CDHaha Download


[4,188]

MS14-001 Vulnerabilities in Microsoft Word and Office Web Apps Could Allow Remote Code Execution (2916605)

2014-01-15 |

Word 2013此安全更新可解决 Microsoft Office 中 3 个秘密报告的漏洞。如果特制文件在 Microsoft Word 的受影响版本或其他受影响的 Microsoft Office 软件中打开,则这些漏洞可能允许远程执行代码。成功利用该漏洞的攻击者可以获得与当前用户相同的用户权限。那些帐户被配置为拥有较少系统用户权限的用户比具有管理用户权限的用户受到的影响要小。

对于 Microsoft Word 2003、Microsoft Word 2007、Microsoft Word 2010、Microsoft Word 2013、Microsoft Word 2013 RT 的所有支持版本,以及 Microsoft SharePoint Server 2010、Microsoft SharePoint Server 2013 和 Microsoft Web Apps Server 2013 的受支持版本上受影响的 Microsoft Office 服务和 Web Apps,此安全更新的等级为“重要”。对于 Microsoft Word Viewer 和 Microsoft Office 兼容包的受支持版本,此安全更新的等级也为“重要”。该安全更新通过更正 Microsoft Office 分析特制文件的方式来解决漏洞。
More

[27,514]

Intel Rapid Storage Technology RAID Driver 12.9

2013-12-26 |

intelIntel Rapid Storage Technology(快速存储技术)是Intel的磁盘管理程序控制台及驱动的整合,前身是Intel Matrix Storage Manager。从前身就可以看出,这至少是一个RAID的控制软件,但是现在已经不仅仅局限于此了,此软件另外集成了Intel芯片组的SATA、AHCI、RAID驱动。可以说,除了芯片组的驱动,只需要再安装此驱动就可以解决Intel芯片组磁盘管理及应用的全部问题。

Installs the Intel® Rapid Storage Technology (RAID) driver version 12.9.0.1001.

This driver supports RAID 0, 1, 5 and 10. The driver should be installed after the operating system has been installed. F6 and RAID BIOS configurations need to be performed prior to installation of this driver for proper operation.
More

[4,561]

Instantbird 1.5

2013-12-22 |

InstantbirdBringing together all kinds of awesomeness to make instant messaging better for you.
Talk to all your friends
With Instantbird, you can now talk to all your friends with a single application!
AIM, Yahoo, MSN, Google Talk, Facebook and even Twitter are supported!
Trouble free
Instantbird has been designed with stability and simplicity in mind.
You will enjoy its clean clutter-free user interface: nothing will distract you from your conversations!
No ads, you won’t be annoyed by unwanted content.
More

[143,658]

Adobe Flash Professional CC 2014 13.1 Updater

2013-12-21 |

Flash Professional CC 2014Adobe Flash Professional CS5.5 software is the industry-leading authoring environment for producing expressive interactive content. Create immersive experiences that present consistently to audiences across desktops, smartphones, tablets, and televisions.
Efficient workflows for mobile development
Manage FLA project files that target multiple devices. Share code and assets across documents and device targets to efficiently create, test, package, and deploy content for a wide range of screens and devices.
Content scaling when resizing stage
Save time when sharing symbols and motion paths across documents that are optimized for different screen sizes.
More

[23,575]

ATI Catalyst 13.12 WHQL

2013-12-21 |

ati年关将至,AMD给众位A卡用户奉上了一份厚礼:催化剂13.12正式版。催化剂驱动上次有正式版还是9月份。

催化剂13.12正式版编译于2013年12月6日(够新的了),显示驱动版本号13.251.0.0000,硬件支持Radeon HD 5000、Radeon HD 5000M系列以来的所有桌面显卡、笔记本显卡、APU集成显卡,操作系统支持Windows Vista、Windows 7 SP1、Windows 8、Windows 8.1 32/64-bit。Linux版本暂未放出。

这个正式版本汇集了之前多个测试版的更新内容,升级力度相当猛,包括:
1、支持如下新型号:
- Radeon R9 290/280/270系列
- Radeon R7 260/250/240系列
More

[84,764]

