大家好,我是 Richard Chen。
在此提前通知各位:微软计划于北京时间3月14日清晨发布6个安全补丁,共修复 Microsoft Windows, Visual Studio 和 Expression Design 中的7个安全漏洞。6个补丁的最高严重等级详见下图:
Bulletin ID Maximum Severity Rating and Vulnerability Impact Restart Requirement Affected SoftwareBulletin 1 | Critical Remote Code Execution |
Requires restart | Microsoft Windows |
Bulletin 2 | Important Denial of Service |
Requires restart | Microsoft Windows |
Bulletin 3 | Important Elevation of Privilege |
Requires restart | Microsoft Windows |
Bulletin 4 | Important Elevation of Privilege |
May require restart | Microsoft Visual Studio |
Bulletin 5 | Important Remote Code Execution |
May require restart | Microsoft Expression Design |
Bulletin 6 | Moderate Denial of Service |
May require restart | Microsoft Windows |
按照受影响的操作系统分类如下:
Windows XP Windows Server 2003 Windows Vista Windows Server 2008 Windows 7 Windows Server 2008 R2Bulletin Identifier | Bulletin 1 | Bulletin 2 | Bulletin 3 | Bulletin 6 |
Aggregate Severity Rating | Critical | None | Important | None |
Windows XP Service Pack 3 | Windows XP Service Pack 3 (Critical) |
Not applicable | Windows XP Service Pack 3 (Important) |
Not applicable |
Windows XP Professional x64 Edition Service Pack 2 | Windows XP Professional x64 Edition Service Pack 2 (Critical) |
Not applicable | Windows XP Professional x64 Edition Service Pack 2 (Important) |
Not applicable |
Bulletin Identifier | Bulletin 1 | Bulletin 2 | Bulletin 3 | Bulletin 6 |
Aggregate Severity Rating | Critical | Important | Important | None |
Windows Server 2003 Service Pack 2 | Windows Server 2003 Service Pack 2 (Critical) |
Windows Server 2003 Service Pack 2 (Important) |
Windows Server 2003 Service Pack 2 (Important) |
Not applicable |
Windows Server 2003 x64 Edition Service Pack 2 | Windows Server 2003 x64 Edition Service Pack 2 (Critical) |
Windows Server 2003 x64 Edition Service Pack 2 (Important) |
Windows Server 2003 x64 Edition Service Pack 2 (Important) |
Not applicable |
Windows Server 2003 with SP2 for Itanium-based Systems | Windows Server 2003 with SP2 for Itanium-based Systems (Critical) |
Windows Server 2003 with SP2 for Itanium-based Systems (Important) |
Windows Server 2003 with SP2 for Itanium-based Systems (Important) |
Not applicable |
Bulletin Identifier | Bulletin 1 | Bulletin 2 | Bulletin 3 | Bulletin 6 |
Aggregate Severity Rating | Critical | None | Important | Moderate |
Windows Vista Service Pack 2 | Windows Vista Service Pack 2 (Critical) |
Not applicable | Windows Vista Service Pack 2 (Important) |
Windows Vista Service Pack 2 (Moderate) |
Windows Vista x64 Edition Service Pack 2 | Windows Vista x64 Edition Service Pack 2 (Critical) |
Not applicable | Windows Vista x64 Edition Service Pack 2 (Important) |
Windows Vista x64 Edition Service Pack 2 (Moderate) |
Bulletin Identifier | Bulletin 1 | Bulletin 2 | Bulletin 3 | Bulletin 6 |
Aggregate Severity Rating | Critical | Important | Important | Moderate |
Windows Server 2008 for 32-bit Systems Service Pack 2 | Windows Server 2008 for 32-bit Systems Service Pack 2* (Critical) |
Windows Server 2008 for 32-bit Systems Service Pack 2* (Important) |
Windows Server 2008 for 32-bit Systems Service Pack 2* (Important) |
Windows Server 2008 for 32-bit Systems Service Pack 2** (Moderate) |
Windows Server 2008 for x64-based Systems Service Pack 2 | Windows Server 2008 for x64-based Systems Service Pack 2* (Critical) |
Windows Server 2008 for x64-based Systems Service Pack 2* (Important) |
Windows Server 2008 for x64-based Systems Service Pack 2* (Important) |
Windows Server 2008 for x64-based Systems Service Pack 2** (Moderate) |
Windows Server 2008 for Itanium-based Systems Service Pack 2 | Windows Server 2008 for Itanium-based Systems Service Pack 2 (Critical) |
Not applicable | Windows Server 2008 for Itanium-based Systems Service Pack 2 (Important) |
Not applicable |
