Windows远程桌面漏洞提示(CVE-2019-0708)
![]() | ![]() | ![]() | ![]() |
| 【性价之王】 | 【线路之王】 | 【价格之王】 | 【配置之王】 |
| 【免费之王】 | 【香港首推】 | 【梯子之王】 | 【独服之王】 |

微软已发布了新的针对windows系统的漏洞补丁,请使用windows系统的读者留意该漏洞并及时处理避免对VPS及服务器使用造成不便。
Today Microsoft released fixes for a critical Remote Code Execution vulnerability, CVE-2019-0708, in Remote Desktop Services – formerly known as Terminal Services – that seoects some older versions of Windows. The Remote Desktop Protocol (RDP) itself is not vulnerable. This vulnerability is pre-authentication and requires no user interaction. In other words, the vulnerability is ‘wormable’, meaning that any future malware that exploits this vulnerability could propagate from vulnerable computer to vulnerable computer in a similar way as the WannaCry malware spread across the globe in 2017. While we have observed no exploitation of this vulnerability, it is highly likely that malicious actors will write an exploit for this vulnerability and incorporate it into their malware.
Now that I have your attention, it is important that seoected systems are patched as quickly as possible to prevent such a scenario from happening. In response, we are taking the unusual step of providing a security update for all customers to protect Windows platforms, including some out-of-support versions of Windows.
Vulnerable in-support systems include Windows 7, Windows Server 2008 R2, and Windows Server 2008. Downloads for in-support versions of Windows can be found in the Microsoft Security Update Guide. Customers who use an in-support version of Windows and have automatic updates enabled are automatically protected.
Out-of-support systems include Windows 2003 and Windows XP. If you are on an out-of-support version, the best way to address this vulnerability is to upgrade to the latest version of Windows. Even so, we are making fixes available for these out-of-support versions of Windows in KB4500705.
Customers running Windows 8 and Windows 10 are not seoected by this vulnerability, and it is no coincidence that later versions of Windows are unseoected. Microsoft invests heavily in strengthening the security of its products, often through major architectural improvements that are not possible to backport to earlier versions of Windows.
There is partial mitigation on seoected systems that have Network Level Authentication (NLA) enabled. The seoected systems are mitigated against ‘wormable’ malware or advanced malware threats that could exploit the vulnerability, as NLA requires authentication before the vulnerability can be triggered. However, seoected systems are still vulnerable to Remote Code Execution (RCE) exploitation if the attacker has valid credentials that can be used to successfully authenticate.
