近日,微软官方发布了多个安全漏洞的公告,其中微软产品本身漏洞111个,影响到微软产品的其他厂商漏洞3个。微软Microsoft Windows、Microsoft Dynamics、Microsoft Graphics Kernel、Microsoft Windows Remote Procedure Call Runtime等多个产品和系统受漏洞影响。目前,微软官方已经发布了漏洞修复补丁,建议用户及时确认是否受到漏洞影响,尽快采取修补措施。
一、漏洞介绍
2026年1月13日,微软发布了2026年1月份安全更新,共114个漏洞的补丁程序,CNNVD对这些漏洞进行了收录。本次更新主要涵盖了Microsoft Windows 和 Windows 组件、Microsoft Dynamics、Microsoft Graphics Kernel、Microsoft Windows Remote Procedure Call Runtime、Microsoft SharePoint、Microsoft Windows NTFS等。CNNVD对其危害等级进行了评价,其中超危漏洞1个,高危漏洞81个,中危漏洞32个。微软多个产品和系统版本受漏洞影响,具体影响范围可访问微软官方网站查询:
https://portal.msrc.microsoft.com/zh-cn/security-guidance
二、漏洞详情
此次更新共114个漏洞的补丁程序,包括111个新增漏洞的补丁程序和3个影响微软产品的其他厂商漏洞的补丁程序。
此次更新共包括111个新增漏洞的补丁程序,其中高危漏洞80个,中危漏洞31个。
序号 | 漏洞名称 | CNNVD编号 | CVE编号 | 危害等级 | 官方链接 |
1 | Microsoft Windows Deployment Services 访问控制错误漏洞 | CNNVD-202601-2032 | CVE-2026-0386 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-0386 |
2 | Microsoft SQL Server 访问控制错误漏洞 | CNNVD-202601-2035 | CVE-2026-20803 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20803 |
3 | Microsoft Windows Hello 安全漏洞 | CNNVD-202601-2039 | CVE-2026-20804 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20804 |
4 | Microsoft Windows 竞争条件问题漏洞 | CNNVD-202601-2044 | CVE-2026-20808 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20808 |
5 | Microsoft Windows Kernel 安全漏洞 | CNNVD-202601-2049 | CVE-2026-20809 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20809 |
6 | Microsoft Windows Ancillary Function Driver for WinSock 安全漏洞 | CNNVD-202601-2052 | CVE-2026-20810 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20810 |
7 | Microsoft Win32k 安全漏洞 | CNNVD-202601-2055 | CVE-2026-20811 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20811 |
8 | Microsoft Graphics Kernel 竞争条件问题漏洞 | CNNVD-202601-2062 | CVE-2026-20814 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20814 |
9 | Microsoft Windows 竞争条件问题漏洞 | CNNVD-202601-2065 | CVE-2026-20815 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20815 |
10 | Microsoft Windows Installer 安全漏洞 | CNNVD-202601-2068 | CVE-2026-20816 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20816 |
11 | Microsoft Windows Error Reporting 安全漏洞 | CNNVD-202601-2077 | CVE-2026-20817 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20817 |
12 | Microsoft Windows Common Log File System Driver 安全漏洞 | CNNVD-202601-2081 | CVE-2026-20820 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20820 |
13 | Microsoft Graphics Component 资源管理错误漏洞 | CNNVD-202601-2090 | CVE-2026-20822 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20822 |
14 | Microsoft Windows 竞争条件问题漏洞 | CNNVD-202601-2103 | CVE-2026-20826 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20826 |
15 | Microsoft Windows Server 资源管理错误漏洞 | CNNVD-202601-2140 | CVE-2026-20830 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20830 |
16 | Microsoft Windows Ancillary Function Driver for WinSock 安全漏洞 | CNNVD-202601-2138 | CVE-2026-20831 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20831 |
17 | Microsoft Windows Remote Procedure Call Runtime 资源管理错误漏洞 | CNNVD-202601-2116 | CVE-2026-20832 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20832 |
18 | Microsoft Graphics Kernel 竞争条件问题漏洞 | CNNVD-202601-2130 | CVE-2026-20836 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20836 |
19 | Microsoft Windows Media 安全漏洞 | CNNVD-202601-2135 | CVE-2026-20837 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20837 |
20 | Microsoft Windows NTFS 安全漏洞 | CNNVD-202601-2136 | CVE-2026-20840 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20840 |
21 | Microsoft DWM Core Library 资源管理错误漏洞 | CNNVD-202601-2134 | CVE-2026-20842 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20842 |
22 | Microsoft Windows Routing and Remote Access Service 访问控制错误漏洞 | CNNVD-202601-2133 | CVE-2026-20843 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20843 |
23 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2132 | CVE-2026-20844 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20844 |
24 | Microsoft Windows SMB Server 竞争条件问题漏洞 | CNNVD-202601-2129 | CVE-2026-20848 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20848 |
25 | Microsoft Windows Kerberos 安全漏洞 | CNNVD-202601-2126 | CVE-2026-20849 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20849 |
