摘要
Microsoft 已針對此問題發布了針對 IT 專業人員的安全諮詢。 安全性諮詢包含其他安全性相關資訊。 欲了解更多漏洞資訊,請參閱 諮詢4025685。
舊平台指引
本節總結了為運行 Windows XP、Windows Vista、Windows 8 或 Windows Server 2003 的客戶提供的資源。 截至2017年6月13日 () 本公告發布時,這些平台已不再是主流或延長支援。 欲確定軟體版本或版本的支援生命週期,請參閱 Microsoft 支援服務生命週期。
注意 此更新不會檢查 Windows 正版優勢狀態。
對於這些舊平台的用戶,以下表格提供手動下載適用安全更新的資訊。 Microsoft 今天決定為新增平台釋出安全更新,不應被視為政策變更。 鼓勵客戶升級至支援的平台。
弱點資訊
欲了解更多這些版本所涵蓋的個別漏洞資訊,請點擊每欄頂端的連結。
較舊月台表 1 張表 3 張
| 作業系統 | MS08-067 | MS09-050 | MS10-061 | MS14-068 | MS17-010 | MS17-013 |
|---|---|---|---|---|---|---|
| Windows XP | ||||||
| Windows XP 服務包 3 | 958644 | 不受影響 | 2347290 | 不受影響 | 4012598 | 4012583 |
| Microsoft Windows XP 專業版 x64 服務包 2 | 958644 | 不受影響 | 2347290 | 不受影響 | 4012598 | 4012583 |
| Windows Server 2003 | ||||||
| Windows Server 2003 服務包 2 | 958644 | 不受影響 | 2347290 | 3011780 | 4012598 | 4012583 |
| Windows Server 2003 x64 服務包 2 | 958644 | 不受影響 | 2347290 | 3011780 | 4012598 | 4012583 |
| Windows Vista | ||||||
| Windows Vista Service Pack 2 | 不受影響 | 975517 | 2347290 | 不受影響 | 4012598 | 不受影響 |
| Windows Vista x64 Edition Service Pack 2 | 不受影響 | 975517 | 2347290 | 不受影響 | 4012598 | 不受影響 |
| Windows 8 | ||||||
| 32位元系統的 Windows 8 | 不受影響 | 不受影響 | 不受影響 | 不受影響 | 4012598 | 4012583 |
| 針對 x64 系統的 Windows 8 | 不受影響 | 不受影響 | 不受影響 | 不受影響 | 4012598 | 4012583 |
較舊的平台表 2,共 3 張
| 作業系統 | CVE-2017-0176 | CVE-2017-0222 | CVE-2017-0267 至 0280 | CVE-2017-7269 | CVE-2017-8461 | CVE-2017-8464 |
|---|---|---|---|---|---|---|
| Windows XP | ||||||
| Windows XP 服務包 3 | 4022747 | Internet Explorer 8 4018271 |
4018466 | 3197835 | 4024323 | 不受影響 |
| Microsoft Windows XP 專業版 x64 服務包 2 | 4022747 | Internet Explorer 8 4018271 |
4018466 | 3197835 | 4024323 | 不受影響 |
| Windows Server 2003 | ||||||
| Windows Server 2003 服務包 2 | 4022747 | 預設情況下的緩解 [1] | 4018466 | 3197835 | 4024323 | 不受影響 |
| Windows Server 2003 x64 服務包 2 | 4022747 | 預設情況下的緩解 [1] | 4018466 | 3197835 | 4024323 | 不受影響 |
| Windows Vista | ||||||
| Windows Vista Service Pack 2 | 不受影響 | Internet Explorer 9 4018271 |
4018466 | 不受影響 | 不受影響 | 4021903 |
| Windows Vista x64 Edition Service Pack 2 | 不受影響 | Internet Explorer 9 4018271 |
4018466 | 不受影響 | 不受影響 | 4021903 |
| Windows 8 | ||||||
| 32位元系統的 Windows 8 | 不受影響 | Internet Explorer 10 4018271 |
4019623 | 不受影響 | 不受影響 | 4022839 |
| 針對 x64 系統的 Windows 8 | 不受影響 | Internet Explorer 10 4018271 |
4019623 | 不受影響 | 不受影響 | 4022839 |
[1] - 預設情況下,Windows Server 2003、Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 及 Windows Server 2012 R2 上的 Internet Explorer 以一種稱為增強安全設定(Enhanced Security Configuration)的受限模式執行。 強化安全設定是 Internet Explorer 中一組預先設定的設定,可降低使用者或管理員下載並執行特別製作的網頁內容在伺服器上的可能性。 這是對於你未加入 Internet Explorer 受信任網站區域的網站的緩解因素。
舊平台表 3 張表
| 作業系統 | CVE-2017-8487 | CVE-2017-8543 | CVE-2017-8552 |
|---|---|---|---|
| Windows XP | |||
| Windows XP 服務包 3 | 4025218 | 4024402 | 4019204 |
| Microsoft Windows XP 專業版 x64 服務包 2 | 4025218 | 4024402 | 4019204 |
| Windows Server 2003 | |||
| Windows Server 2003 服務包 2 | 4025218 | 4024402 | 4019204 |
| Windows Server 2003 x64 服務包 2 | 4025218 | 4024402 | 4019204 |
| Windows Vista | |||
| Windows Vista Service Pack 2 | 不受影響 | 4024402 | 4019204 |
| Windows Vista x64 Edition Service Pack 2 | 不受影響 | 4024402 | 4019204 |
| Windows 8 | |||
| 32位元系統的 Windows 8 | 不受影響 | 4022839 | 4022839 |
| 針對 x64 系統的 Windows 8 | 不受影響 | 4022839 | 4022839 |
常見問題集
我在 Windows Server 2003、Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 或 Windows Server 2012 R2 上運行 Internet Explorer。 這是否能減輕這些漏洞?
是。 預設情況下,Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 及 Windows Server 2012 R2 上的 Internet Explorer 會以一種稱為增強安全設定(Enhanced Security Configuration)的受限模式執行。 強化安全設定是 Internet Explorer 中一組預先設定的設定,可降低使用者或管理員下載並執行特別製作的網頁內容在伺服器上的可能性。 這是對於你未加入 Internet Explorer 受信任網站區域的網站的緩解因素。
這些是這些平台的新版本嗎?
否。 為了幫助客戶了解所有與這些更新相關平台的支援,我們整理了這個頁面,討論目前主流或延長支援的作業系統版本。
我的作業系統版本並未列在這裡。 其他版本有更新嗎?
對於仍在主流或延長支援中的新型作業系統,請參閱此頁面。 上述其他作業系統變體 (如 RTM 或其他服務包層級) ,則沒有更新可用。 客戶應更新至最新服務包版本以獲取安全更新。