今天是
今日新发布冰球突破0条 | 上传规范

关于“Windows TCP/IP 远程代码执行漏洞”高危漏洞的预警

来源:   发布日期:2024-08-17

漏洞名称:“Windows TCP/IP 远程代码执行漏洞”。 

漏洞情况:该漏洞编号为 CVE-2024-38063是存在于 Windows 操作系统TCP/IP 组件中的远程代码执行漏洞。根据微软官方介绍,该漏洞最高严重等级为严重,CVSS 评分为 9.8,Windows 系统的多个版本受此漏洞影响。攻击者可利用该漏洞实现远程代码执行。漏洞成因在于 Windows 操作系统 TCP/IP 组件中存在整数下溢漏洞,未经身份验证的攻击者可重复向 Windows 计算机发送 IPv6 数据包(包括特别构建的数据包),从而实现远程代码执行。 

影响范围:见附表

修复方法:升级 Windows 操作系统到最新版本

参考链接:http://www.cve.org/CVERecord?id=CVE-2024-38063、http://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38063

附表:

序号

Windows 产品版本号

1

Windows 11 Version 24H2 for x64-based Systems

2

Windows 11 Version 24H2 for ARM64-based Systems

3

Windows Server 2012 R2 (Server Core installation)

4

Windows Server 2012 R2

5

Windows Server 2012 (Server Core installation)

6

Windows Server 2012

7

Windows Server 2008 R2 for x64-based Systems Service  Pack 1 (Server Core installation)

8

Windows Server 2008 R2 for x64-based Systems Service  Pack 1

9

Windows Server 2008 for x64-based Systems Service Pack  2 (Server Core installation)

10

Windows Server 2008 for x64-based Systems Service Pack  2

11

Windows Server 2008 for 32-bit Systems Service Pack 2  (Server Core installation)

12

Windows Server 2008 for 32-bit Systems Service Pack 2

13

Windows Server 2016 (Server Core installation)

14

Windows Server 2016

15

Windows 10 Version 1607 for x64-based Systems

16

Windows 10 Version 1607 for 32-bit Systems

17

Windows 10 for x64-based Systems

18

Windows 10 for 32-bit Systems

19

Windows Server 2022, 23H2 Edition (Server Core  installation)

20

Windows 11 Version 23H2 for x64-based Systems

21

Windows 11 Version 23H2 for ARM64-based Systems

22

Windows 10 Version 22H2 for 32-bit Systems

23

Windows 10 Version 22H2 for ARM64-based Systems

24

Windows 10 Version 22H2 for x64-based Systems

25

Windows 11 Version 22H2 for x64-based Systems

26

Windows 11 Version 22H2 for ARM64-based Systems

27

Windows 10 Version 21H2 for x64-based Systems

28

Windows 10 Version 21H2 for ARM64-based Systems

29

Windows 10 Version 21H2 for 32-bit Systems

30

Windows 11 version 21H2 for ARM64-based Systems

31

Windows 11 version 21H2 for x64-based Systems

32

Windows Server 2022 (Server Core installation)

33

Windows Server 2022

34

Windows Server 2019 (Server Core installation)

35

Windows Server 2019

36

Windows 10 Version 1809 for ARM64-based Systems

37

Windows 10 Version 1809 for x64-based Systems

38

Windows 10 Version 1809 for 32-bit Systems