26 | Microsoft Windows Hello 安全漏洞 | CNNVD-202601-2122 | CVE-2026-20852 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20852 |
27 | Microsoft Windows WalletService 竞争条件问题漏洞 | CNNVD-202601-2119 | CVE-2026-20853 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20853 |
28 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2120 | CVE-2026-20854 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20854 |
29 | Microsoft Windows 输入验证错误漏洞 | CNNVD-202601-2121 | CVE-2026-20856 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20856 |
30 | Microsoft Windows Cloud Files Mini Filter Driver 安全漏洞 | CNNVD-202601-2117 | CVE-2026-20857 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20857 |
31 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2114 | CVE-2026-20858 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20858 |
32 | Microsoft Windows Kernel Mode Drivers 资源管理错误漏洞 | CNNVD-202601-2115 | CVE-2026-20859 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20859 |
33 | Microsoft Windows Ancillary Function Driver for WinSock 安全漏洞 | CNNVD-202601-2118 | CVE-2026-20860 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20860 |
34 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2110 | CVE-2026-20861 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20861 |
35 | Microsoft Win32k 资源管理错误漏洞 | CNNVD-202601-2109 | CVE-2026-20863 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20863 |
36 | Microsoft Windows 安全漏洞 | CNNVD-202601-2105 | CVE-2026-20864 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20864 |
37 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2107 | CVE-2026-20865 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20865 |
38 | Microsoft Windows 竞争条件问题漏洞 | CNNVD-202601-2108 | CVE-2026-20866 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20866 |
39 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2102 | CVE-2026-20867 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20867 |
40 | Microsoft Windows Routing and Remote Access Service 安全漏洞 | CNNVD-202601-2100 | CVE-2026-20868 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20868 |
41 | Microsoft Windows 竞争条件问题漏洞 | CNNVD-202601-2101 | CVE-2026-20869 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20869 |
42 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2098 | CVE-2026-20870 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20870 |
43 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2099 | CVE-2026-20871 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20871 |
44 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2095 | CVE-2026-20873 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20873 |
45 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2092 | CVE-2026-20874 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20874 |
46 | Microsoft Windows Local Security Authority Subsystem Service 代码问题漏洞 | CNNVD-202601-2089 | CVE-2026-20875 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20875 |
47 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2087 | CVE-2026-20877 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20877 |
48 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2086 | CVE-2026-20918 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20918 |
49 | Microsoft Windows SMB Server 竞争条件问题漏洞 | CNNVD-202601-2083 | CVE-2026-20919 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20919 |
50 | Microsoft Win32k 资源管理错误漏洞 | CNNVD-202601-2084 | CVE-2026-20920 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20920 |
51 | Microsoft Windows SMB Server 竞争条件问题漏洞 | CNNVD-202601-2082 | CVE-2026-20921 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20921 |
52 | Microsoft Windows NTFS 安全漏洞 | CNNVD-202601-2080 | CVE-2026-20922 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20922 |
53 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2079 | CVE-2026-20923 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20923 |
54 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2076 | CVE-2026-20924 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20924 |
55 | Microsoft Windows SMB Server 竞争条件问题漏洞 | CNNVD-202601-2073 | CVE-2026-20926 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20926 |
