¡¾Îó²îͨ¸æ¡¿Î¢Èí10Ô¶à¸öÇå¾²Îó²î

Ðû²¼Ê±¼ä 2025-10-15

Ò»¡¢Îó²î¸ÅÊö


2025Äê10ÔÂ15ÈÕ£¬×ðÁú¿­Ê±¼¯ÍÅVSRC¼à²âµ½Î¢ÈíÐû²¼ÁË10ÔÂÇå¾²¸üУ¬±¾´Î¸üÐÂÐÞ¸´ÁË174¸öÎó²î£¬º­¸ÇÌØÈ¨ÌáÉý¡¢Ô¶³Ì´úÂëÖ´ÐС¢ÐÅϢй¶µÈ¶àÖÖÎó²îÀàÐÍ ¡£Îó²î¼¶±ðÂþÑÜÈçÏ£º15¸öÑÏÖØ¼¶±ðÎó²î£¬157¸öÖ÷Òª¼¶±ðÎó²î£¬2ÆäÖÐΣ¼¶±ðÎó²î£¨Îó²î¼¶±ðÒÀ¾Ý΢Èí¹Ù·½Êý¾Ý£© ¡£


ÆäÖУ¬16¸öÎó²î±»Î¢Èí±ê¼ÇΪ¡°¸ü¿ÉÄܱ»Ê¹Óá±¼°¡°¼ì²âʹÓÃÇéÐΡ±£¬Åú×¢ÕâЩÎó²î±£´æ½Ï¸ßµÄʹÓÃΣº¦£¬½¨ÒéÓÅÏÈÐÞ¸´ÒÔ½µµÍDZÔÚÇå¾²Íþв ¡£


CVE-ID

CVE ÎÊÌâ

Îó²î¼¶±ð

CVE-2025-48004

Microsoft ÊðÀíÎļþÏµÍ³ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-24052

Windows Agere µ÷ÖÆ½âµ÷Æ÷Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55676

Windows USB ÊÓÆµÀàϵͳÇý¶¯³ÌÐòÐÅÏ¢Åû¶Îó²î

Ö÷Òª

CVE-2025-55680

Windows Cloud Files Mini Filter Driver ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55681

×ÀÃæ´°¿ÚÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55692

Windows ¹ýʧ±¨¸æ·þÎñÌØÈ¨Îó²îÌáÉý

Ö÷Òª

CVE-2025-55693

Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55694

Windows ¹ýʧ±¨¸æ·þÎñÌØÈ¨Îó²îÌáÉý

Ö÷Òª

CVE-2025-58722

Microsoft DWM ½¹µã¿âȨÏÞÌáÉýÎó²î

Ö÷Òª

CVE-2025-59194

Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59199

Èí¼þ± £»¤Æ½Ì¨(SPP) ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59246

Azure Entra ID ÌØÈ¨ÌáÉýÎó²î

ÑÏÖØ

CVE-2025-59287

Windows ·þÎñÆ÷¸üзþÎñ (WSUS) Ô¶³Ì´úÂëÖ´ÐÐÎó²î

ÑÏÖØ

CVE-2025-59502

Remote Procedure Call Denial of Service Vulnerability

ÖÐ

CVE-2025-24990

Windows Agere µ÷ÖÆ½âµ÷Æ÷Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59230

Windows Ô¶³Ì»á¼ûÅþÁ¬ÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

΢Èí10Ô¸üÐÂÐÞ¸´µÄÍêÕûÎó²îÁбíÈçÏ£º

CVE-ID

CVE ÎÊÌâ

Îó²î¼¶±ð

CVE-2025-24052

Windows Agere µ÷ÖÆ½âµ÷Æ÷Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-24990

Windows Agere µ÷ÖÆ½âµ÷Æ÷Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-25004

PowerShell ȨÏÞÌáÉýÎó²î

Ö÷Òª

CVE-2025-47979

Microsoft ¹ÊÕÏ×ªÒÆÈº¼¯ÐÅÏ¢×ß©Îó²î

Ö÷Òª

CVE-2025-47989

Azure Connected Machine Agent ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-48004

