{"id":601,"date":"2011-09-16T08:09:14","date_gmt":"2011-09-16T00:09:14","guid":{"rendered":"http:\/\/down.cdhaha.net\/?p=601"},"modified":"2011-09-16T11:27:45","modified_gmt":"2011-09-16T03:27:45","slug":"ms11-072-vulnerabilities-in-microsoft-excel-could-allow-remote-code-execution-2587505","status":"publish","type":"post","link":"http:\/\/down.cdhaha.net\/?p=601","title":{"rendered":"MS11-072 Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2587505)"},"content":{"rendered":"<p><img decoding=\"async\" src=\"wp-content\/uploads\/2009\/12\/Excel_2010.gif\" alt=\"Excel 2010\" title=\"Excel 2010\" class=\"alignleft\" \/>\u6b64\u5b89\u5168\u66f4\u65b0\u89e3\u51b3 Microsoft Office \u4e2d\u4e94\u4e2a\u79d8\u5bc6\u62a5\u544a\u7684\u6f0f\u6d1e\u3002\u5982\u679c\u7528\u6237\u6253\u5f00\u7279\u5236\u7684 Excel \u6587\u4ef6\uff0c\u8fd9\u4e9b\u6f0f\u6d1e\u53ef\u80fd\u5141\u8bb8\u8fdc\u7a0b\u6267\u884c\u4ee3\u7801\u3002\u6210\u529f\u5229\u7528\u8fd9\u4e9b\u6f0f\u6d1e\u7684\u653b\u51fb\u8005\u53ef\u4ee5\u83b7\u5f97\u4e0e\u767b\u5f55\u7528\u6237\u76f8\u540c\u7684\u7528\u6237\u6743\u9650\u3002\u90a3\u4e9b\u5e10\u6237\u88ab\u914d\u7f6e\u4e3a\u62e5\u6709\u8f83\u5c11\u7cfb\u7edf\u7528\u6237\u6743\u9650\u7684\u7528\u6237\u6bd4\u5177\u6709\u7ba1\u7406\u7528\u6237\u6743\u9650\u7684\u7528\u6237\u53d7\u5230\u7684\u5f71\u54cd\u8981\u5c0f\u3002\u5b89\u88c5\u548c\u914d\u7f6e Office \u6587\u4ef6\u9a8c\u8bc1 (OFV) \u53ef\u9632\u6b62\u6253\u5f00\u53ef\u7591\u7684\u6587\u4ef6\uff0c\u4ece\u800c\u963b\u6b62\u5229\u7528 CVE-2011-1986 \u548c CVE-2011-1987 \u4e2d\u7684\u6f0f\u6d1e\u7684\u653b\u51fb\u5a92\u4ecb\u3002\u6709\u5173\u5982\u4f55\u914d\u7f6e Office \u6587\u4ef6\u9a8c\u8bc1\u529f\u80fd\u4ee5\u963b\u6b62\u653b\u51fb\u5a92\u4ecb\u7684\u8be6\u7ec6\u4fe1\u606f\uff0c\u8bf7\u53c2\u9605\u5c0f\u8282\u201c\u4e0e\u6b64\u5b89\u5168\u66f4\u65b0\u76f8\u5173\u7684\u5e38\u89c1\u95ee\u9898 (FAQ)\u201d\u3002<\/p>\n<p>\u5bf9\u4e8e\u4ee5\u4e0b\u8f6f\u4ef6\uff0c\u6b64\u5b89\u5168\u66f4\u65b0\u7684\u7b49\u7ea7\u4e3a\u201c\u91cd\u8981\u201d\uff1a<strong>Microsoft Excel 2003\u3001Microsoft Excel 2007\u3001Microsoft Office 2007\u3001Microsoft Excel 2010\u3001Microsoft Office 2010, Microsoft Office 2004 for Mac\u3001Microsoft Office 2008 for Mac \u548c Microsoft Office for Mac 2011 \u7684\u6240\u6709\u53d7\u652f\u6301\u7248\u672c\uff1bOpen XML File Format Converter for Mac\uff1b\u4ee5\u53ca Microsoft Excel Viewer\u3001Microsoft Office Compatibility Pack\u3001SharePoint Server 2007 \u4e0a\u5b89\u88c5\u7684 Microsoft Excel Services\u3001SharePoint Server 2010 \u4e0a\u5b89\u88c5\u7684 Microsoft Excel Services \u548c Microsoft Excel Web App 2010 \u7684\u6240\u6709\u53d7\u652f\u6301\u7248\u672c\u3002 <\/strong>\u6b64\u66f4\u65b0\u901a\u8fc7\u66f4\u6b63 Microsoft Excel \u7ba1\u7406\u5185\u5b58\u4e2d\u7684\u5bf9\u8c61\u3001\u4e3a\u5185\u5b58\u4f4d\u7f6e\u4e2d\u7684\u6570\u7ec4\u7f16\u5236\u7d22\u5f15\u3001\u5206\u6790 Excel \u6587\u4ef6\u4e2d\u7684\u7279\u5b9a\u8bb0\u5f55\u3001\u5904\u7406\u7279\u6b8a\u7c7b\u578b\u7684\u6761\u4ef6\u8868\u8fbe\u5f0f\u4ee5\u53ca\u5bf9\u6570\u7ec4\u7d22\u5f15\u503c\u6267\u884c\u754c\u9650\u68c0\u67e5\u7684\u65b9\u5f0f\u6765\u89e3\u51b3\u6f0f\u6d1e\u3002<br \/>\n<!