Microsoft 安全公告4025685:旧平台指南:2017 年 6 月 13 日

应用对象
Windows Vista Service Pack 2 Windows Vista Home Basic Windows Vista Home Premium Windows Vista Business Windows Vista Ultimate Windows Vista Enterprise Windows Vista Starter Windows XP Microsoft Windows XP Professional Microsoft Windows XP Home Edition

摘要

Microsoft 已针对 IT 专业人员发布了有关此问题的安全公告。 安全公告包含其他与安全相关的信息。 要了解有关此漏洞的更多信息,请转到 公告4025685。

旧版平台指南

本节总结了面向运行 Windows XP、Windows Vista、Windows 8 或 Windows Server 2003 的客户的资源。 截至 2017 年 6 月 13 日发布此公告时,这些平台已不再处于主流或扩展支持) (中。 若要确定软件版本或版本的支持生命周期,请参阅 Microsoft 支持部门生命周期。

备注此更新不检查 Windows Genuine Advantage 的状态。

对于使用这些旧版平台上的客户,下表提供了手动下载适用安全更新的信息。 Microsoft 今天为其他平台发布安全更新的决定不应被理解为策略的更改。 建议客户升级到受支持的平台。

漏洞信息

有关这些版本解决的各个漏洞的详细信息,请点击每列顶部的链接。

较旧的平台 表 1/3

操作系统 MS08-067 MS09-050 MS10-061 MS14-068 MS17-010 MS17-013
Windows XP
Windows XP Service Pack 3 958644 不受影响 2347290 不受影响 4012598 4012583
Microsoft Windows XP 专业版 x64 版 Service Pack 2 958644 不受影响 2347290 不受影响 4012598 4012583
Windows Server 2003
Windows Server 2003 Service Pack 2 958644 不受影响 2347290 3011780 4012598 4012583
Windows Server 2003 x64 版 Service Pack 2 958644 不受影响 2347290 3011780 4012598 4012583
Windows Vista
Windows Vista Service Pack 2 不受影响 975517 2347290 不受影响 4012598 不受影响
Windows Vista x64 Edition Service Pack 2 不受影响 975517 2347290 不受影响 4012598 不受影响
Windows 8
Windows 8(用于 32 位系统) 不受影响 不受影响 不受影响 不受影响 4012598 4012583
Windows 8(用于基于 x64 的系统) 不受影响 不受影响 不受影响 不受影响 4012598 4012583

较旧平台表 2/3

操作系统 CVE-2017-0176 CVE-2017-0222 CVE-2017-0267 至 0280 CVE-2017-7269 CVE-2017-8461 CVE-2017-8464
Windows XP
Windows XP Service Pack 3 4022747 Internet Explorer 8
4018271
4018466 3197835 4024323 不受影响
Microsoft Windows XP 专业版 x64 版 Service Pack 2 4022747 Internet Explorer 8
4018271
4018466 3197835 4024323 不受影响
Windows Server 2003
Windows Server 2003 Service Pack 2 4022747 在默认方案中得到缓解 [1] 4018466 3197835 4024323 不受影响
Windows Server 2003 x64 版 Service Pack 2 4022747 在默认方案中得到缓解 [1] 4018466 3197835 4024323 不受影响
Windows Vista
Windows Vista Service Pack 2 不受影响 Internet Explorer 9
4018271
4018466 不受影响 不受影响 4021903
Windows Vista x64 Edition Service Pack 2 不受影响 Internet Explorer 9
4018271
4018466 不受影响 不受影响 4021903
Windows 8
Windows 8(用于 32 位系统) 不受影响 Internet Explorer 10
4018271
4019623 不受影响 不受影响 4022839
Windows 8(用于基于 x64 的系统) 不受影响 Internet Explorer 10
4018271
4019623 不受影响 不受影响 4022839

[1] - 默认情况下,Windows Server 2003、Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 和 Windows Server 2012 R2 上的 Internet Explorer 在称为“增强的安全配置”的受限模式下运行. 增强的安全配置是 Internet Explorer 中的一组预配置设置,可降低用户或管理员在服务器上下载和运行经特殊设计的 Web 内容的可能性。 对于尚未添加到 Internet Explorer 受信任站点区域的网站,这是一个缓解因素。

较旧平台 表 3/3

操作系统 CVE-2017-8487 CVE-2017-8543 CVE-2017-8552
Windows XP
Windows XP Service Pack 3 4025218 4024402 4019204
Microsoft Windows XP 专业版 x64 版 Service Pack 2 4025218 4024402 4019204
Windows Server 2003
Windows Server 2003 Service Pack 2 4025218 4024402 4019204
Windows Server 2003 x64 版 Service Pack 2 4025218 4024402 4019204
Windows Vista
Windows Vista Service Pack 2 不受影响 4024402 4019204
Windows Vista x64 Edition Service Pack 2 不受影响 4024402 4019204
Windows 8
Windows 8(用于 32 位系统) 不受影响 4022839 4022839
Windows 8(用于基于 x64 的系统) 不受影响 4022839 4022839

常见问题解答

我在 Windows Server 2003、Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 或 Windows Server 2012 R2 上运行 Internet Explorer。 这是否缓解了这些漏洞?
可以。 默认情况下,Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 和 Windows Server 2012 R2 上的 Internet Explorer 在称为“增强的安全配置”的受限模式下运行。 增强的安全配置是 Internet Explorer 中的一组预配置设置,可降低用户或管理员在服务器上下载和运行经特殊设计的 Web 内容的可能性。 对于尚未添加到 Internet Explorer 受信任站点区域的网站,这是一个缓解因素。

这些是针对这些平台的新版本吗?
不。 为了帮助客户了解与这些更新相关的所有平台的支持,我们整理了此页面来讨论主流或扩展支持中的操作系统版本。

此处未列出我的操作系统版本。 是否提供其他版本的更新?
有关仍在主流或扩展支持中的较新操作系统,请参阅此页面。 对于上面列出的其他操作系统变体 (即 RTM 或其他 Service Pack 级别) ,没有可用的更新。 客户应更新到最新的 Service Pack 版本才能接收安全更新。