大家好,我是 Richard Chen。
在此提前通知各位:微软计划于北京时间7月11日清晨发布9个安全补丁,共修复 Microsoft Windows, Microsoft Office, Internet Explorer, 和 Visual Basic for Applications 中的16个安全漏洞。9 个补丁的最高严重等级详见下图:
Bulletin ID Maximum Severity Rating and Vulnerability Impact Restart Requirement Affected Software Bulletin 1 Critical Remote Code Execution May require restart Microsoft Windows Bulletin 2 Critical Remote Code Execution Requires restart Microsoft Windows, Internet Explorer Bulletin 3 Critical Remote Code Execution May require restart Microsoft Windows Bulletin 4 Important Remote Code Execution May require restart Microsoft Office, Microsoft Developer Tools Bulletin 5 Important Elevation of Privilege Requires restart Microsoft Windows Bulletin 6 Important Remote Code Execution Requires restart Microsoft Windows Bulletin 7 Important Information Disclosure Requires restart Microsoft Windows Bulletin 8 Important Elevation of Privilege May require restart Microsoft Office, Microsoft Server Software Bulletin 9 Important Elevation of Privilege Does not require restart Microsoft Office
按照受影响的操作系统分类如下:
Windows XP Bulletin Identifier Bulletin 1 Bulletin 2 Bulletin 3 Bulletin 5 Bulletin 6 Bulletin 7 Aggregate Severity Rating Critical None Critical Important Important Important Windows XP Service Pack 3 Windows XP Service Pack 3 (Critical) Not applicable Windows XP Service Pack 3 (Critical) Windows XP Service Pack 3 (Important) Windows XP Service Pack 3 (Important) Windows XP Service Pack 3 (Important) Windows XP Professional x64 Edition Service Pack 2 Windows XP Professional x64 Edition Service Pack 2 (Critical) Not applicable Windows XP Professional x64 Edition Service Pack 2 (Critical) Windows XP Professional x64 Edition Service Pack 2 (Important) Windows XP Professional x64 Edition Service Pack 2 (Important) Windows XP Professional x64 Edition Service Pack 2 (Important) Windows Server 2003 Bulletin Identifier Bulletin 1 Bulletin 2 Bulletin 3 Bulletin 5 Bulletin 6 Bulletin 7 Aggregate Severity Rating Critical None Moderate Important Important Important Windows Server 2003 Service Pack 2 Windows Server 2003 Service Pack 2 (Critical) Not applicable Windows Server 2003 Service Pack 2 (Moderate) Windows Server 2003 Service Pack 2 (Important) Windows Server 2003 Service Pack 2 (Important) Windows Server 2003 Service Pack 2 (Important) Windows Server 2003 x64 Edition Service Pack 2 Windows Server 2003 x64 Edition Service Pack 2 (Critical) Not applicable Windows Server 2003 x64 Edition Service Pack 2 (Moderate) Windows Server 2003 x64 Edition Service Pack 2 (Important) Windows Server 2003 x64 Edition Service Pack 2 (Important) Windows Server 2003 x64 Edition Service Pack 2 (Important) Windows Server 2003 with SP2 for Itanium-based Systems Windows Server 2003 with SP2 for Itanium-based Systems (Critical) Not applicable Windows Server 2003 with SP2 for Itanium-based Systems (Moderate) Windows Server 2003 with SP2 for Itanium-based Systems (Important) Windows Server 2003 with SP2 for Itanium-based Systems (Important) Windows Server 2003 with SP2 for Itanium-based Systems (Important) Windows Vista Bulletin Identifier Bulletin 1 Bulletin 2 Bulletin 3 Bulletin 5 Bulletin 6 Bulletin 7 Aggregate Severity Rating Critical Critical Critical Important Important Important Windows Vista Service Pack 2 Windows Vista Service Pack 2 (Critical) Internet Explorer 9 (Critical) Windows Vista Service Pack 2 (Critical) Windows Vista Service Pack 2 (Important) Windows Vista Service Pack 2 (Important) Windows Vista Service Pack 2 (Important) Windows Vista x64 Edition Service Pack 2 Windows Vista x64 Edition Service Pack 2 (Critical) Internet Explorer 9 (Critical) Windows Vista x64 Edition