Microsoft安全公告:颁发不当的数字证书可能允许欺骗

应用对象
Windows Server 2012 R2 Datacenter Windows Server 2012 R2 Standard Windows Server 2012 R2 Essentials Windows Server 2012 R2 Foundation Windows 8.1 Enterprise Windows 8.1 Pro Windows 8.1 Windows RT 8.1 Windows Server 2012 Datacenter Windows Server 2012 Standard Windows Server 2012 Essentials Windows Server 2012 Foundation Windows 8 Enterprise Windows 8 Pro Windows 8 Windows RT Windows Server 2008 R2 Service Pack 1 Windows Server 2008 R2 Datacenter Windows Server 2008 R2 Enterprise Windows Server 2008 R2 Standard Windows Server 2008 R2 Web Edition Windows Server 2008 R2 Foundation Windows 7 Service Pack 1 Windows 7 Ultimate Windows 7 Enterprise Windows 7 Professional Windows 7 Home Premium Windows 7 Home Basic Windows 7 Starter Windows Server 2008 Service Pack 2 Windows Server 2008 Datacenter Windows Server 2008 Enterprise Windows Server 2008 Standard Windows Server 2008 Web Edition Windows Server 2008 Foundation Windows Server 2008 for Itanium-Based Systems Windows Vista Service Pack 2 Windows Vista Ultimate Windows Vista Enterprise Windows Vista Business Windows Vista Home Premium Windows Vista Home Basic Windows Vista Starter Microsoft Windows Server 2003 Service Pack 2

简介

Microsoft为 IT 专业人员发布了有关此问题的安全公告。 此更新将针对所有受支持的 Microsoft Windows 版本发布。

安全公告包含其他与安全相关的信息。 若要查看安全公告,请转到以下Microsoft网站:

http://technet.microsoft.com/security/advisory/3050995

详细信息

除了解决 咨询3050995中所述的证书外,此更新是累积更新,包括以下先前公告中所述的数字证书:

先决条件

若要接收此更新,可能需要安装以下一个或两个更新:

2677070 适用于 Windows Vista、Windows Server 2008、Windows 7 和 Windows Server 2008 R2 的已吊销证书的自动更新程序

2813430 提供一个更新,使管理员能够在 Windows 中断开连接的环境中更新受信任且不允许的 CCL
下表汇总了先决条件更新。

操作系统 更新2677070 更新2813430
Windows Vista,Windows Server 2008
Windows 7、Windows Server 2008 R2
Windows 8、Windows Server 2012
Windows 8.1、Windows Server 2012 R2

Windows 8、Windows 8.1、Windows Server 2012和Windows Server 2012 R2 的更新

由于这些系统是自动保护的,因此无需执行任何操作。

Windows Vista、Windows 7、Windows Server 2008 和 Windows Server 2008 R2 的更新

客户应安装已吊销证书的自动更新程序。 有关更多信息,请单击下面的文章编号,以查看 Microsoft 知识库中相应的文章:

2813430 提供一个更新,使管理员能够在 Windows 中断开连接的环境中更新受信任且不允许的 CCL

Windows Server 2003 (KB3050995) 更新

下载 立即下载包。

病毒扫描声明

Microsoft 使用该文件发布时可用的最新病毒检测软件来扫描该文件是否存在病毒。 该文件存储在安全增强服务器上,可帮助防止在未经授权情况下对其进行任何更改。

如何下载Microsoft支持文件有关如何下载Microsoft支持文件的信息,请单击以下序列号以查看Microsoft知识库中的文章:

119591 如何从联机服务获取Microsoft支持文件,Microsoft扫描此文件中是否存在病毒。 Microsoft 使用的是文件发布时可以获得的最新病毒检测软件。 该文件存储在安全性得到增强的服务器上,以防止对文件进行未经授权的更改。