Microsoft ÊðÀíÎļþÏµÍ³ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-48813

Virtual Secure Mode Spoofing Vulnerability

Ö÷Òª

CVE-2025-49708

Microsoft ͼÐÎ×é¼þÌØÈ¨ÌáÉýÎó²î

ÑÏÖØ

CVE-2025-50152

Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-50174

Windows ×°±¸¹ØÁªÖÐתվ·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-50175

Windows Êý×ÖýÌåÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-53139

Windows Hello Çå¾²¹¦Ð§ÈƹýÎó²î

Ö÷Òª

CVE-2025-53717

Windows »ùÓÚÐéÄ⻯µÄÇå¾²ÐÔ (VBS) Enclave ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-53768

Xbox IStorageService ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-53782

Microsoft Exchange Server ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55240

Visual Studio ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55247

.NET ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55248

.NET¡¢.NET Framework ºÍ Visual Studio ÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-55315

ASP.NET Çå¾²¹¦Ð§ÈƹýÎó²î

Ö÷Òª

CVE-2025-55320

ÉèÖÃÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55321

Azure Monitor ÈÕÖ¾ÆÊÎöÓÕÆ­Îó²î

ÑÏÖØ

CVE-2025-55325

Windows ´æ´¢ÖÎÀíÌṩ³ÌÐòÐÅÏ¢Åû¶Îó²î

Ö÷Òª

CVE-2025-55326

Windows »¥Áª×°±¸Æ½Ì¨·þÎñ (Cdpsvc) Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Ö÷Òª

CVE-2025-55328

Windows Hyper-V ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55330

Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î

Ö÷Òª

CVE-2025-55331

Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55332

Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î

Ö÷Òª

CVE-2025-55333

Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î

Ö÷Òª

CVE-2025-55334

Windows ÄÚºËÇå¾²¹¦Ð§ÈƹýÎó²î

Ö÷Òª

CVE-2025-55335

Windows NTFS ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55336

Windows Cloud Files Mini Filter Driver ÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-55337

Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î

Ö÷Òª

CVE-2025-55338

Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î

Ö÷Òª

CVE-2025-55339

Windows ÍøÂçÇý¶¯³ÌÐò½Ó¿Ú¹æ·¶Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55340

Windows Ô¶³Ì×ÀÃæÐ­ÒéÇå¾²¹¦Ð§Èƹý

Ö÷Òª

CVE-2025-55676

Windows USB ÊÓÆµÀàϵͳÇý¶¯³ÌÐòÐÅÏ¢Åû¶Îó²î

Ö÷Òª

CVE-2025-55677

Windows ×°±¸¹ØÁªÖÐתվ·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55678

DirectX ͼÐÎÄÚºËÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55679

Windows ÄÚºËÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-55680

Windows Cloud Files Mini Filter Driver ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55681

×ÀÃæ´°¿ÚÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55682

Windows BitLocker Çå¾²¹¦Ð§ÈƹýÎó²î

Ö÷Òª

CVE-2025-55683

Windows ÄÚºËÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-55684

Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55685

Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55686

Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55687

Windows Resilient Îļþϵͳ (ReFS) ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55688

Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55689

Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55690

Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55691

Windows PrintWorkflowUserSvc ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55692

Windows ¹ýʧ±¨¸æ·þÎñÌØÈ¨Îó²îÌáÉý

Ö÷Òª

CVE-2025-55693

Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55694

Windows ¹ýʧ±¨¸æ·þÎñÌØÈ¨Îó²îÌáÉý

Ö÷Òª

CVE-2025-55695

Windows WLAN AutoConfig ·þÎñÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-55696

NtQueryInformation Token º¯Êý (ntifs.h) ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55697

