8月11日,威尼斯432888cam应急响应中心(CERT)监测发现,微软发布的8月份安全更新修复了44个漏洞,涉及Windows TCP/IP、Remote Desktop Client、Windows MSHTML Platform、Windows Services for NFS ONCRPC XDR Driver、Windows Graphics Component、Microsoft Scripting Engine、Windows Print Spooler Controller等产品。经威尼斯432888camCERT研判发现,其中共有7个漏洞危害较大,建议客户及时进行修复。
目前微软官方已发布相关安全更新,经威尼斯432888camCERT研判,需重点关注以下漏洞:
NET Core & Visual Studio
ASP .NET
Azure
Azure Sphere
Microsoft Azure Active Directory Connect
Microsoft Dynamics
Microsoft Graphics Component
Microsoft Office
Microsoft Office SharePoint
Microsoft Office Word
Microsoft Scripting Engine
Microsoft Windows Codecs Library
Remote Desktop Client
Windows Bluetooth Service
Windows Cryptographic Services
Windows Defender
Windows Event Tracing
Windows Media
Windows MSHTML Platform
Windows NTLM
Windows Print Spooler Components
Windows Services for NFS ONCRPC XDR Driver
Windows Storage Spaces Controller
Windows TCP/IP
Windows Update
Windows Update Assistant
Windows User Profile Service
通过Windows安全更新自动安装补丁或手动“检查更新”。
对于不能自动更新的系统版本,可下载对应版本的补丁进行安装:
https://msrc.microsoft.com/update-guide/releaseNote/2021-Aug
https://msrc.microsoft.com/update-guide/releaseNote/2021-Aug