9月中旬,微软公司发布了MS04-028安全公告,即JPEG处理中的缓存区溢出漏洞可能允许执行任意代码,它属于缓冲区溢出高危级漏洞,可导致感染的系统被远程运行代码。如果用户以Administrator权限登陆,一个攻击者可能成功的利用此漏洞来全盘掌控被感染的系统,其中包括安装程序,浏览、更改或删除数据,或者创建新的拥有全部权限的帐户。
启明星辰公司积极防御实验室一直在密切跟踪国内外黑客组织的最新动态,近日已经发现针对该漏洞的攻击代码被公布在一些黑客组织的网站上。可以预测,利用此漏洞的蠕虫病毒即将出现。在此提醒所有Microsoft的用户注意,请广大用户尽快下载补丁并升级。
微软公司网站相关链接:http://www.microsoft.com/technet/security/bulletin/ms04-028.mspx
启明星辰网站相关链接:http://www.venustech.com.cn/tech/announce/20040917/2707.htm
或http://www.venustech.com.cn/tech/announce/20040924/2723.htm
您也可以在如下网址立刻下载补丁:
Microsoft Windows XP and Microsoft Windows XP Service Pack 1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=6F8D70C1-63BD-4213-82C1-20266FDFD735&displaylang=en
Microsoft Windows XP 64-Bit Edition Service Pack 1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=1631C3F7-A40E-4B26-BD92-12141E6A7F58&displaylang=en
Microsoft Windows XP 64-Bit Edition Version 2003:
http://www.microsoft.com/downloads/details.aspx?FamilyId=98BFF681-9703-4D23-8DF8-B7239D6C531C&displaylang=en
Microsoft Windows Server2003:
http://www.microsoft.com/downloads/details.aspx?FamilyId=B2FBD93C-3DC3-4A9E-BDD6-9F39726EE3E2&displaylang=en
Microsoft Windows Server 2003 64-Bit Edition:
http://www.microsoft.com/downloads/details.aspx?FamilyId=98BFF681-9703-4D23-8DF8-B7239D6C531C&displaylang=en
Microsoft Office XP Service Pack 3:
http://www.microsoft.com/downloads/details.aspx?FamilyId=7D128614-6D34-49DF-8D63-6C17E9A2D312&displaylang=en
Microsoft Office XP Service Pack 2:
http://download.microsoft.com/download/B/3/4/B349420C-7D50-4DD0-BFF2-249CF2DB43FA/Officexp-kb832332-fullfile-enu.exe
Microsoft Office 2003:
http://www.microsoft.com/downloads/details.aspx?FamilyId=106BCF99-1BA9-4035-94C5-2A7FA90E5971&displaylang=en
Microsoft Project 2002 Service Pack 1 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=B3EBCCEA-B0E4-41C7-A6F4-413864D2CCF3&displaylang=en
Microsoft Project 2003 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=9E37B6B0-A028-47EA-8FA1-3705877A2908&displaylang=en
Microsoft Visio 2002 Service Pack 2 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=16C2DFFD-7B73-43C4-AB0D-2B5EFC80EB63&displaylang=en
Microsoft Visio 2003 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=C07D40A5-6F87-4D50-9640-34FFD2F189E1&displaylang=en
Microsoft Visual Studio .NET 2002:
http://www.microsoft.com/downloads/details.aspx?FamilyId=44004D19-B22F-4AF2-A701-1FCB0467FBF9&displaylang=en
Microsoft Visual Studio .NET 2003:
http://www.microsoft.com/downloads/details.aspx?FamilyId=A13B7A21-463C-4286-AD68-E692417E80E2&displaylang=en
The Microsoft .NET Framework version 1.0 SDK Service Pack 2:
http://www.microsoft.com/downloads/details.aspx?familyid=6978D761-4A92-4106-A9BC-83E78D4ABC5B&displaylang=en
Microsoft Picture It!2002 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en
Microsoft Greetings 2002:
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en
Microsoft Picture It! version 7.0 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en
Microsoft Digital Image Pro version 7.0:
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en
Microsoft Picture It! version 9 (all versions, including Picture It! Library):
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en
Microsoft Digital Image Pro version 9:
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en
Microsoft Digital Image Suite version 9:
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en
Microsoft Producer for Microsoft Office PowerPoint (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyID=1b3c76d5-fc75-4f99-94bc-784919468e73&DisplayLang=en
Microsoft Platform SDK Redistributable: GDI+:
http://www.microsoft.com/downloads/details.aspx?FamilyId=6A63AB9C-DF12-4D41-933C-BE590FEAA05A&displaylang=en
来源: 千龙科技