Microsoft 安全諮詢4025685:舊平台指引:2017年6月13日

套用到
Windows Vista Service Pack 2 Windows Vista Home Basic Windows Vista Home Premium Windows Vista Business Windows Vista Ultimate Windows Vista Enterprise Windows Vista Starter Windows XP Microsoft Windows XP Professional Microsoft Windows XP Home Edition

摘要

Microsoft 已針對此問題發布了針對 IT 專業人員的安全諮詢。 安全性諮詢包含其他安全性相關資訊。 欲了解更多漏洞資訊,請參閱 諮詢4025685

舊平台指引

本節總結了為運行 Windows XPWindows VistaWindows 8Windows Server 2003 的客戶提供的資源。 截至2017年6月13日 () 本公告發布時,這些平台已不再是主流或延長支援。 欲確定軟體版本或版本的支援生命週期,請參閱 Microsoft 支援服務生命週期

注意 此更新不會檢查 Windows 正版優勢狀態。

對於這些舊平台的用戶,以下表格提供手動下載適用安全更新的資訊。 Microsoft 今天決定為新增平台釋出安全更新,不應被視為政策變更。 鼓勵客戶升級至支援的平台。

弱點資訊

欲了解更多這些版本所涵蓋的個別漏洞資訊,請點擊每欄頂端的連結。

較舊月台表 1 張表 3 張

作業系統 MS08-067 MS09-050 MS10-061 MS14-068 MS17-010 MS17-013
Windows XP
Windows XP 服務包 3 958644 不受影響 2347290 不受影響 4012598 4012583
Microsoft Windows XP 專業版 x64 服務包 2 958644 不受影響 2347290 不受影響 4012598 4012583
Windows Server 2003
Windows Server 2003 服務包 2 958644 不受影響 2347290 3011780 4012598 4012583
Windows Server 2003 x64 服務包 2 958644 不受影響 2347290 3011780 4012598 4012583
Windows Vista
Windows Vista Service Pack 2 不受影響 975517 2347290 不受影響 4012598 不受影響
Windows Vista x64 Edition Service Pack 2 不受影響 975517 2347290 不受影響 4012598 不受影響
Windows 8
32位元系統的 Windows 8 不受影響 不受影響 不受影響 不受影響 4012598 4012583
針對 x64 系統的 Windows 8 不受影響 不受影響 不受影響 不受影響 4012598 4012583

較舊的平台表 2,共 3 張

作業系統 CVE-2017-0176 CVE-2017-0222 CVE-2017-0267 至 0280 CVE-2017-7269 CVE-2017-8461 CVE-2017-8464
Windows XP
Windows XP 服務包 3 4022747 Internet Explorer 8
4018271
4018466 3197835 4024323 不受影響
Microsoft Windows XP 專業版 x64 服務包 2 4022747 Internet Explorer 8
4018271
4018466 3197835 4024323 不受影響
Windows Server 2003
Windows Server 2003 服務包 2 4022747 預設情況下的緩解 [1] 4018466 3197835 4024323 不受影響
Windows Server 2003 x64 服務包 2 4022747 預設情況下的緩解 [1] 4018466 3197835 4024323 不受影響
Windows Vista
Windows Vista Service Pack 2 不受影響 Internet Explorer 9
4018271
4018466 不受影響 不受影響 4021903
Windows Vista x64 Edition Service Pack 2 不受影響 Internet Explorer 9
4018271
4018466 不受影響 不受影響 4021903
Windows 8
32位元系統的 Windows 8 不受影響 Internet Explorer 10
4018271
4019623 不受影響 不受影響 4022839
針對 x64 系統的 Windows 8 不受影響 Internet Explorer 10
4018271
4019623 不受影響 不受影響 4022839

[1] - 預設情況下,Windows Server 2003、Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 及 Windows Server 2012 R2 上的 Internet Explorer 以一種稱為增強安全設定(Enhanced Security Configuration)的受限模式執行。 強化安全設定是 Internet Explorer 中一組預先設定的設定,可降低使用者或管理員下載並執行特別製作的網頁內容在伺服器上的可能性。 這是對於你未加入 Internet Explorer 受信任網站區域的網站的緩解因素。

舊平台表 3 張表

作業系統 CVE-2017-8487 CVE-2017-8543 CVE-2017-8552
Windows XP
Windows XP 服務包 3 4025218 4024402 4019204
Microsoft Windows XP 專業版 x64 服務包 2 4025218 4024402 4019204
Windows Server 2003
Windows Server 2003 服務包 2 4025218 4024402 4019204
Windows Server 2003 x64 服務包 2 4025218 4024402 4019204
Windows Vista
Windows Vista Service Pack 2 不受影響 4024402 4019204
Windows Vista x64 Edition Service Pack 2 不受影響 4024402 4019204
Windows 8
32位元系統的 Windows 8 不受影響 4022839 4022839
針對 x64 系統的 Windows 8 不受影響 4022839 4022839

常見問題集

我在 Windows Server 2003、Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 或 Windows Server 2012 R2 上運行 Internet Explorer。 這是否能減輕這些漏洞?
是。 預設情況下,Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 及 Windows Server 2012 R2 上的 Internet Explorer 會以一種稱為增強安全設定(Enhanced Security Configuration)的受限模式執行。 強化安全設定是 Internet Explorer 中一組預先設定的設定,可降低使用者或管理員下載並執行特別製作的網頁內容在伺服器上的可能性。 這是對於你未加入 Internet Explorer 受信任網站區域的網站的緩解因素。

這些是這些平台的新版本嗎?
否。 為了幫助客戶了解所有與這些更新相關平台的支援,我們整理了這個頁面,討論目前主流或延長支援的作業系統版本。

我的作業系統版本並未列在這裡。 其他版本有更新嗎?
對於仍在主流或延長支援中的新型作業系統,請參閱此頁面。 上述其他作業系統變體 (如 RTM 或其他服務包層級) ,則沒有更新可用。 客戶應更新至最新服務包版本以獲取安全更新。