics Component ÐÅϢй¶Îó²î | Important |
| Microsoft JET Database Engine | CVE-2020-0988 | Jet Database Engine Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Important |
| Microsoft JET Database Engine | CVE-2020-0992 | Jet Database Engine Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Important |
| Microsoft JET Database Engine | CVE-2020-0994 | Jet Database Engine Ô¶³Ì´úÂëÖ´ÐÐÎó²î | Important |
| Microsoft JET Database Engine | CVE-2020-0995 | Jet Database Engi
?
ÄúµÄÁªÏµ·½·¨? 2025 NSFOCUS AG¹«Ë¾¿Æ¼¼ www.nsfocus.com All Rights Reserved . ¾©¹«Íø°²±¸ 11010802021605ºÅ ¾©ICP±¸14004349ºÅ ¾©ICPÖ¤110355ºÅ |

AG¹«Ë¾ÔÆ