AMD Chipset South Bridge Driver 13.12 WHQL

2013-12-20 |

atiAMD在显示芯片领域获得巨大成功之后,紧接着便大旗一挥,全面进军主板芯片市场,在双管齐下策略的指导下,推出了多款适用于Intel和AMD处理器芯片组产品,并且依靠其优秀的性能表现和出众的集成图形核心取得了不错的市场反响。

这是AMD官方发布的适用于采用Xpress 200、Xpress 1100、Xpress 1150、Xpress 1200、Radeon X1200、Radeon X1250、CrossFire Xpress 1600、CrossFire Xpress 3200、AMD 580X、AMD 690G、AMD 780G、AMD 790GX、SB400、SB450、SB600、SB700、SB750系列芯片组主板的最新驱动包。
More

[11,742]

Microsoft December 2013 Security Release ISO Image

2013-12-13 |

ISO Image这个 DVD5 ISO 映像文件包含 2013 年 12 月 10 日在 Windows Update 上发布的 Windows 安全更新程序。此映像不包含其他 Microsoft 产品的安全更新程序。此 DVD5 ISO 映像旨在供需要下载每个安全更新程序的多种语言版本,并且不使用诸如 Windows Server Update Services (WSUS) 这样的自动解决方案的管理员使用。您可以使用此 ISO 映像同时下载所有语言的多个更新程序。

重要说明: 在部署这些更新程序之前,请务必查看位于 http://technet.microsoft.com/en-us/security/bulletin 的各个安全公告,以确保文件尚未在更近的日期更新。

此 DVD5 映像包含以下更新程序:
More

[4,899]

MS13-106 Vulnerability in a Microsoft Office Shared Component Could Allow Security Feature Bypass (2905238)

2013-12-13 |

OfficeThis security update resolves one publicly disclosed vulnerability in a Microsoft Office shared component that is currently being exploited. The vulnerability could allow security feature bypass if a user views a specially crafted webpage in a web browser capable of instantiating COM components, such as Internet Explorer. In a web-browsing attack scenario, an attacker who successfully exploited this vulnerability could bypass the Address Space Layout Randomization (ASLR) security feature, which helps protect users from a broad class of vulnerabilities. The security feature bypass by itself does not allow arbitrary code execution. However, an attacker could use this ASLR bypass vulnerability in conjunction with another vulnerability, such as a remote code execution vulnerability that could take advantage of the ASLR bypass to run arbitrary code.

This security update is rated Important for supported editions of Microsoft Office 2007 and Microsoft Office 2010 software. The security update addresses the vulnerability by helping to ensure that the Microsoft Office shared component properly implements ASLR.
More

[12,352]

MS13-105 Vulnerabilities in Microsoft Exchange Server Could Allow Remote Code Execution (2915705)

2013-12-13 |

Exchange Server 2013此安全更新解决 Microsoft Exchange Server 中三个公开披露的漏洞和一个秘密报告的漏洞。Microsoft Exchange Server 的 WebReady Document Viewing 和数据丢失防护功能中存在最严重的漏洞。如果攻击者向受影响的 Exchange Server 中的用户发送包含特制文件的电子邮件,则这些漏洞可能允许在 LocalService 帐户的安全上下文中远程执行代码。LocalService 帐户在本地系统上具有最低特权,在网络上提供匿名凭据。

Microsoft Exchange Server 2007、Microsoft Exchange Server 2010 和 Microsoft Exchange Server 2013 的所有受支持版本,此安全更新等级为“严重”。此安全更新通过将受影响的 Oracle Outside In 库更新至不容易受攻击的版本、按照最佳做法启用计算机身份验证检查 (MAC),以及确保正确清理URL来解决漏洞。
More

[13,069]

MS13-104 Vulnerability in Microsoft Office Could Allow Information Disclosure (2909976)

2013-12-13 |

Office 2013此安全更新可解决 Microsoft Office 中一个秘密报告的漏洞,如果用户尝试打开恶意网站上托管的 Office 文件,则该漏洞可能允许信息泄露。成功利用此漏洞的攻击者可以确定用于在目标 SharePoint 或其他 Microsoft Office Server 站点上对当前用户进行身份验证的访问令牌。

对于 Microsoft Office 2013 和 Microsoft Office 2013 RT 软件的受支持版本,此安全更新的等级为“重要”。该安全更新通过帮助确保 Microsoft Office 软件正确处理来自网站的特制响应来解决漏洞。
More