56 | Microsoft HTTP.sys 访问控制错误漏洞 | CNNVD-202601-2071 | CVE-2026-20929 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20929 |
57 | Microsoft Windows Telephony Server 安全漏洞 | CNNVD-202601-2070 | CVE-2026-20931 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20931 |
58 | Microsoft Windows SMB Server 竞争条件问题漏洞 | CNNVD-202601-2067 | CVE-2026-20934 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20934 |
59 | Microsoft Windows Virtualization-Based Security Enclave 安全漏洞 | CNNVD-202601-2061 | CVE-2026-20938 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20938 |
60 | Microsoft Windows Cloud Files Mini Filter Driver 安全漏洞 | CNNVD-202601-2059 | CVE-2026-20940 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20940 |
61 | Microsoft Windows 后置链接漏洞 | CNNVD-202601-2057 | CVE-2026-20941 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20941 |
62 | Microsoft Office 代码问题漏洞 | CNNVD-202601-2056 | CVE-2026-20943 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20943 |
63 | Microsoft Word 缓冲区错误漏洞 | CNNVD-202601-2054 | CVE-2026-20944 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20944 |
64 | Microsoft Excel 缓冲区错误漏洞 | CNNVD-202601-2053 | CVE-2026-20946 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20946 |
65 | Microsoft SharePoint SQL注入漏洞 | CNNVD-202601-2051 | CVE-2026-20947 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20947 |
66 | Microsoft Word 安全漏洞 | CNNVD-202601-2050 | CVE-2026-20948 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20948 |
67 | Microsoft Excel 访问控制错误漏洞 | CNNVD-202601-2048 | CVE-2026-20949 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20949 |
68 | Microsoft Excel 资源管理错误漏洞 | CNNVD-202601-2047 | CVE-2026-20950 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20950 |
69 | Microsoft SharePoint 输入验证错误漏洞 | CNNVD-202601-2046 | CVE-2026-20951 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20951 |
70 | Microsoft Office 资源管理错误漏洞 | CNNVD-202601-2043 | CVE-2026-20952 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20952 |
71 | Microsoft Office 资源管理错误漏洞 | CNNVD-202601-2041 | CVE-2026-20953 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20953 |
72 | Microsoft Excel 安全漏洞 | CNNVD-202601-2045 | CVE-2026-20955 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20955 |
73 | Microsoft Excel 安全漏洞 | CNNVD-202601-2040 | CVE-2026-20956 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20956 |
74 | Microsoft Excel 数字错误漏洞 | CNNVD-202601-2038 | CVE-2026-20957 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20957 |
75 | Microsoft SharePoint 代码问题漏洞 | CNNVD-202601-2033 | CVE-2026-20963 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20963 |
76 | Microsoft Windows Admin Center 数据伪造问题漏洞 | CNNVD-202601-2031 | CVE-2026-20965 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20965 |
77 | Microsoft Inbox COM Objects 资源管理错误漏洞 | CNNVD-202601-2034 | CVE-2026-21219 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21219 |
78 | Microsoft Windows 资源管理错误漏洞 | CNNVD-202601-2030 | CVE-2026-21221 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21221 |
79 | Microsoft Azure Connected Machine Agent 安全漏洞 | CNNVD-202601-2029 | CVE-2026-21224 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21224 |
80 | Microsoft Azure 代码问题漏洞 | CNNVD-202601-2023 | CVE-2026-21226 | 高危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21226 |
81 | Microsoft Lightweight Directory Access Protocol(LDAP) 输入验证错误漏洞 | CNNVD-202601-2058 | CVE-2026-20812 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20812 |
82 | Microsoft Windows Kernel 日志信息泄露漏洞 | CNNVD-202601-2074 | CVE-2026-20818 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20818 |
83 | Microsoft Windows Virtualization-Based Security Enclave 安全漏洞 | CNNVD-202601-2078 | CVE-2026-20819 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20819 |
84 | Microsoft Windows 信息泄露漏洞 | CNNVD-202601-2085 | CVE-2026-20821 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20821 |
85 | Microsoft Windows File Explorer 信息泄露漏洞 | CNNVD-202601-2091 | CVE-2026-20823 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20823 |
86 | Microsoft Windows Remote Assistance 安全漏洞 | CNNVD-202601-2096 | CVE-2026-20824 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20824 |