It is for these reasons that we strongly advise that all seoected systems – irrespective of whether NLA is enabled or not – should be updated as soon as possible.
Resources
Links to downloads for Windows 7, Windows 2008 R2, and Windows 2008
Links to downloads for Windows 2003 and Windows XP
Simon Pope, Director of Incident Response, Microsoft Security Response Center (MSRC)
原文:https://blogs.technet.microsoft.com/msrc/2019/05/14/prevent-a-worm-by-updating-remote-desktop-services-cve-2019-0708/
百度翻译:
通过更新远程桌面服务(CVE-2019-0708)防止蠕虫病毒★★★★★★★★★★★★★★★★★★MSRC团队化身MSRC团队20190年5月14日今天,微软发布了对远程桌面服务(以前称为终端服务)中影响某些旧版本Windows的关键远程代码执行漏洞CVE-2019-0708的修复。远程桌面协议(RDP)本身不易受攻击。此漏洞是预身份验证,不需要用户交互。换句话说,该漏洞是“可恶的”,这意味着任何利用该漏洞的未来恶意软件都可能以类似于2017年在全球传播的Wannacry恶意软件的方式从易受攻击的计算机传播到易受攻击的计算机。虽然我们没有发现对该漏洞的利用,但恶意参与者很可能会针对该漏洞编写一个漏洞并将其合并到恶意软件中。现在我得到你们的注意,重要的是尽快修补受影响的系统,以防止这种情况发生。作为回应,我们采取了不同寻常的步骤,为所有客户提供安全更新,以保护Windows平台,包括一些不支持的Windows版本。支持系统中的漏洞包括Windows 7、Windows Server 2008 R2和Windows Server 2008。有关Windows支持版本的下载,请参阅《Microsoft安全更新指南》。使用支持中版本的Windows并启用自动更新的客户将被自动保护。不支持的系统包括Windows 2003和Windows XP。如果您的版本不受支持,解决此漏洞的最佳方法是升级到最新版本的Windows。即便如此,我们仍在为KB4500705中不支持的Windows版本提供修复程序。运行Windows 8和Windows 10的客户不受此漏洞的影响,而且Windows的较新版本不受影响也不是巧合。微软投入巨资加强其产品的安全性,通常是通过主要的体系结构改进,而这些改进不可能回到早期版本的Windows。对启用了网络级身份验证(NLA)的受影响系统进行了部分缓解。由于NLA在触发漏洞之前需要身份验证,因此受影响的系统可以抵御可能利用该漏洞的“易受攻击”恶意软件或高级恶意软件威胁。但是,如果攻击者具有可用于成功进行身份验证的有效凭据,则受影响的系统仍然容易受到远程代码执行(RCE)攻击。出于这些原因,我们强烈建议尽快更新所有受影响的系统,无论NLA是否启用。[CVE-2019-0708]历史优惠活动内容
猜你可能想看的VPS
- 优惠 80VPS→香港 Cera 机房 直连内地 5 折优惠 2 核 2香港VPS[主机]
- 便宜 $2.45 月 512M 内存 14G SSD 1T 流量@1Gb全球[VPS测评]
- 便宜 VPS $15 年 512M 内存 8G SSD 1T 流量 1G全球[VPS测评]
- Sharedspace→$4 月 1GB 内存 20GB SSD 空间 虚拟空间(主机)
- 滴滴云国内企业级云服务器限时促销,5 月 31 日前 4.5 折起,10全球[VPS测评]
- 二月促销 LOCVPS→新春 Xen VPS 七折优惠 全场八折优惠 香香港VPS[主机]
- 疯狂猜成语 图猜成语一个老人说了很多话旁边一个人在叹气是什么成语?全球[VPS测评]
- 桔子数据→380 元 年 2GB 内存 30GB SSD 空间 800G虚拟空间(主机)
- WordPress网站首页、文章、页面、分类、标签添加关键词和描述全球[VPS测评]
- WordPress插件:WP Link Pages Extended 文全球[VPS测评]
- ping.cat监测各大国外VPS主机商网络质量全球[VPS测评]
- RockSoft → 11$月付 1C1G25G硬盘 马来西亚TM 10全球[VPS测评]
- Bestariwebhost-印度尼西亚 4$月付 1Gbps不限流量 全球[VPS测评]
- Metaidc 佛山移动VDS 测试记录 (已跑路)全球[VPS测评]
- 无忧云怎么样?大连BGP德阳100G高防香港CN2VPS云服务器香港VPS[主机]
- 印象云怎么样?85折香港安畅CN2vps带宽3M月付23元香港VPS[主机]
- edgeNAT双十二:韩国VPS/美国CN2/香港CN2VPS主机,月付韩国VPS[主机]
- 碳氧云,香港vps路由调整为沙田cn2,特价款6核6G仅80元/月香港VPS[主机]
- 戈登云VPS,6折,充值送50%,香港cn2,美国cn云服务器,2核2G美国VPS[主机]
- Bloggar-移动端友好的新闻博客类HTML5模板全球[VPS测评]
- 茶猫云:香港云服务器,支持windows,2M带宽,34元/月WINDOWS
- 乐趣云怎么样?香港美国云服务器首月8.8元,新增IP5元/个美国VPS[主机]
- 易凡云:香港CN2 2核2G云服务器仅29.78元/月,357元/年香港VPS[主机]
- 二三互联,香港cn2云服务器5折+85折双重优惠,稳定不限流量,1核1G香港VPS[主机]
- earidc怎么样?香港三网cn2vps带宽1M月付29元香港VPS[主机]
- 绮风云:香港云服务器仅11元/月,132元/年;美国/日本/韩国/新加坡日本VPS[主机]
- 什么是Bootstrap?全球[VPS测评]
- 尊云:河南BGP云服务器2核4G仅68.6元/月,823.2元/年;香港香港VPS[主机]
- 腾讯云香港轻量云2核2G服务器:30M带宽低至704元/年;2312元/香港VPS[主机]
- 月神科技:香港云服务器,2核2G5M年付200元/年;美国2核2G50M美国VPS[主机]
转载请注明原文地址:http://140.238.13.167:12355/read-132257.html