Service Pack 2 (Critical) Windows Vista x64 Edition Service Pack 2 (Important) Windows Vista x64 Edition Service Pack 2 (Important) Windows Vista x64 Edition Service Pack 2 (Important) Windows Server 2008 Bulletin Identifier Bulletin 1 Bulletin 2 Bulletin 3 Bulletin 5 Bulletin 6 Bulletin 7 Aggregate Severity Rating Critical Moderate Moderate Important Important Important Windows Server 2008 for 32-bit Systems Service Pack 2 Windows Server 2008 for 32-bit Systems Service Pack 2 (Critical) Internet Explorer 9 (Moderate) Windows Server 2008 for 32-bit Systems Service Pack 2 (Moderate) Windows Server 2008 for 32-bit Systems Service Pack 2 (Important) Windows Server 2008 for 32-bit Systems Service Pack 2 (Important) Windows Server 2008 for 32-bit Systems Service Pack 2 (Important) Windows Server 2008 for x64-based Systems Service Pack 2 Windows Server 2008 for x64-based Systems Service Pack 2 (Critical) Internet Explorer 9 (Moderate) Windows Server 2008 for x64-based Systems Service Pack 2 (Moderate) Windows Server 2008 for x64-based Systems Service Pack 2 (Important) Windows Server 2008 for x64-based Systems Service Pack 2 (Important) Windows Server 2008 for x64-based Systems Service Pack 2 (Important) Windows Server 2008 for Itanium-based Systems Service Pack 2 Windows Server 2008 for Itanium-based Systems Service Pack 2 (Critical) Not applicable Windows Server 2008 for Itanium-based Systems Service Pack 2 (Moderate) Windows Server 2008 for Itanium-based Systems Service Pack 2 (Important) Windows Server 2008 for Itanium-based Systems Service Pack 2 (Important) Windows Server 2008 for Itanium-based Systems Service Pack 2 (Important) Windows 7 Bulletin Identifier Bulletin 1 Bulletin 2 Bulletin 3 Bulletin 5 Bulletin 6 Bulletin 7 Aggregate Severity Rating Critical Critical Critical Important Important Important Windows 7 for 32-bit Systems Windows 7 for 32-bit Systems (Critical) Internet Explorer 9 (Critical) Windows 7 for 32-bit Systems (Critical) Windows 7 for 32-bit Systems (Important) Windows 7 for 32-bit Systems (Important) Windows 7 for 32-bit Systems (Important) Windows 7 for 32-bit Systems Service Pack 1 Windows 7 for 32-bit Systems Service Pack 1 (Critical) Internet Explorer 9 (Critical) Windows 7 for 32-bit Systems Service Pack 1 (Critical) Windows 7 for 32-bit Systems Service Pack 1 (Important) Windows 7 for 32-bit Systems Service Pack 1 (Important) Windows 7 for 32-bit Systems Service Pack 1 (Important) Windows 7 for x64-based Systems Windows 7 for x64-based Systems (Critical) Internet Explorer 9 (Critical) Windows 7 for x64-based Systems (Critical) Windows 7 for x64-based Systems (Important) Windows 7 for x64-based Systems (Important) Windows 7 for x64-based Systems (Important) Windows 7 for x64-based Systems Service Pack 1 Windows 7 for x64-based Systems Service Pack 1 (Critical) Internet Explorer 9 (Critical) Windows 7 for x64-based Systems Service Pack 1 (Critical) Windows 7 for x64-based Systems Service Pack 1 (Important) Windows 7 for x64-based Systems Service Pack 1 (Important) Windows 7 for x64-based Systems Service Pack 1 (Important) Windows Server 2008 R2 Bulletin Identifier Bulletin 1 Bulletin 2 Bulletin 3 Bulletin 5 Bulletin 6 Bulletin 7 Aggregate Severity Rating Critical Moderate Moderate Important Important Important Windows Server 2008 R2 for x64-based Systems Windows Server 2008 R2 for x64-based Systems (Critical) Internet Explorer 9 (Moderate) Windows Server 2008 R2 for x64-based Systems (Moderate) Windows Server 2008 R2 for x64-based Systems (Important) Windows Server 2008 R2 for x64-based Systems (Important) Windows Server 2008 R2 for x64-based Systems (Important) Windows Server 2008 R2 for