Azure Local ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-55698

DirectX ͼÐÎÄں˾ܾø·þÎñÎó²î

Ö÷Òª

CVE-2025-55699

Windows ÄÚºËÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-55700

Windows ·ÓɺÍÔ¶³Ì»á¼û·þÎñ (RRAS) ÐÅÏ¢Åû¶Îó²î

Ö÷Òª

CVE-2025-55701

Windows Éí·ÝÑéÖ¤ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-58714

WinSock µÄ Windows ¸¨Öú¹¦Ð§Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-58715

Windows ÓïÒôÔËÐÐÊ±ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-58716

Windows ÓïÒôÔËÐÐÊ±ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-58717

Windows ·ÓɺÍÔ¶³Ì»á¼û·þÎñ (RRAS) ÐÅÏ¢Åû¶Îó²î

Ö÷Òª

CVE-2025-58718

Ô¶³Ì×ÀÃæ¿Í»§¶ËÔ¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-58719

Windows »¥Áª×°±¸Æ½Ì¨·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-58720

Windows ¼ÓÃÜ·þÎñÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-58722

Microsoft DWM ½¹µã¿âȨÏÞÌáÉýÎó²î

Ö÷Òª

CVE-2025-58724

ÒÑÆôÓÃArc µÄ·þÎñÆ÷ - Azure Connected Machine Agent ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-58725

Windows COM+ ÊÂÎñϵͳ·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-58726

Windows SMB Server Elevation of Privilege Vulnerability

Ö÷Òª

CVE-2025-58727

Windows »¥Áª×°±¸Æ½Ì¨·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-58728

Windows Bluetooth ·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-58729

Windows ÍâµØ¾Û»áÖÎÀíÆ÷ (LSM) ¾Ü¾ø·þÎñÎó²î

Ö÷Òª

CVE-2025-58730

ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î

Ö÷Òª

CVE-2025-58731

ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î

Ö÷Òª

CVE-2025-58732

ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î

Ö÷Òª

CVE-2025-58733

ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î

Ö÷Òª

CVE-2025-58734

ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î

Ö÷Òª

CVE-2025-58735

ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î

Ö÷Òª

CVE-2025-58736

ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î

Ö÷Òª

CVE-2025-58737

Ô¶³Ì×ÀÃæÐ­ÒéÔ¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-58738

ÊÕ¼þÏäCOM ¹¤¾ß£¨È«¾ÖÄڴ棩Զ³Ì´úÂëÖ´ÐÐÎó²î

Ö÷Òª

CVE-2025-58739

Microsoft Windows Îļþ×ÊÔ´ÖÎÀíÆ÷ÓÕÆ­Îó²î

Ö÷Òª

CVE-2025-59184

´æ´¢¿Õ¼äֱͨѶϢй¶Îó²î

Ö÷Òª

CVE-2025-59185

NTLM ¹þϣй¶ÓÕÆ­Îó²î

Ö÷Òª

CVE-2025-59186

Windows ÄÚºËÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59187

Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59188

Microsoft ¹ÊÕÏ×ªÒÆÈº¼¯ÐÅÏ¢×ß©Îó²î

Ö÷Òª

CVE-2025-59189

Microsoft ÊðÀíÎļþÏµÍ³ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59190

Windows Search ·þÎñ¾Ü¾ø·þÎñÎó²î

Ö÷Òª

CVE-2025-59191

Windows »¥Áª×°±¸Æ½Ì¨·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59192

Storport.sys Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59193

Windows ÖÎÀí·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59194

Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59195

Microsoft ͼÐÎ×é¼þ¾Ü¾ø·þÎñÎó²î

Ö÷Òª

CVE-2025-59196

Windows ¼òÆÓËÑË÷ºÍ·¢Ã÷ЭÒé (SSDP) ·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59197

Windows ETL ͨµÀÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59198

Windows Search ·þÎñ¾Ü¾ø·þÎñÎó²î

Ö÷Òª

CVE-2025-59199

Èí¼þ± £»¤Æ½Ì¨(SPP) ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59200

Êý¾Ý¹²Ïí·þÎñÓÕÆ­Îó²î

Ö÷Òª

CVE-2025-59201

ÍøÂçÅþÁ¬×´Ì¬Ö¸Ê¾Æ÷(NCSI) ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59202

