IT新闻 已评论

捷径!快速找到Windows安全漏洞对应的修复补丁

2024-3-22 17:10

  【天极网IT新闻频道】随着全球范围的黑客入侵不断猖獗,信息安全问题越来越严重。在对抗黑客入侵的安全技术中,实时入侵检测和漏洞扫描评估的技术和产品已经开始占据越来越重要的位置。实时入侵检测和漏洞扫描评估基于的主要方法还是“已知入侵手法检测”和“已知漏洞扫描”,换句话说就是基于知识库的技术。由于没有针对这些扫描器平台的分类标准,直接比较他们的数据库非常困难。使用一个共同的名字,可以帮助用户在各自独立的各种漏洞数据库中和漏洞评估工具中共享数据,CVE就是在这样的环境下应运而生的。

  CVE 的英文全称是“Common Vulnerabilities & Exposures”,即通用漏洞披露。它就好像是一个字典表,为广泛认同的信息安全漏洞或者已经暴露出来的弱点提供一个公共的名称。如果在一个漏洞报告中指明的一个漏洞有CVE名称,你就可以快速地在任何其它CVE兼容的数据库中找到相应修补的信息,解决安全问题。 

  接下来以大家日常使用最多的Windows操作系统来举例。当系统安全漏洞被发现后,就会向CNA(CVE Numbering Authorities)申请CVE编号,系统安全漏洞通过验证并符合相应规则后会发布在MITRE官网,点击首页的“Search CVE List”可以按CVE编号或者关键字查询CVE项目。CVE ID的格式为CVE-YYYY-NNNNN。YYYY部分是分配CVE ID的年份或漏洞公开的年份(如果在分配CVE ID之前)。NNNNN部分为CNA分配的编号。年份部分不用于指示漏洞的发现时间,而仅用于指示漏洞的公开或分配时间。

  CNNVD是中国国家信息安全漏洞库,英文名称“China National Vulnerability Database of Information Security”,简称“CNNVD”,隶属于中国信息安全测评中心,是中国信息安全测评中心为切实履行漏洞分析和风险评估的职能,负责建设运维的国家级信息安全漏洞库,为我国信息安全保障提供基础服务。CNNVD采集收录、分析验证涉及国内外主流应用软件、操作系统和网络设备等软硬件系统的信息安全漏洞(CVE),发布于CNNVD官方网站(//cnnvd.org.cn/)并对安全漏洞指定CNNVD编号,与CVE形成对应关系,例如CVE-2021-26855对应CNNVD-202103-192。CNNVD的内容相对CVE更详细。

  作为Windows软件厂商的微软公司,针对定期发布的系统安全漏洞,都会提供相应的解决漏洞的方案,一般按月发布在微软安全响应中心(//bdimg.yesky.com/msrc.microsoft.com/update-guide),例如//bdimg.yesky.com/msrc.microsoft.com/update-guide/vulnerability/CVE-2021-26870,通过点击“安全更新程序”中相应产品的“Security Update”链接可以下载到修复这个安全漏洞的补丁更新。对于没有补丁更新的情况,可以在“临时解决方案”、“常见问题解答”或“缓解”中找到应对方案。 

  两个编号由两个不同的主体发布在不同的网站,要求用户有相应的知识背景才知道如何查找。用户在获知漏洞存在时,一般都非常着急,希望能找到官方可靠的修复补丁,但大部分用户并不知道去哪里找。下面是笔者针对近期发布的Windows操作系统安全漏洞整理的对应漏洞补丁列表。

  Windows操作系统主要安全漏洞及对应补丁

  (截至2024年3月22日) 