x64-based Systems Service Pack 1 Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Critical) Internet Explorer 9 (Moderate) Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Moderate) Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Important) Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Important) Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Important) Windows Server 2008 R2 for Itanium-based Systems Windows Server 2008 R2 for Itanium-based Systems (Critical) Not applicable Windows Server 2008 R2 for Itanium-based Systems (Moderate) Windows Server 2008 R2 for Itanium-based Systems (Important) Windows Server 2008 R2 for Itanium-based Systems (Important) Windows Server 2008 R2 for Itanium-based Systems (Important) Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 (Critical) Not applicable Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 (Moderate) Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 (Important) Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 (Important) Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 (Important) Server Core installation option Bulletin Identifier Bulletin 1 Bulletin 2 Bulletin 3 Bulletin 5 Bulletin 6 Bulletin 7 Aggregate Severity Rating None None None Important Important Important Windows Server 2008 for 32-bit Systems Service Pack 2 Not applicable Not applicable Not applicable Windows Server 2008 for 32-bit Systems Service Pack 2 (Important) Windows Server 2008 for 32-bit Systems Service Pack 2 (Important) Windows Server 2008 for 32-bit Systems Service Pack 2 (Important) Windows Server 2008 for x64-based Systems Service Pack 2 Not applicable Not applicable Not applicable Windows Server 2008 for x64-based Systems Service Pack 2 (Important) Windows Server 2008 for x64-based Systems Service Pack 2 (Important) Windows Server 2008 for x64-based Systems Service Pack 2 (Important) Windows Server 2008 R2 for x64-based Systems Not applicable Not applicable Not applicable Windows Server 2008 R2 for x64-based Systems (Important) Windows Server 2008 R2 for x64-based Systems (Important) Windows Server 2008 R2 for x64-based Systems (Important) Windows Server 2008 R2 for x64-based Systems Service Pack 1 Not applicable Not applicable Not applicable Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Important) Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Important) Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Important)
微软 Office 补丁相关信息:
Microsoft Office Suites Bulletin Identifier Bulletin 4 Bulletin 8 Bulletin 9 Aggregate Severity Rating Important None None Microsoft Office 2003 Service Pack 3 Microsoft Office 2003 Service Pack 3 (Important) Not applicable Not applicable Microsoft Office 2007 Service Pack 2 Microsoft Office 2007 Service Pack 2 (Important) Not applicable Not applicable Microsoft Office 2007 Service Pack 3 Microsoft Office 2007 Service Pack 3 (Important) Not applicable Not applicable Microsoft Office 2010 (32-bit editions) Microsoft Office 2010 (32-bit editions) (Important) Not applicable Not applicable Microsoft Office 2010 Service Pack 1 (32-bit editions) Microsoft Office 2010 Service Pack 1 (32-bit editions) (Important) Not applicable Not applicable Microsoft Office 2010 (64-bit editions) Microsoft Office 2010 (64-bit editions) (Important) Not applicable Not applicable Microsoft Office 2010 Service Pack 1 (64-bit editions) Microsoft Office 2010 Service Pack 1 (64-bit editions) (Important) Not applicable Not applicable Microsoft Office for Mac Bulletin Identifier Bulletin 4 Bulletin 8 Bulletin 9 Aggregate Severity Rating None None Important Microsoft Office for Mac 2011 Not applicable Not applicable Microsoft Office for Mac 2011 (Important) Other Microsoft Office Software Bulletin Identifier Bulletin 4 Bulletin 8 Bulletin 9 Aggregate Severity Rating None Important None Microsoft InfoPath 2007 Service Pack 2 Not applicable Microsoft InfoPath 2007 Service Pack 2 (Important) Not applicable Microsoft InfoPath 2007 Service Pack 3 Not applicable Microsoft InfoPath 2007 Service Pack 3 (Important) Not applicable Microsoft InfoPath 2010 (32-bit editions) Not applicable Microsoft InfoPath 2010 (32-bit editions) (Important) Not applicable Microsoft InfoPath 2010 Service Pack 1 (32-bit editions) Not applicable Microsoft InfoPath 2010 Service Pack 1 (32-bit editions) (Important) Not applicable Microsoft InfoPath 2010 (64-bit editions) Not applicable Microsoft InfoPath 2010 (64-bit editions) (Important) Not applicable Microsoft InfoPath 2010 Service Pack 1 (64-bit editions) Not applicable Microsoft InfoPath 2010 Service Pack 1 (64-bit editions) (Important) Not applicable
Bulletin 4 的注释 : 本补丁影响多类软件。
Bulletin 8 的注释 : 本补丁影响多类软件。
微软服务器软件补丁相关信息:
Microsoft Office SharePoint Server Bulletin Identifier Bulletin 8 Aggregate Severity Rating Important Microsoft Office SharePoint Server 2007 Service Pack 2 (32-bit editions) Microsoft Office SharePoint Server 2007 Service Pack 2 (32-bit editions) (Important) Microsoft Office SharePoint Server 2007 Service Pack 3 (32-bit editions) Microsoft Office SharePoint Server 2007 Service Pack 3 (32-bit editions) (Important) Microsoft Office SharePoint Server 2007 Service Pack 2 (64-bit editions) Microsoft Office SharePoint Server 2007 Service Pack 2 (64-bit editions) (Important) Microsoft Office SharePoint Server 2007 Service Pack 3 (64-bit editions) Microsoft Office SharePoint Server 2007 Service Pack 3 (64-bit editions) (Important) Microsoft SharePoint Server 2010 Microsoft SharePoint Server 2010 (Important) Microsoft SharePoint Server 2010 Service Pack 1 Microsoft SharePoint Server 2010 Service Pack 1 (Important) Microsoft Groove Server Bulletin Identifier Bulletin 8 Aggregate Severity Rating Important Microsoft Groove Server 2010 Microsoft Groove Server 2010 (Important) Microsoft Groove Server 2010 Service Pack 1 Microsoft Groove Server 2010 Service Pack 1 (Important) Windows SharePoint Services and Microsoft SharePoint Foundation Bulletin Identifier Bulletin 8 Aggregate Severity Rating Important Microsoft Windows SharePoint Services 3.0 Service Pack 2 (32-bit version) Microsoft Windows SharePoint Services 3.0 Service Pack 2 (32-bit version) (Important) Microsoft Windows SharePoint Services 3.0 Service Pack 2 (64-bit version) Microsoft Windows SharePoint Services 3.0 Service Pack 2 (64-bit version) (Important) Microsoft SharePoint Foundation 2010 Microsoft SharePoint Foundation 2010 (Important) Microsoft SharePoint Foundation 2010 Service Pack 1 Microsoft SharePoint Foundation 2010 Service Pack 1 (Important)
Bulletin 8 的注释 : 本补丁影响多类软件。
微软 Office Web Apps 补丁相关信息:
Microsoft Office Web Apps Bulletin Identifier Bulletin 8 Aggregate Severity Rating Important Microsoft Office Web Apps 2010 Microsoft Office Web Apps 2010 Microsoft Office Web Apps 2010 Service Pack 1 Microsoft Office Web Apps 2010 Service Pack 1
Bulletin 8 的注释 : 本补丁影响多类软件。
微软开发者工具与软件补丁相关信息:
Microsoft Visual Basic for Applications Bulletin Identifier Bulletin 4 Aggregate Severity Rating Important Microsoft Visual Basic for Applications Microsoft Visual Basic for Applications (Important) Microsoft Visual Basic for Applications SDK Microsoft Visual Basic for Applications SDK (Important)
以下为提前通知的文章全文(英文),请各位先行评估了解受影响的系统。
Microsoft Security Bulletin Advance Notification for July 2012:
http://technet.microsoft.com/en-us/security/bulletin/ms12-jul
谢谢!
Richard Chen
大中华区软件安全项目经理