Windows Ô¶³Ì×ÀÃæ·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59203

Windows ״̬´æ´¢¿â API ·þÎñÆ÷ÎļþÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59204

Windows ÖÎÀí·þÎñÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59205

Windows ͼÐÎ×é¼þÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59206

Windows »Ø¸´Îļþϵͳ (ReFS) ɾ³ýÖØ¸´·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59207

Windows ÄÚºËÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59208

Windows MapUrlToZone ÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59209

Windows ÍÆËÍ֪ͨÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59210

Windows Resilient File System (ReFS) Deduplication Service Elevation of Privilege Vulnerability

Ö÷Òª

CVE-2025-59211

Windows ÍÆËÍ֪ͨÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59213

ÉèÖÃÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59214

Microsoft Windows Îļþ×ÊÔ´ÖÎÀíÆ÷ÓÕÆ­Îó²î

Ö÷Òª

CVE-2025-59218

Azure Entra ID ÌØÈ¨ÌáÉýÎó²î

ÑÏÖØ

CVE-2025-59221

Microsoft Word Ô¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-59222

Microsoft Word Ô¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-59223

Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-59224

Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-59225

Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-59226

Microsoft Office Visio Ô¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-59227

Microsoft Office Ô¶³ÌÖ´ÐдúÂëÎó²î

ÑÏÖØ

CVE-2025-59228

Microsoft SharePoint Ô¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-59229

Microsoft Office ¾Ü¾ø·þÎñÎó²î

Ö÷Òª

CVE-2025-59230

Windows Ô¶³Ì»á¼ûÅþÁ¬ÖÎÀíÆ÷ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59231

Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-59232

Microsoft Excel ÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59233

Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-59234

Microsoft Office Ô¶³ÌÖ´ÐдúÂëÎó²î

ÑÏÖØ

CVE-2025-59235

Microsoft Excel ÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59236

Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î

ÑÏÖØ

CVE-2025-59237

Microsoft SharePoint Ô¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-59238

Microsoft PowerPoint Ô¶³Ì´úÂëÖ´ÐÐÎó²î

Ö÷Òª

CVE-2025-59241

Windows ¿µ½¡ºÍÓÅ»¯ÌåÑéÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59242

WinSock µÄ Windows ¸¨Öú¹¦Ð§Çý¶¯³ÌÐòÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59243

Microsoft Excel Ô¶³ÌÖ´ÐдúÂëÎó²î

Ö÷Òª

CVE-2025-59244

NTLM ¹þϣй¶ÓÕÆ­Îó²î

Ö÷Òª

CVE-2025-59246

Azure Entra ID ÌØÈ¨ÌáÉýÎó²î

ÑÏÖØ

CVE-2025-59247

Azure PlayFab ÌØÈ¨ÌáÉýÎó²î

ÑÏÖØ

CVE-2025-59248

Microsoft Exchange Server ÓÕÆ­Îó²î

Ö÷Òª

CVE-2025-59249

Microsoft Exchange Server ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59250

SQL Server JDBC Çý¶¯³ÌÐòÓÕÆ­Îó²î

Ö÷Òª

CVE-2025-59252

M365 Copilot ÓÕÆ­Îó²î

ÑÏÖØ

CVE-2025-59253

Windows Search ·þÎñ¾Ü¾ø·þÎñÎó²î

Ö÷Òª

CVE-2025-59254

Microsoft DWM ½¹µã¿âȨÏÞÌáÉýÎó²î

Ö÷Òª

CVE-2025-59255

Windows DWM ½¹µã¿âÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59257

Windows ÍâµØ¾Û»áÖÎÀíÆ÷ (LSM) ¾Ü¾ø·þÎñÎó²î

Ö÷Òª

CVE-2025-59258

Windows Active Directory ÍŽáÉí·ÝÑéÖ¤·þÎñ (ADFS) ÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59259

