摘要
Microsoft 已向 IT 專業人員發佈有關此問題的資訊安全諮詢。 安全性諮詢包含其他安全性相關資訊。 若要深入了解弱點,請移至 諮詢4025685。
舊版平台的指導方針
本節摘要適用於執行 Windows XP、Windows Vista、Windows 8 或 Windows Server 2003 的客戶的資源。 截至 2017 年 6 月 13 日) 發佈此公告 (,這些平台已不再處於主要或延伸支援中。 若要判斷軟體版本或版次的支援生命週期,請參閱 Microsoft 支援服務生命週期。
備註 此更新不會檢查 Windows Genuine Advantage 狀態。
對於使用這些舊版平台的客戶,下表提供手動下載適用安全性更新的資訊。 Microsoft 今天為其他平台發行安全性更新的決定,不應視為原則的變更。 我們鼓勵客戶升級到支援的平台。
弱點資訊
如需這些版本所解決個別弱點的詳細資訊,請追蹤每個資料行頂端的連結。
較舊的平台 表 1/3
| 作業系統 | MS08-067 | MS09-050 | MS10-061 | MS14-068 | MS17-010 | MS17-013 |
|---|---|---|---|---|---|---|
| Windows XP | ||||||
| Windows XP Service Pack 3 | 958644 | 不受影響 | 2347290 | 不受影響 | 4012598 | 4012583 |
| Microsoft Windows XP Professional x64 Edition Service Pack 2 | 958644 | 不受影響 | 2347290 | 不受影響 | 4012598 | 4012583 |
| Windows Server 2003 | ||||||
| Windows Server 2003 Service Pack 2 | 958644 | 不受影響 | 2347290 | 3011780 | 4012598 | 4012583 |
| Windows Server 2003 x64 Edition Service Pack 2 | 958644 | 不受影響 | 2347290 | 3011780 | 4012598 | 4012583 |
| Windows Vista | ||||||
| Windows Vista Service Pack 2 | 不受影響 | 975517 | 2347290 | 不受影響 | 4012598 | 不受影響 |
| Windows Vista x64 Edition Service Pack 2 | 不受影響 | 975517 | 2347290 | 不受影響 | 4012598 | 不受影響 |
| Windows 8 | ||||||
| 適用於 32 位元系統的 Windows 8 | 不受影響 | 不受影響 | 不受影響 | 不受影響 | 4012598 | 4012583 |
| 適用於 x64 型系統的 Windows 8 | 不受影響 | 不受影響 | 不受影響 | 不受影響 | 4012598 | 4012583 |
較舊的平台 表 2/3
| 作業系統 | CVE-2017-0176 | CVE-2017-0222 | CVE-2017-0267 至 0280 | CVE-2017-7269 | CVE-2017-8461 | CVE-2017-8464 |
|---|---|---|---|---|---|---|
| Windows XP | ||||||
| Windows XP Service Pack 3 | 4022747 | Internet Explorer 8 4018271 |
4018466 | 3197835 | 4024323 | 不受影響 |
| Microsoft Windows XP Professional x64 Edition Service Pack 2 | 4022747 | Internet Explorer 8 4018271 |
4018466 | 3197835 | 4024323 | 不受影響 |
| Windows Server 2003 | ||||||
| Windows Server 2003 Service Pack 2 | 4022747 | 在預設案例中降低 [1] | 4018466 | 3197835 | 4024323 | 不受影響 |
| Windows Server 2003 x64 Edition Service Pack 2 | 4022747 | 在預設案例中降低 [1] | 4018466 | 3197835 | 4024323 | 不受影響 |
| Windows Vista | ||||||
| Windows Vista Service Pack 2 | 不受影響 | Internet Explorer 9 4018271 |
4018466 | 不受影響 | 不受影響 | 4021903 |
| Windows Vista x64 Edition Service Pack 2 | 不受影響 | Internet Explorer 9 4018271 |
4018466 | 不受影響 | 不受影響 | 4021903 |
| Windows 8 | ||||||
| 適用於 32 位元系統的 Windows 8 | 不受影響 | Internet Explorer 10 4018271 |
4019623 | 不受影響 | 不受影響 | 4022839 |
| 適用於 x64 型系統的 Windows 8 | 不受影響 | Internet Explorer 10 4018271 |
4019623 | 不受影響 | 不受影響 | 4022839 |
[1] - 預設情況下,Windows Server 2003、Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 和 Windows Server 2012 R2 上的 Internet Explorer 在稱為增強式安全性設定的受限制模式下運行。 增強的安全性設定是 Internet Explorer 中一組預先設定的設定,可降低使用者或系統管理員在伺服器上下載並執行蓄意製作的 Web 內容的可能性。 對於您尚未新增至 Internet Explorer 信任的網站區域的網站,這是一個緩和因素。
較舊的平台 表 3/3
| 作業系統 | CVE-2017-8487 | CVE-2017-8543 | CVE-2017-8552 |
|---|---|---|---|
| Windows XP | |||
| Windows XP Service Pack 3 | 4025218 | 4024402 | 4019204 |
| Microsoft Windows XP Professional x64 Edition Service Pack 2 | 4025218 | 4024402 | 4019204 |
| Windows Server 2003 | |||
| Windows Server 2003 Service Pack 2 | 4025218 | 4024402 | 4019204 |
| Windows Server 2003 x64 Edition Service Pack 2 | 4025218 | 4024402 | 4019204 |
| Windows Vista | |||
| Windows Vista Service Pack 2 | 不受影響 | 4024402 | 4019204 |
| Windows Vista x64 Edition Service Pack 2 | 不受影響 | 4024402 | 4019204 |
| Windows 8 | |||
| 適用於 32 位元系統的 Windows 8 | 不受影響 | 4022839 | 4022839 |
| 適用於 x64 型系統的 Windows 8 | 不受影響 | 4022839 | 4022839 |
常見問題集
我正在 Windows Server 2003、Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 或 Windows Server 2012 R2 上執行 Internet Explorer。 這是否能緩解這些弱點?
是。 根據預設,Windows Server 2008、Windows Server 2008 R2、Windows Server 2012 和 Windows Server 2012 R2 上的 Internet Explorer 在稱為增強式安全性設定的受限制模式中執行。 增強的安全性設定是 Internet Explorer 中一組預先設定的設定,可降低使用者或系統管理員在伺服器上下載並執行蓄意製作的 Web 內容的可能性。 對於您尚未新增至 Internet Explorer 信任的網站區域的網站,這是一個緩和因素。
這些新版本是否適用於這些平台?
否。 為協助客戶瞭解與這些更新相關的所有平台支援,我們整理了此頁面,討論主要或延伸支援中的作業系統版本。
我的作業系統版本未列於此。 其他版本是否有可用更新?
如需仍在主要或延伸支援中的較新作業系統,請參閱此頁面。 對於上面所列的其他作業系統變體, (RTM 或其他 Service Pack 等級) ,則沒有可用的更新。 客戶應更新到最新的 Service Pack 版本才能接收安全更新。