一、情况描述
微软发布了2019年9月的微软Office安全更新,在七种不同的产品中,总共19个安全更新和五个累积更新,其中五个更新修补了远程代码执行漏洞。所有修补的远程代码执行安全漏洞被Microsoft评为严重或重要,因为它们可以允许潜在的攻击者在成功利用易受攻击的Windows设备后执行任意代码或命令。微软发布的其他安全补丁还修复了信息泄露,安全功能绕过,特权提升以及影响其他几个Office产品的欺骗漏洞。
二、影响范围
受影响的office版本:
Office 2016, Office 2013, Office 2010, SharePoint Server 2019, SharePoint Server 2016, SharePoint server 2013、SharePoint server 2010、
三、处置建议
建议用户尽快安装office最新更新。列表如下供参考。
Microsoft Office 2016
Product |
Knowledge Base article title and number |
Excel 2016 |
|
Office 2016 |
|
Office 2016 |
|
Project 2016 |
Microsoft Office 2013
Product |
Knowledge Base article title and number |
Excel 2013 |
|
Office 2013 |
|
Office 2013 |
|
Project 2013 |
Microsoft Office 2010
Product |
Knowledge Base article title and number |
Excel 2010 |
|
Office 2010 |
|
Office 2010 |
|
Project 2010 |
Microsoft SharePoint Server 2019
Product |
Knowledge Base article title and number |
SharePoint Server 2019 |
|
SharePoint Server 2019 Language Pack |
Microsoft SharePoint Server 2016
Product |
Knowledge Base article title and number |
SharePoint Enterprise Server 2016 |
|
SharePoint Enterprise Server 2016 |
Microsoft SharePoint Server 2013
Product |
Knowledge Base article title and number |
Project Server 2013 |
|
SharePoint Enterprise Server 2013 |
|
SharePoint Foundation 2013 |
|
SharePoint Foundation 2013 |
|
SharePoint Foundation 2013 |
Microsoft SharePoint Server 2010
Product |
Knowledge Base article title and number |
Project Server 2010 |
|
SharePoint Foundation 2010 |
|
SharePoint Server 2010 |
参考链接:
http://www.bleepingcomputer.com/news/microsoft/microsoft-releases-the-september-2019-security-updates-for-office/
Copyright@ 2021 jinnianhui金年会 ICP备案号:浙ICP备19047536号-1