[新闻] 20120406,微软四月份安全补丁提前通知

来源:互联网 发布:ubuntu下制作u盘启动盘 编辑:程序博客网 时间:2024/06/02 09:28

大家好,我是 Richard Chen。

在此提前通知各位:微软计划于北京时间4月11日清晨发布6个安全补丁,共修复 Microsoft Windows, Microsoft Office, Internet Explorer, Forefront UAG 和 .NET Framework 中的11个安全漏洞。6个补丁的最高严重等级详见下图:

Bulletin IDMaximum Severity Rating and Vulnerability ImpactRestart RequirementAffected SoftwareBulletin 1Critical
Remote Code Execution
Requires restartMicrosoft Windows,
Internet Explorer
Bulletin 2Critical
Remote Code Execution
Requires restartMicrosoft WindowsBulletin 3Critical
Remote Code Execution
May require restartMicrosoft Windows,
Microsoft .NET Framework
Bulletin 4Critical
Remote Code Execution
May require restartMicrosoft Office,
Microsoft SQL Server,
Microsoft Server Software,
Microsoft Developer Tools
Bulletin 5Important
Information Disclosure
May require restartMicrosoft Forefront United Access GatewayBulletin 6Important
Remote Code Execution
May require restartMicrosoft Office

按照受影响的操作系统分类如下:

Windows XPBulletin IdentifierBulletin 1Bulletin 2Bulletin 3Aggregate Severity RatingCriticalCriticalCriticalWindows XP Service Pack 3Internet Explorer 6
(Critical)

Internet Explorer 7
(Critical)

Internet Explorer 8
(Critical)
Windows XP Service Pack 3
(Critical)
Windows XP Service Pack 3
(Critical)
Windows XP Professional x64 Edition Service Pack 2Internet Explorer 6
(Critical)

Internet Explorer 7
(Critical)

Internet Explorer 8
(Critical)
Windows XP Professional x64 Edition Service Pack 2
(Critical)
Windows XP Professional x64 Edition Service Pack 2
(Critical)
Windows Server 2003Bulletin IdentifierBulletin 1Bulletin 2Bulletin 3Aggregate Severity RatingModerateCriticalCriticalWindows Server 2003 Service Pack 2Internet Explorer 6
(Moderate)

Internet Explorer 7
(Moderate)

Internet Explorer 8
(Moderate)
Windows Server 2003 Service Pack 2
(Critical)
Windows Server 2003 Service Pack 2
(Critical)
Windows Server 2003 x64 Edition Service Pack 2Internet Explorer 6
(Moderate)

Internet Explorer 7
(Moderate)

Internet Explorer 8
(Moderate)
Windows Server 2003 x64 Edition Service Pack 2
(Critical)
Windows Server 2003 x64 Edition Service Pack 2
(Critical)
Windows Server 2003 with SP2 for Itanium-based SystemsInternet Explorer 6
(Moderate)

Internet Explorer 7
(Moderate)
Windows Server 2003 with SP2 for Itanium-based Systems
(Critical)
Windows Server 2003 with SP2 for Itanium-based Systems
(Critical)
Windows VistaBulletin IdentifierBulletin 1Bulletin 2Bulletin 3Aggregate Severity RatingCriticalCriticalCriticalWindows Vista Service Pack 2Internet Explorer 7
(Critical)

Internet Explorer 8
(Critical)

Internet Explorer 9
(Critical)
Windows Vista Service Pack 2
(Critical)
Windows Vista Service Pack 2
(Critical)
Windows Vista x64 Edition Service Pack 2Internet Explorer 7
(Critical)

Internet Explorer 8
(Critical)

Internet Explorer 9
(Critical)
Windows Vista x64 Edition Service Pack 2
(Critical)
Windows Vista x64 Edition Service Pack 2
(Critical)
Windows Server 2008Bulletin IdentifierBulletin 1Bulletin 2Bulletin 3Aggregate Severity RatingModerateCriticalCriticalWindows Server 2008 for 32-bit Systems Service Pack 2Internet Explorer 7**
(Moderate)

Internet Explorer 8**
(Moderate)

Internet Explorer 9**
(Moderate)
Windows Server 2008 for 32-bit Systems Service Pack 2*
(Critical)
Windows Server 2008 for 32-bit Systems Service Pack 2
(Critical)
Windows Server 2008 for x64-based Systems Service Pack 2Internet Explorer 7**
(Moderate)

Internet Explorer 8**
(Moderate)

