你目前正处于脱机状态,正在等待 Internet 重新连接

MS07-042:Microsoft XML Core Services 中的漏洞可能允许远程执行代码

Support for Windows XP has ended

Microsoft ended support for Windows XP on April 8, 2014. This change has affected your software updates and security options. Learn what this means for you and how to stay protected.

Support for Office 2003 has ended

Microsoft ended support for Office 2003 on April 8, 2014. This change has affected your software updates and security options. Learn what this means for you and how to stay protected.

Support for Windows Server 2003 ended on July 14, 2015

Microsoft ended support for Windows Server 2003 on July 14, 2015. This change has affected your software updates and security options. Learn what this means for you and how to stay protected.

简介
Microsoft 已发布安全公告 MS07-042。该安全公告包含此安全更新的所有相关信息,其中包括文件清单信息和部署选项。要查看完整的安全公告,请访问以下 Microsoft 网站之一:
更多信息

Service Pack 信息

此安全更新解决的问题如今已在 Microsoft Office 2003 Service Pack 3 (SP3) 中予以更正。

有关如何获取最新的 Microsoft Office 2003 Service Pack 的更多信息,请单击下面的文章编号,以查看 Microsoft 知识库中相应的文章:
870924如何获取最新的 Office 2003 Service Pack

此安全更新的已知问题

941833 已经发布了一个更新,用于改善基于 Windows Vista 的计算机中的 Microsoft XML Core Services 4.0 Service Pack 2 的兼容性和可靠性

此安全更新的其他程序包

本次发布的安全更新程序包用到了与编号为 936227 的 Microsoft 知识库文章有关的更新,还用到了与以下编号的知识库文章有关的更新:
933579 MS07-042:2007 年 8 月 14 日版 Microsoft XML Core Services 6.0 安全更新说明
936021 MS07-042:2007 年 8 月 14 日版 Microsoft XML Core Services 3.0 安全更新说明
936181 MS07-042:2007 年 8 月 14 日版 Microsoft XML Core Services 4.0 安全更新说明
936048 MS07-042:2007 年 8 月 14 日版 Office 2003 安全更新说明
936960 MS07-042:2007 年 8 月 14 日版 2007 Microsoft Office system 安全更新说明
936056 MS07-042:2007 年 8 月 14 日版 2007 Microsoft Office system 服务器安全更新说明
该发布版的 936227 安全更新程序包会在受支持的 Microsoft Windows 2000 系统中为下表中列出的 MSXML 2.6 CLSID 设置“Kill 位”。
GUID 符号名称
f5078f22-c551-11d3-89b9-0000f81fe221 CLSID_XMLDocument26
f5078f1b-c551-11d3-89b9-0000f81fe221 CLSID_DOMDocument26
f5078f1c-c551-11d3-89b9-0000f81fe221 CLSID_FreeThreadedDOMDocument26
f5078f1d-c551-11d3-89b9-0000f81fe221 CLSID_XMLSchemaCache26
f5078f1e-c551-11d3-89b9-0000f81fe221 CLSID_XMLHTTP26
f5078f21-c551-11d3-89b9-0000f81fe221 CLSID_XSLTemplate26
f5078f1f-c551-11d3-89b9-0000f81fe221 CLSID_DSOControl26
f5078f20-c551-11d3-89b9-0000f81fe221 CLSID_XMLParser26
f5078f28-c551-11d3-89b9-0000f81fe221 CLSID_Viewer26
f5078f29-c551-11d3-89b9-0000f81fe221 CLSID_BufferedMoniker26
f5078f26-c551-11d3-89b9-0000f81fe221 CLSID_XSLPatternFactory26
update security_patch security_update security bug flaw vulnerability malicious attacker exploit registry unauthenticated buffer overrun overflow specially-formed scope specially-crafted denial of service DoS TSE WinNT Win2000
属性

文章 ID:936227 - 上次审阅时间:04/06/2009 14:01:17 - 修订版本: 3.0

Windows Server 2008 Datacenter, Windows Server 2008 Enterprise, Windows Server 2008 Standard, Windows Web Server 2008, Windows Vista Service Pack 1, Windows Vista Business, Windows Vista Enterprise, Windows Vista Home Basic, Windows Vista Home Premium, Windows Vista Ultimate, Windows Vista Starter, Windows Vista Enterprise 64-bit edition, Windows Vista Home Basic 64-bit edition, Windows Vista Home Premium 64-bit edition, Windows Vista Ultimate 64-bit edition, Microsoft Windows Server 2003 Service Pack 2, Microsoft Windows Server 2003 Service Pack 1, Microsoft Windows Server 2003, Standard x64 Edition, Microsoft Windows Server 2003, Enterprise x64 Edition, Microsoft Windows Server 2003, Datacenter x64 Edition, Microsoft Windows XP Professional x64 Edition, Microsoft Windows XP Service Pack 3, Microsoft Windows XP Service Pack 2, Microsoft Windows 2000 Server SP4, Microsoft Office SharePoint Server 2007, Microsoft Office Groove Server 2007, Microsoft Office 基础版 2007, Microsoft Office 家庭和学生版 2007, Microsoft Office 专业版 2007, Microsoft Office 专业增强版 2007, Microsoft Office 中小企业版 2007, Microsoft Office 标准版 2007, Microsoft Office 旗舰版 2007, Microsoft Office 2003 Service Pack 2, Microsoft Office Word Viewer 2003, Microsoft XML Core Services 6.0, Microsoft XML Core Services 4.0, Microsoft XML Parser 3.0

  • atdownload kbexpertisebeginner kbqfe kbsecurity kbsecbulletin kbsecvulnerability kbbug kbfix kbpubtypekc KB936227
反馈
varCustomerTracking = 1; var Route = "76500"; var Ctrl = ""; document.write("