Windows ÍâµØ¾Û»áÖÎÀíÆ÷ (LSM) ¾Ü¾ø·þÎñÎó²î

Ö÷Òª

CVE-2025-59260

Microsoft ¹ÊÕÏ×ªÒÆÈº¼¯ÐéÄâÇý¶¯³ÌÐòÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59261

Windows ͼÐÎ×é¼þÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59271

Redis Enterprise ÌØÈ¨ÌáÉýÎó²î

ÑÏÖØ

CVE-2025-59272

Copilot ÓÕÆ­Îó²î

ÑÏÖØ

CVE-2025-59275

Windows Éí·ÝÑéÖ¤ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59277

Windows Éí·ÝÑéÖ¤ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59278

Windows Éí·ÝÑéÖ¤ÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59280

Windows SMB ¿Í»§¶Ë¸Ä¶¯Îó²î

Ö÷Òª

CVE-2025-59281

Xbox ÓÎÏ··þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59282

Internet Information Services (IIS) Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability

Ö÷Òª

CVE-2025-59284

Windows NTLM ÓÕÆ­Îó²î

Ö÷Òª

CVE-2025-59285

Azure Monitor ÊðÀíÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59286

Copilot ÓÕÆ­Îó²î

ÑÏÖØ

CVE-2025-59287

Windows ·þÎñÆ÷¸üзþÎñ (WSUS) Ô¶³Ì´úÂëÖ´ÐÐÎó²î

ÑÏÖØ

CVE-2025-59288

Playwright ÓÕÆ­Îó²î

ÖÐ

CVE-2025-59289

Windows Bluetooth ·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59290

Windows Bluetooth ·þÎñÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59291

ÉñÃØAzure ÈÝÆ÷ʵÀýȨÏÞÌáÉýÎó²î

ÑÏÖØ

CVE-2025-59292

Azure Compute Gallery ÌØÈ¨ÌáÉýÎó²î

ÑÏÖØ

CVE-2025-59294

Windows ʹÃüÀ¸ÊµÊ±Ô¤ÀÀÐÅϢй¶Îó²î

Ö÷Òª

CVE-2025-59295

Windows URL ÆÊÎöÔ¶³Ì´úÂëÖ´ÐÐÎó²î

Ö÷Òª

CVE-2025-59494

Azure Monitor ÊðÀíÌØÈ¨ÌáÉýÎó²î

Ö÷Òª

CVE-2025-59497

Microsoft Defender for Linux ¾Ü¾ø·þÎñÎó²î

Ö÷Òª

CVE-2025-59502

Remote Procedure Call Denial of Service Vulnerability

ÖÐ



¶þ¡¢Ó°Ïì¹æÄ£


ÊÜÓ°ÏìµÄ²úÆ·/¹¦Ð§/·þÎñ/×é¼þ°üÀ¨£º

Agere Windows Modem Driver

Microsoft PowerShell

Windows Failover Cluster

Azure Connected Machine Agent

Microsoft Brokering File System

Virtual Secure Mode

Microsoft Graphics Component

Windows Kernel

Windows Device Association Broker service

Windows Digital Media

Windows Hello

Windows Virtualization-Based Security (VBS) Enclave

Xbox

Microsoft Exchange Server

Visual Studio

.NET

.NET, .NET Framework, Visual Studio

ASP.NET Core

Microsoft Configuration Manager

Azure Monitor

Windows Storage Management Provider

Connected Devices Platform Service (Cdpsvc)

Windows Hyper-V

Windows BitLocker

Windows PrintWorkflowUserSvc

Windows NTFS

Windows Cloud Files Mini Filter Driver

Windows NDIS

Windows Remote Desktop Protocol

Windows USB Video Driver

Windows DirectX

Windows DWM

Windows Resilient File System (ReFS)

Windows Error Reporting

Windows WLAN Auto Config Service

NtQueryInformation Token function (ntifs.h)

Azure Local

Windows Routing and Remote Access Service (RRAS)