Bulletin Identifier | Bulletin 1 | Bulletin 2 | Bulletin 3 | Bulletin 6 |
Aggregate Severity Rating | Critical | None | Important | Moderate |
Windows 7 for 32-bit Systems and Windows 7 for 32-bit Systems Service Pack 1 | Windows 7 for 32-bit Systems and Windows 7 for 32-bit Systems Service Pack 1 (Critical) Windows 7 for 32-bit Systems and Windows 7 for 32-bit Systems Service Pack 1 (Moderate) |
Not applicable | Windows 7 for 32-bit Systems and Windows 7 for 32-bit Systems Service Pack 1 (Important) |
Windows 7 for 32-bit Systems and Windows 7 for 32-bit Systems Service Pack 1 (Moderate) |
Windows 7 for x64-based Systems and Windows 7 for x64-based Systems Service Pack 1 | Windows 7 for x64-based Systems and Windows 7 for x64-based Systems Service Pack 1 (Critical) Windows 7 for x64-based Systems and Windows 7 for x64-based Systems Service Pack 1 (Moderate) |
Not applicable | Windows 7 for x64-based Systems and Windows 7 for x64-based Systems Service Pack 1 (Important) |
Windows 7 for x64-based Systems and Windows 7 for x64-based Systems Service Pack 1 (Moderate) |
Bulletin Identifier | Bulletin 1 | Bulletin 2 | Bulletin 3 | Bulletin 6 |
Aggregate Severity Rating | Critical | Important | Important | Moderate |
Windows Server 2008 R2 for x64-based Systems and Windows Server 2008 R2 for x64-based Systems Service Pack 1 | Windows Server 2008 R2 for x64-based Systems and Windows Server 2008 R2 for x64-based Systems Service Pack 1* (Critical) Windows Server 2008 R2 for x64-based Systems and Windows Server 2008 R2 for x64-based Systems Service Pack 1* (Important) |
Windows Server 2008 R2 for x64-based Systems and Windows Server 2008 R2 for x64-based Systems Service Pack 1* (Important) |
Windows Server 2008 R2 for x64-based Systems and Windows Server 2008 R2 for x64-based Systems Service Pack 1* (Important) |
Windows Server 2008 R2 for x64-based Systems and Windows Server 2008 R2 for x64-based Systems Service Pack 1** (Moderate) |
Windows Server 2008 R2 for Itanium-based Systems and Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 | Windows Server 2008 R2 for Itanium-based Systems and Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 (Critical) Windows Server 2008 R2 for Itanium-based Systems and Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 (Important) |
Not applicable | Windows Server 2008 R2 for Itanium-based Systems and Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 (Important) |
Windows Server 2008 R2 for Itanium-based Systems and Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 (Moderate) |
Windows Server 2008和 Windows Server 2008 R2注意事项:
*Server Core 安装受影响
**Server Core 安装不受影响
微软开发者工具与软件补丁相关信息:
Microsoft Visual Studio Microsoft Expression DesignBulletin Identifier | Bulletin 4 | Bulletin 5 |
Aggregate Severity Rating | Important | None |
Microsoft Visual Studio 2008 Service Pack 1 | Microsoft Visual Studio 2008 Service Pack 1 (Important) |
Not applicable |
Microsoft Visual Studio 2010 | Microsoft Visual Studio 2010 (Important) |
Not applicable |
Microsoft Visual Studio 2010 Service Pack 1 | Microsoft Visual Studio 2010 Service Pack 1 (Important) |
Not applicable |
Bulletin Identifier | Bulletin 4 | Bulletin 5 |
Aggregate Severity Rating | None | Important |
Microsoft Expression Design | Not applicable | Microsoft Expression Design (Important) |
Microsoft Expression Design Service Pack 1 | Not applicable | Microsoft Expression Design Service Pack 1 (Important) |
Microsoft Expression Design 2 | Not applicable | Microsoft Expression Design 2 (Important) |
Microsoft Expression Design 3 | Not applicable | Microsoft Expression Design 3 (Important) |
Microsoft Expression Design 4 | Not applicable | Microsoft Expression Design 4 (Important) |
以下为提前通知的文章全文(英文),请各位先行评估了解受影响的系统。
Microsoft Security Bulletin Advance Notification for March 2012:
http://technet.microsoft.com/en-us/security/bulletin/ms12-mar
谢谢!
Richard Chen
大中华区软件安全项目经理