微软多个高危漏洞
3 月 10 日,微软官方发布了安全更新,修复了影响包括 Exchange Server、Windows DNS Server 等在内的多个微软产品程序的高危漏洞:
https://msrc.microsoft.com/update-guide/releaseNote/2021-Mar
漏洞描述
目前这些漏洞均已出现在野利用,且已有部分漏洞细节公开。
影响范围
-
Windows Server 2012 R2 (Server Core installation)
-
Windows Server 2012 R2 (Server Core installation)
-
Windows Server 2012 R2
-
Windows Server 2012 R2
-
Windows Server 2012 (Server Core installation)
-
Windows Server 2012 (Server Core installation)
-
Windows Server 2012
-
Windows Server 2012
-
Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)
-
Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)
-
Windows Server 2008 R2 for x64-based Systems Service Pack 1
-
Windows Server 2008 R2 for x64-based Systems Service Pack 1
-
Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation)
-
Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation)
-
Windows Server 2008 for x64-based Systems Service Pack 2
-
Windows Server 2008 for x64-based Systems Service Pack 2
-
Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation)
-
Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation)
-
Windows Server 2008 for 32-bit Systems Service Pack 2
-
Windows Server 2008 for 32-bit Systems Service Pack 2
-
Windows Server 2016 (Server Core installation)
-
Windows Server 2016
-
Windows Server, version 2004 (Server Core installation)
-
Windows Server, version 1909 (Server Core installation)
-
Windows Server 2019 (Server Core installation)
-
Windows Server 2019
-
Windows Server, version 20H2 (Server Core Installation)
-
Microsoft Exchange Server 2016 Cumulative Update 18
-
Microsoft Exchange Server 2019 Cumulative Update 7
-
Microsoft Exchange Server 2016 Cumulative Update 16
-
Microsoft Exchange Server 2019 Cumulative Update 6
-
Microsoft Exchange Server 2019 Cumulative Update 5
-
Microsoft Exchange Server 2016 Cumulative Update 15
-
Microsoft Exchange Server 2019 Cumulative Update 4
-
Microsoft Exchange Server 2016 Cumulative Update 14
-
Microsoft Exchange Server 2013 Cumulative Update 23
-
Microsoft Exchange Server 2019 Cumulative Update 8
-
Microsoft Exchange Server 2016 Cumulative Update 19
解决方案
如若无法进行 Windows 自动更新,可访问如下链接下载对应产品程序的补丁并进行安装:
https://msrc.microsoft.com/update-guide/releaseNote/2021-Mar
产品支持
雷池提供虚拟补丁防护 CVE-2021-26855,如有需要请联系长亭技术支持人员获取。
参考资料
-
https://msrc.microsoft.com/update-guide/releaseNote/2021-Mar
本文始发于微信公众号(长亭安全课堂):漏洞风险提示 | 微软多个高危漏洞
- 左青龙
- 微信扫一扫
-
- 右白虎
- 微信扫一扫
-
评论