Microsoft Windows

Windows Ancillary Function Driver for WinSock

Microsoft Windows Speech

Remote Desktop Client

Windows Cryptographic Services

Windows COM

Windows SMB Server

Windows Connected Devices Platform Service

Windows Bluetooth Service

Windows Local Session Manager (LSM)

Inbox COM Objects

Windows Remote Desktop

Windows File Explorer

Windows High Availability Services

Windows Core Shell

Microsoft Windows Search Component

Storport.sys Driver

Windows Management Services

Windows SSDP Service

Windows ETL Channel

Software Protection Platform (SPP)

Data Sharing Service Client

Network Connection Status Indicator (NCSI)

Windows Remote Desktop Services

Windows StateRepository API

Windows Resilient File System (ReFS) Deduplication Service

Windows MapUrlToZone

Windows Push Notification Core

Azure Entra ID

Microsoft Office Word

Microsoft Office Excel

Microsoft Office Visio

Microsoft Office

Microsoft Office SharePoint

Windows Remote Access Connection Manager

Microsoft Office PowerPoint

Windows Health and Optimized Experiences Service

Azure PlayFab

JDBC Driver for SQL Server

Copilot

Windows DWM Core Library

Active Directory Federation Services

Microsoft Failover Cluster Virtual Driver

Redis Enterprise

Windows Authentication Methods

Windows SMB Client

XBox Gaming Services

Windows NTLM

Azure Monitor Agent

Windows Server Update Service

GitHub

Confidential Azure Container Instances

Windows Taskbar Live

Internet Explorer

Microsoft Defender for Linux

Windows Remote Procedure Cal


Èý¡¢Çå¾²²½·¥


3.1 Éý¼¶°æ±¾


ÏÖÔÚ΢ÈíÒÑÐû²¼Ïà¹ØÇå¾²¸üУ¬½¨ÒéÊÜÓ°ÏìµÄÓû§¾¡¿ìÐÞ¸´ ¡£


£¨Ò»£©Windows Update×Ô¶¯¸üÐÂ


Microsoft UpdateĬÈÏÆôÓ㬵±ÏµÍ³¼ì²âµ½¿ÉÓøüÐÂʱ£¬½«»á×Ô¶¯ÏÂÔØ¸üв¢ÔÚÏÂÒ»´ÎÆô¶¯Ê±×°Öà ¡£Ò²¿ÉÑ¡Ôñͨ¹ýÒÔϰ취ÊÖ¶¯¾ÙÐиüУº

1¡¢µã»÷¡°×îÏȲ˵¥¡±»ò°´Windows¿ì½Ý¼ü£¬µã»÷½øÈë¡°ÉèÖá±

2¡¢Ñ¡Ôñ¡°¸üкÍÇå¾²¡±£¬½øÈë¡°Windows¸üС±£¨Windows 8¡¢Windows 8.1¡¢Windows Server 2012ÒÔ¼°Windows Server 2012 R2¿Éͨ¹ý¿ØÖÆÃæ°å½øÈë¡°Windows¸üС±£¬Ïêϸ°ì·¨Îª¡°¿ØÖÆÃæ°å¡±->¡°ÏµÍ³ºÍÇå¾²¡±->¡°Windows¸üС±£©

3¡¢Ñ¡Ôñ¡°¼ì²é¸üС±£¬ÆÚ´ýϵͳ×Ô¶¯¼ì²é²¢ÏÂÔØ¿ÉÓøüР¡£

4¡¢¸üÐÂÍê³ÉºóÖØÆôÅÌËã»ú£¬¿Éͨ¹ý½øÈë¡°Windows¸üС±->¡°Éó²é¸üÐÂÀúÊ·¼Í¼¡±Éó²éÊÇ·ñÀÖ³É×°ÖÃÁ˸üР¡£¹ØÓÚûÓÐÀÖ³É×°ÖõĸüУ¬¿ÉÒÔµã»÷¸Ã¸üÐÂÃû³Æ½øÈë΢Èí¹Ù·½¸üÐÂÐÎòÁ´½Ó£¬µã»÷×îеÄSSUÃû³Æ²¢ÔÚÐÂÁ´½ÓÖеã»÷¡°Microsoft ¸üÐÂĿ¼¡±£¬È»ºóÔÚÐÂÁ´½ÓÖÐÑ¡ÔñÊÊÓÃÓÚÄ¿µÄϵͳµÄ²¹¶¡¾ÙÐÐÏÂÔØ²¢×°Öà ¡£