Internet Explorer 9**
(Moderate)
Windows Server 2008 for x64-based Systems Service Pack 2*
(Critical)
Windows Server 2008 for x64-based Systems Service Pack 2
(Critical)
Windows Server 2008 for Itanium-based Systems Service Pack 2Internet Explorer 7
(Moderate)
Windows Server 2008 for Itanium-based Systems Service Pack 2
(Critical)
Windows Server 2008 for Itanium-based Systems Service Pack 2
(Critical)
Windows 7Bulletin IdentifierBulletin 1Bulletin 2Bulletin 3Aggregate Severity RatingCriticalCriticalCriticalWindows 7 for 32-bit SystemsInternet Explorer 8
(Critical)

Internet Explorer 9
(Critical)
Windows 7 for 32-bit Systems
(Critical)
Windows 7 for 32-bit Systems
(Critical)
Windows 7 for 32-bit Systems Service Pack 1Internet Explorer 8
(Critical)

Internet Explorer 9
(Critical)
Windows 7 for 32-bit Systems Service Pack 1
(Critical)
Windows 7 for 32-bit Systems Service Pack 1
(Critical)
Windows 7 for x64-based SystemsInternet Explorer 8
(Critical)

Internet Explorer 9
(Critical)
Windows 7 for x64-based Systems
(Critical)
Windows 7 for x64-based Systems
(Critical)
Windows 7 for x64-based Systems Service Pack 1Internet Explorer 8
(Critical)

Internet Explorer 9
(Critical)
Windows 7 for x64-based Systems Service Pack 1
(Critical)
Windows 7 for x64-based Systems Service Pack 1
(Critical)
Windows Server 2008 R2Bulletin IdentifierBulletin 1Bulletin 2Bulletin 3Aggregate Severity RatingModerateCriticalCriticalWindows Server 2008 R2 for x64-based SystemsInternet Explorer 8**
(Moderate)

Internet Explorer 9**
(Moderate)
Windows Server 2008 R2 for x64-based Systems*
(Critical)
Windows Server 2008 R2 for x64-based Systems*
(Critical)
Windows Server 2008 R2 for x64-based Systems Service Pack 1Internet Explorer 8**
(Moderate)

Internet Explorer 9**
(Moderate)
Windows Server 2008 R2 for x64-based Systems Service Pack 1*
(Critical)
Windows Server 2008 R2 for x64-based Systems Service Pack 1*
(Critical)
Windows Server 2008 R2 for Itanium-based SystemsInternet Explorer 8
(Moderate)
Windows Server 2008 R2 for Itanium-based Systems
(Critical)
Windows Server 2008 R2 for Itanium-based Systems
(Critical)
Windows Server 2008 R2 for Itanium-based Systems Service Pack 1Internet Explorer 8
(Moderate)
Windows Server 2008 R2 for Itanium-based Systems Service Pack 1
(Critical)
Windows Server 2008 R2 for Itanium-based Systems Service Pack 1
(Critical)

微软 Office 补丁相关信息:

Microsoft Office Suites and ComponentsBulletin IdentifierBulletin 4Bulletin 6Aggregate Severity RatingCriticalImportantMicrosoft Office 2003 Service Pack 3Microsoft Office 2003 Service Pack 3
(Critical)
Not applicableMicrosoft Office 2007 Service Pack 2Microsoft Office 2007 Service Pack 2
(Critical)
Microsoft Office 2007 Service Pack 2
(Important)
Microsoft Office 2007 Service Pack 3Microsoft Office 2007 Service Pack 3
(Critical)
Not applicableMicrosoft Office 2010 (32-bit editions)Microsoft Office 2010 (32-bit editions)
(Critical)
Not applicableMicrosoft Office 2010 Service Pack 1 (32-bit editions)Microsoft Office 2010 Service Pack 1 (32-bit editions)
(Critical)
Not applicableMicrosoft Office Web ComponentsBulletin IdentifierBulletin 4Bulletin 6Aggregate Severity RatingCriticalNoneMicrosoft Office 2003 Web Components Service Pack 3Microsoft Office 2003 Web Components Service Pack 3
(Critical)
Not applicableOther Microsoft Office SoftwareBulletin IdentifierBulletin 4Bulletin 6Aggregate Severity RatingNoneImportantMicrosoft Works 9Not applicableMicrosoft Works 9
(Important)
Microsoft Works 6–9 File ConverterNot applicableMicrosoft Works 6–9 File Converter
(Important)

Bulletin 4 的注释 : 本补丁影响多类软件。

微软服务器软件补丁相关信息:

Microsoft SQL ServerBulletin IdentifierBulletin 4Aggregate Severity RatingCriticalMicrosoft SQL Server 2000 Service Pack 4Microsoft SQL Server 2000 Service Pack 4
(Critical)
Microsoft SQL Server 2000 Analysis Services Service Pack 4Microsoft SQL Server 2000 Analysis Services Service Pack 4
(Critical)
Microsoft SQL Server 2005 for 32-bit Systems Service Pack 4Microsoft SQL Server 2005 for 32-bit Systems Service Pack 4
(Critical)
Microsoft SQL Server 2005 for Itanium-based Systems Service Pack 4Microsoft SQL Server 2005 for Itanium-based Systems Service Pack 4
(Critical)
Microsoft SQL Server 2005 for x64-based Systems Service Pack 4Microsoft SQL Server 2005 for x64-based Systems Service Pack 4
(Critical)
Microsoft SQL Server 2005 Express Edition with Advanced Services Service Pack 4Microsoft SQL Server 2005 Express Edition with Advanced Services Service Pack 4
(Critical)
Microsoft SQL Server 2008 for 32-bit Systems Service Pack 2Microsoft SQL Server 2008 for 32-bit Systems Service Pack 2
(Critical)
Microsoft SQL Server 2008 for 32-bit Systems Service Pack 3Microsoft SQL Server 2008 for 32-bit Systems Service Pack 3
(Critical)
Microsoft SQL Server 2008 for x64-based Systems Service Pack 2Microsoft SQL Server 2008 for x64-based Systems Service Pack 2
(Critical)
Microsoft SQL Server 2008 for x64-based Systems Service Pack 3Microsoft SQL Server 2008 for x64-based Systems Service Pack 3
(Critical)
Microsoft SQL Server 2008 for Itanium-based Systems Service Pack 2Microsoft SQL Server 2008 for Itanium-based Systems Service Pack 2
(Critical)
Microsoft SQL Server 2008 for Itanium-based Systems Service Pack 3Microsoft SQL Server 2008 for Itanium-based Systems Service Pack 3
(Critical)
Microsoft SQL Server 2008 R2 for 32-bit SystemsMicrosoft SQL Server 2008 R2 for 32-bit Systems
(Critical)
Microsoft SQL Server 2008 R2 for x64-based SystemsMicrosoft SQL Server 2008 R2 for x64-based Systems
(Critical)
Microsoft SQL Server 2008 R2 for Itanium-based SystemsMicrosoft SQL Server 2008 R2 for Itanium-based Systems
(Critical)

Bulletin 4 的注释 : 本补丁影响多类软件。

Microsoft BizTalk ServerBulletin IdentifierBulletin 4Aggregate Severity RatingCriticalMicrosoft BizTalk Server 2002 Service Pack 1Microsoft BizTalk Server 2002 Service Pack 1
(Critical)
Microsoft Commerce ServerBulletin IdentifierBulletin 4Aggregate Severity RatingCriticalMicrosoft Commerce Server 2002 Service Pack 4Microsoft Commerce Server 2002 Service Pack 4
(Critical)
Microsoft Commerce Server 2007 Service Pack 2Microsoft Commerce Server 2007 Service Pack 2
(Critical)
Microsoft Commerce Server 2009Microsoft Commerce Server 2009
(Critical)
Microsoft Commerce Server 2009 R2Microsoft Commerce Server 2009 R2
(Critical)

Bulletin 4 的注释 : 本补丁影响多类软件。

微软开发者工具与软件补丁相关信息:

Microsoft Visual FoxProBulletin IdentifierBulletin 4Aggregate Severity RatingCriticalMicrosoft Visual FoxPro 8.0 Service Pack 1Microsoft Visual FoxPro 8.0 Service Pack 1
(Critical)
Microsoft Visual FoxPro 9.0 Service Pack 2Microsoft Visual FoxPro 9.0 Service Pack 2
(Critical)
Visual BasicBulletin IdentifierBulletin 4Aggregate Severity RatingCriticalVisual Basic 6.0 RuntimeVisual Basic 6.0 Runtime
(Critical)

Bulletin 4 的注释 : 本补丁影响多类软件。

微软远程访问软件补丁相关信息:

Microsoft Forefront Unified Access GatewayBulletin IdentifierBulletin 5Aggregate Severity RatingImportantMicrosoft Forefront Unified Access GatewayMicrosoft Forefront Unified Access Gateway 2010 Service Pack 1
(Important)

Microsoft Forefront Unified Access Gateway 2010 Service Pack 1 Update 1
(Important)

以下为提前通知的文章全文(英文),请各位先行评估了解受影响的系统。

Microsoft Security Bulletin Advance Notification for April 2012:

http://technet.microsoft.com/en-us/security/bulletin/ms12-apr

谢谢!

Richard Chen

大中华区软件安全项目经理

原创粉丝点击