KB编号 CVE编号 CNNVD编号
Windows 10 21H2: KB5034122 CVE-2024-20666 CNNVD-202401-710
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20674 CNNVD-202401-711
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20654 CNNVD-202401-718
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20657 CNNVD-202401-719
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20658 CNNVD-202401-720
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20680 CNNVD-202401-721
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20682 CNNVD-202401-714
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20683 CNNVD-202401-712
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20690 CNNVD-202401-707
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20691 CNNVD-202401-706
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20694 CNNVD-202401-703
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2022-35737 CNNVD-202207-2282
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20696 CNNVD-202401-704
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20698 CNNVD-202401-701
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20699 CNNVD-202401-700
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20700 CNNVD-202401-699
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-21305 CNNVD-202401-698
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-21307 CNNVD-202401-697
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-21313 CNNVD-202401-691
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20652 CNNVD-202401-731
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20653 CNNVD-202401-730
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20660 CNNVD-202401-727
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20661 CNNVD-202401-726
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20663 CNNVD-202401-724
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20664 CNNVD-202401-723
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-21316 CNNVD-202401-689
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20681 CNNVD-202401-716
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20687 CNNVD-202401-708
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-20692 CNNVD-202401-705
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-21306 CNNVD-202401-696
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-21310 CNNVD-202401-694
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-21311 CNNVD-202401-693
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-21314 CNNVD-202401-690
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034122 CVE-2024-21320 CNNVD-202401-687
Windows 10 1809: KB5034127
Windows 10 21H2: KB5034763 CVE-2024-21338 CNNVD-202402-1087
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21340 CNNVD-202402-1085
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21349 CNNVD-202402-1076
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21350 CNNVD-202402-1075
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21351 CNNVD-202402-1074
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21352 CNNVD-202402-1073
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21354 CNNVD-202402-1071
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21357 CNNVD-202402-1067
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21358 CNNVD-202402-1068
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21360 CNNVD-202402-1065
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21361 CNNVD-202402-1064
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21366 CNNVD-202402-1059
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21369 CNNVD-202402-1056
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21371 CNNVD-202402-1055
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21372 CNNVD-202402-1052
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21375 CNNVD-202402-1051
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21420 CNNVD-202402-1027
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21304 CNNVD-202402-1093
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21339 CNNVD-202402-1086
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21341 CNNVD-202402-1083
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21343 CNNVD-202402-1084
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21344 CNNVD-202402-1081
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21347 CNNVD-202402-1079
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21348 CNNVD-202402-1077
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21355 CNNVD-202402-1070
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21356 CNNVD-202402-1069
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21359 CNNVD-202402-1066
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21362 CNNVD-202402-1062
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21363 CNNVD-202402-1063
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21365 CNNVD-202402-1060
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21367 CNNVD-202402-1058
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21368 CNNVD-202402-1057
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21370 CNNVD-202402-1054
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21377 CNNVD-202402-1049
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21391 CNNVD-202402-1041
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21405 CNNVD-202402-1092
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21406 CNNVD-202402-1031
Windows 10 1809: KB5034768
Windows 10 21H2: KB5034763 CVE-2024-21412 CNNVD-202402-1029
Windows 10 1809: KB5034768
Windows 10 21H2: KB5035845 CVE-2024-21429 CNNVD-202403-1019
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21430 CNNVD-202403-1018
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21438 CNNVD-202403-1010
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21439 CNNVD-202403-1008
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21441 CNNVD-202403-1009
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21442 CNNVD-202403-1005
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21443 CNNVD-202403-1006
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21444 CNNVD-202403-1004
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21445 CNNVD-202403-1003
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21446 CNNVD-202403-1001
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21450 CNNVD-202403-1002
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21451 CNNVD-202403-999
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26159 CNNVD-202403-998
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26161 CNNVD-202403-995
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21407 CNNVD-202403-1027
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21408 CNNVD-202403-1026
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21427 CNNVD-202403-1023
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21431 CNNVD-202403-1016
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21432 CNNVD-202403-1017
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21433 CNNVD-202403-1014
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21434 CNNVD-202403-1015
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21436 CNNVD-202403-1012
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21437 CNNVD-202403-1011
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-21440 CNNVD-202403-1007
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26162 CNNVD-202403-994
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26166 CNNVD-202403-993
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26169 CNNVD-202403-992
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26170 CNNVD-202403-991
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26173 CNNVD-202403-988
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26174 CNNVD-202403-987
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26176 CNNVD-202403-989
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26177 CNNVD-202403-986
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26178 CNNVD-202403-985
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26181 CNNVD-202403-984
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2024-26182 CNNVD-202403-982
Windows 10 1809: KB5035849
Windows 10 21H2: KB5035845 CVE-2023-28746 CNNVD-202403-1080
Windows 10 1809: KB5035849

  有了上面的列表,当你发现一个CVE漏洞时可以简单地通过在Microsoft Update Catalog网站(//bdimg.yesky.com/www.catalog.update.microsoft.com/home.aspx)中通过搜索KB编号找到修复补丁,也可以通过CNNVD官网(//bdimg.yesky.com/cnnvd.org.cn/web/vulnerability/querylist.tag)搜索CNNVD编号查看更多关于安全漏洞的详细信息。

#+1你赞过了
人已赞
#
分享
查看更多内容

取消

  • #
  • #
  • #

©2023 天极网旗下网站

#
第三方账号登录
X
发布