£¨¶þ£©ÊÖ¶¯×°ÖøüÐÂ


Microsoft¹Ù·½ÏÂÔØÏìÓ¦²¹¶¡¾ÙÐиüР¡£

2025Äê10ÔÂÇå¾²¸üÐÂÏÂÔØÁ´½Ó£º

https://msrc.microsoft.com/update-guide/releaseNote/2025-Oct


²¹¶¡ÏÂÔØÊ¾Àý£¨²Î¿¼£©£º


1.·­¿ªÉÏÊöÏÂÔØÁ´½Ó£¬µã»÷Îó²îÁбíÖÐÒªÐÞ¸´µÄCVEÁ´½Ó ¡£


ͼ1.png

Àý1£ºÎ¢ÈíÎó²îÁÐ±í£¨Ê¾Àý£©


2.ÔÚ΢Èíͨ¸æÒ³Ãæµ×²¿×ó²à¡¾²úÆ·¡¿ÁÐÑ¡ÔñÏìÓ¦µÄϵͳÀàÐÍ£¬µã»÷ÓҲࡾÏÂÔØ¡¿Áз­¿ª²¹¶¡ÏÂÔØÁ´½Ó ¡£


ͼ2.png

Àý2£ºCVE-2022-21989²¹¶¡ÏÂÔØÊ¾Àý


3.µã»÷¡¾Çå¾²¸üС¿£¬·­¿ª²¹¶¡ÏÂÔØÒ³Ãæ£¬ÏÂÔØÏìÓ¦²¹¶¡²¢¾ÙÐÐ×°Öà ¡£


ͼ3.png

Àý3£º²¹¶¡ÏÂÔØ½çÃæ


4.×°ÖÃÍê³ÉºóÖØÆôÅÌËã»ú ¡£


3.2 ÔÝʱ²½·¥


ÔÝÎÞ ¡£


3.3 ͨÓý¨Òé


? °´ÆÚ¸üÐÂϵͳ²¹¶¡£¬ïÔ̭ϵͳÎó²î£¬ÌáÉý·þÎñÆ÷µÄÇå¾²ÐÔ ¡£

ÔöǿϵͳºÍÍøÂçµÄ»á¼û¿ØÖÆ£¬Ð޸ķÀ»ðǽսÂÔ£¬¹Ø±Õ·ÇÐëÒªµÄÓ¦Óö˿ڻò·þÎñ£¬ïÔÌ­½«Î£ÏÕ·þÎñ£¨ÈçSSH¡¢RDPµÈ£©Ì»Â¶µ½¹«Íø£¬ïÔÌ­¹¥»÷Ãæ ¡£

ʹÓÃÆóÒµ¼¶Çå¾²²úÆ·£¬ÌáÉýÆóÒµµÄÍøÂçÇå¾²ÐÔÄÜ ¡£

ÔöǿϵͳÓû§ºÍȨÏÞÖÎÀí£¬ÆôÓöàÒòËØÈÏÖ¤»úÖÆºÍ×îСȨÏÞÔ­Ôò£¬Óû§ºÍÈí¼þȨÏÞÓ¦¼á³ÖÔÚ×îµÍÏÞ¶È ¡£

ÆôÓÃÇ¿ÃÜÂëÕ½ÂÔ²¢ÉèÖÃΪ°´ÆÚÐÞ¸Ä ¡£


3.4 ²Î¿¼Á´½Ó


https://msrc.microsoft.com/update-guide/releaseNote/2025-Oct