--more--><br \/>\n\u5efa\u8bae\u3002 \u5ba2\u6237\u53ef\u4ee5\u914d\u7f6e\u81ea\u52a8\u66f4\u65b0\uff0c\u4ee5\u4f7f\u7528 Microsoft Update \u670d\u52a1\u4ece Microsoft Update \u8054\u673a\u68c0\u67e5\u66f4\u65b0\u3002\u542f\u7528\u4e86\u81ea\u52a8\u66f4\u65b0\u4e14\u914d\u7f6e\u4e3a\u4ece Microsoft Update \u8054\u673a\u68c0\u67e5\u66f4\u65b0\u7684\u5ba2\u6237\u901a\u5e38\u4e0d\u9700\u8981\u6267\u884c\u4efb\u4f55\u64cd\u4f5c\uff0c\u56e0\u4e3a\u6b64\u5b89\u5168\u66f4\u65b0\u5c06\u81ea\u52a8\u4e0b\u8f7d\u548c\u5b89\u88c5\u3002\u5c1a\u672a\u542f\u7528\u81ea\u52a8\u66f4\u65b0\u7684\u5ba2\u6237\u9700\u8981\u4ece Microsoft Update \u68c0\u67e5\u66f4\u65b0\uff0c\u5e76\u624b\u52a8\u5b89\u88c5\u6b64\u66f4\u65b0\u3002\u6709\u5173 Windows XP \u548c Windows Server 2003 \u53d7\u652f\u6301\u7248\u672c\u4e2d\u81ea\u52a8\u66f4\u65b0\u4e2d\u7684\u7279\u5b9a\u914d\u7f6e\u9009\u9879\u7684\u4fe1\u606f\uff0c\u8bf7\u53c2\u9605 Microsoft \u77e5\u8bc6\u5e93\u6587\u7ae0 294871\u3002\u6709\u5173 Windows Vista\u3001Windows Server 2008\u3001Windows 7 \u548c Windows Server 2008 R2 \u7684\u53d7\u652f\u6301\u7248\u672c\u4e2d\u81ea\u52a8\u66f4\u65b0\u7684\u4fe1\u606f\uff0c\u8bf7\u53c2\u9605\u4e86\u89e3 Windows \u81ea\u52a8\u66f4\u65b0\u3002<\/p>\n<p>\u5bf9\u4e8e\u7ba1\u7406\u5458\u3001\u4f01\u4e1a\u5b89\u88c5\u6216\u8005\u60f3\u8981\u624b\u52a8\u5b89\u88c5\u6b64\u5b89\u5168\u66f4\u65b0\u7684\u6700\u7ec8\u7528\u6237\uff0cMicrosoft \u5efa\u8bae\u5ba2\u6237\u4f7f\u7528\u66f4\u65b0\u7ba1\u7406\u8f6f\u4ef6\u5c3d\u65e9\u5e94\u7528\u6b64\u66f4\u65b0\u6216\u8005\u5229\u7528 Microsoft Update \u670d\u52a1\u68c0\u67e5\u66f4\u65b0\u3002<\/p>\n<p>\u53e6\u8bf7\u53c2\u9605\u672c\u516c\u544a\u540e\u9762\u90e8\u5206\u4e2d\u7684\u201c\u68c0\u6d4b\u548c\u90e8\u7f72\u5de5\u5177\u53ca\u6307\u5bfc\u201d\u4e00\u8282\u3002<\/p>\n<p>\u5df2\u77e5\u95ee\u9898\u3002 Microsoft \u77e5\u8bc6\u5e93\u6587\u7ae0 2587505 \u4ecb\u7ecd\u4e86\u5ba2\u6237\u5728\u5b89\u88c5\u6b64\u5b89\u5168\u66f4\u65b0\u65f6\u53ef\u80fd\u9047\u5230\u7684\u5f53\u524d\u5df2\u77e5\u95ee\u9898\u3002\u672c\u6587\u8fd8\u4ecb\u7ecd\u4e86\u8fd9\u4e9b\u95ee\u9898\u7684\u5efa\u8bae\u89e3\u51b3\u529e\u6cd5\u3002\u5728\u5f53\u524d\u5df2\u77e5\u95ee\u9898\u548c\u5efa\u8bae\u89e3\u51b3\u529e\u6cd5\u4ec5\u9002\u7528\u4e8e\u6b64\u8f6f\u4ef6\u7684\u7279\u5b9a\u7248\u672c\u65f6\uff0c\u6b64\u6587\u7ae0\u8fd8\u63d0\u4f9b\u5176\u4ed6\u6587\u7ae0\u7684\u94fe\u63a5\u3002<\/p>\n<p><strong>English Version<\/strong><br \/>\n<a href=\"http:\/\/www.microsoft.com\/technet\/security\/bulletin\/MS11-072.mspx\" target=\"_blank\">http:\/\/www.microsoft.com\/technet\/security\/bulletin\/MS11-072.mspx<\/a><\/p>\n<p><strong>\u7b80\u4f53\u4e2d\u6587\u7248<\/strong><br \/>\n<a href=\"http:\/\/www.microsoft.com\/china\/technet\/security\/bulletin\/MS11-072.mspx\" target=\"_blank\">http:\/\/www.microsoft.com\/china\/technet\/security\/bulletin\/MS11-072.mspx<\/a><\/p>\n<p>&nbsp;<\/p>\n<!