87 | Microsoft Hyper-V 访问控制错误漏洞 | CNNVD-202601-2113 | CVE-2026-20825 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20825 |
88 | Microsoft Windows 信息泄露漏洞 | CNNVD-202601-2106 | CVE-2026-20827 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20827 |
89 | Microsoft Windows 缓冲区错误漏洞 | CNNVD-202601-2111 | CVE-2026-20828 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20828 |
90 | Microsoft Windows 缓冲区错误漏洞 | CNNVD-202601-2123 | CVE-2026-20829 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20829 |
91 | Microsoft Windows 加密问题漏洞 | CNNVD-202601-2125 | CVE-2026-20833 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20833 |
92 | Microsoft Windows Shell 安全漏洞 | CNNVD-202601-2124 | CVE-2026-20834 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20834 |
93 | Microsoft Windows 缓冲区错误漏洞 | CNNVD-202601-2128 | CVE-2026-20835 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20835 |
94 | Microsoft Windows Kernel 安全漏洞 | CNNVD-202601-2139 | CVE-2026-20838 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20838 |
95 | Microsoft Windows CSC Service 访问控制错误漏洞 | CNNVD-202601-2137 | CVE-2026-20839 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20839 |
96 | Microsoft Windows Shell 信息泄露漏洞 | CNNVD-202601-2131 | CVE-2026-20847 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20847 |
97 | Microsoft Windows 缓冲区错误漏洞 | CNNVD-202601-2127 | CVE-2026-20851 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20851 |
98 | Microsoft Windows 信息泄露漏洞 | CNNVD-202601-2112 | CVE-2026-20862 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20862 |
99 | Microsoft NTLM 安全漏洞 | CNNVD-202601-2094 | CVE-2026-20872 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20872 |
100 | Microsoft NTLM 安全漏洞 | CNNVD-202601-2075 | CVE-2026-20925 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20925 |
101 | Microsoft Windows SMB Server 竞争条件问题漏洞 | CNNVD-202601-2072 | CVE-2026-20927 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20927 |
102 | Microsoft Windows File Explorer 信息泄露漏洞 | CNNVD-202601-2069 | CVE-2026-20932 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20932 |
103 | Microsoft Windows Virtualization-Based Security Enclave 安全漏洞 | CNNVD-202601-2066 | CVE-2026-20935 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20935 |
104 | Microsoft Windows Network Driver Interface Specification 缓冲区错误漏洞 | CNNVD-202601-2064 | CVE-2026-20936 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20936 |
105 | Microsoft Windows File Explorer 信息泄露漏洞 | CNNVD-202601-2063 | CVE-2026-20937 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20937 |
106 | Microsoft Windows File Explorer 信息泄露漏洞 | CNNVD-202601-2060 | CVE-2026-20939 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20939 |
107 | Microsoft SharePoint 代码问题漏洞 | CNNVD-202601-2037 | CVE-2026-20958 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20958 |
108 | Microsoft SharePoint 跨站脚本漏洞 | CNNVD-202601-2036 | CVE-2026-20959 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20959 |
109 | Microsoft Dynamics 安全漏洞 | CNNVD-202601-2028 | CVE-2026-20962 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20962 |
110 | Microsoft Windows Secure Boot 安全漏洞 | CNNVD-202601-2027 | CVE-2026-21265 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21265 |
111 | Microsoft Desktop Windows Manager 安全漏洞 | CNNVD-202601-2042 | CVE-2026-20805 | 中危 | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20805 |
此次更新共包括3个影响微软产品的其他厂商漏洞的补丁程序,其中超危漏洞1个,高危漏洞1个,中危漏洞1个。
序号 | 漏洞名称 | CNNVD编号 | CVE编号 | 危害等级 | 厂商 | 官方链接 |
1 | Motorola SM56 Modem WDM Driver 命令注入漏洞 | CNNVD-202501-882 | CVE-2024-55414 | 超危 | Motorola | https://www.motorola.com/ |
2 | Broadcom LSI PCI-SV92EX Soft Modem Kernel Driver 缓冲区错误漏洞 | CNNVD-202310-713 | CVE-2023-31096 | 高危 | Broadcom | https://www.broadcom.com/ |
3 | Microsoft Windows Virtualization-Based Security Enclave 安全漏洞 | CNNVD-202601-2088 | CVE-2026-20876 | 中危 | Microsoft Windows VBS Enclave | https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20876 |
三、修复建议
目前,微软官方已经发布补丁修复了上述漏洞,建议用户及时确认漏洞影响,尽快采取修补措施。微软官方补丁下载地址:
https://msrc.microsoft.com/update-guide/en-us
CNNVD将继续跟踪上述漏洞的相关情况,及时发布相关信息。如有需要,可与CNNVD联系。联系方式: cnnvd@itsec.gov.cn
- 上一篇:没有了
- 下一篇:关于Windows 文件资源管理器欺骗漏洞的安全公告