-- AddThis Advanced Settings generic via filter on the_content --><!-- AddThis Share Buttons generic via filter on the_content -->","protected":false},"excerpt":{"rendered":"<p>\u6b64\u5b89\u5168\u66f4\u65b0\u89e3\u51b3 Microsoft Office \u4e2d\u4e94\u4e2a\u79d8\u5bc6\u62a5\u544a\u7684\u6f0f\u6d1e\u3002\u5982\u679c\u7528\u6237\u6253\u5f00\u7279\u5236\u7684 Excel \u6587\u4ef6\uff0c\u8fd9\u4e9b\u6f0f\u6d1e\u53ef\u80fd\u5141\u8bb8\u8fdc\u7a0b\u6267\u884c\u4ee3\u7801\u3002\u6210\u529f\u5229\u7528\u8fd9\u4e9b\u6f0f\u6d1e\u7684\u653b\u51fb\u8005\u53ef\u4ee5\u83b7\u5f97\u4e0e\u767b\u5f55\u7528\u6237\u76f8\u540c\u7684\u7528\u6237\u6743\u9650\u3002\u90a3\u4e9b\u5e10\u6237\u88ab\u914d\u7f6e\u4e3a\u62e5\u6709\u8f83\u5c11\u7cfb\u7edf\u7528\u6237\u6743\u9650\u7684\u7528\u6237\u6bd4\u5177\u6709\u7ba1\u7406\u7528\u6237\u6743\u9650\u7684\u7528\u6237\u53d7\u5230\u7684\u5f71\u54cd\u8981\u5c0f\u3002\u5b89\u88c5\u548c\u914d\u7f6e Office \u6587\u4ef6\u9a8c\u8bc1 (OFV) \u53ef\u9632\u6b62\u6253\u5f00\u53ef\u7591\u7684\u6587\u4ef6\uff0c\u4ece\u800c\u963b\u6b62\u5229\u7528 CVE-2011-1986 \u548c CVE-2011-1987 \u4e2d\u7684\u6f0f\u6d1e\u7684\u653b\u51fb\u5a92\u4ecb\u3002\u6709\u5173\u5982\u4f55\u914d\u7f6e Office \u6587\u4ef6\u9a8c\u8bc1\u529f\u80fd\u4ee5\u963b\u6b62\u653b\u51fb\u5a92\u4ecb\u7684\u8be6\u7ec6\u4fe1\u606f\uff0c\u8bf7\u53c2\u9605\u5c0f\u8282\u201c\u4e0e\u6b64\u5b89\u5168\u66f4\u65b0\u76f8\u5173\u7684\u5e38\u89c1\u95ee\u9898 (FAQ)\u201d\u3002 \u5bf9\u4e8e\u4ee5\u4e0b\u8f6f\u4ef6\uff0c\u6b64\u5b89\u5168\u66f4\u65b0\u7684\u7b49\u7ea7\u4e3a\u201c\u91cd\u8981\u201d\uff1aMicrosoft Excel 2003\u3001Microsoft&#8230;<!-- AddThis Advanced Settings generic via filter on get_the_excerpt --><!-- AddThis Share Buttons generic via filter on get_the_excerpt --><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[792],"tags":[293],"_links":{"self":[{"href":"http:\/\/down.cdhaha.net\/index.php?rest_route=\/wp\/v2\/posts\/601"}],"collection":[{"href":"http:\/\/down.cdhaha.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/down.cdhaha.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/down.cdhaha.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/down.cdhaha.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=601"}],"version-history":[{"count":0,"href":"http:\/\/down.cdhaha.net\/index.php?rest_route=\/wp\/v2\/posts\/601\/revisions"}],"wp:attachment":[{"href":"http:\/\/down.cdhaha.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=601"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/down.cdhaha.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=601"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/down.cdhaha.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=601"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}