Windows Server 2008 R2 2019年8月月度更新需要注意的重大BUG问题(红字部分)

KB4512506为Windows 7 SP1和Windows Server 2008 R2 SP1提供了安全性更新,修复了包括应用平台、无线网络、虚拟化等多个组件的问题。此次更新还解决了特定设备启动失败、VBScript禁用不完全及与Symantec或Norton软件交互可能引发的问题。

August 13, 2019—KB4512506 (Monthly Rollup)

Applies to: Windows 7 Service Pack 1Windows Server 2008 R2 Service Pack 1


Release Date:

August 13, 2019

 

Version:

Monthly Rollup

IMPORTANT Verify that you have installed the recommended updates listed in the How to get this update section before installing this update. For all updates starting with August 13, 2019, we strongly recommend that you install these updates to prevent any issues.

Improvements and fixes


This security update includes improvements and fixes that were a part of update KB4507437 (released July 16, 2019) and addresses the following issues:

  • Security updates to Windows App Platform and Frameworks, Windows Wireless Networking, Windows Storage and Filesystems, Windows Virtualization, Windows Datacenter Networking, Microsoft Scripting Engine, the Microsoft JET Database Engine, Windows Input and Composition, Windows MSXML, Internet Explorer, and Windows Server.

For more information about the resolved security vulnerabilities, please refer to the Security Update Guide.

Known issues in this update


SymptomWorkaround
Devices that start up using Preboot Execution Environment (PXE) images from Windows Deployment Services (WDS) or System Center Configuration Manager (SCCM) may fail to start with the error "Status: 0xc0000001, Info: A required device isn't connected or can't be accessed" after installing this update on a WDS server.

This issue is resolved in KB4512514.

IA64 devices (in any configuration) and x64 devices using EFI boot that were provisioned after the July 9th updates and/or skipped the recommended update (KB3133977), may fail to start with the following error:

"File: \Windows\system32\winload.efi

Status: 0xc0000428

Info: Windows cannot verify the digital signature for this file."

To resolve this issue please follow the steps outlined in the SHA-2 support FAQ article for error code 0xc0000428.

Symantec identified the potential for a negative interaction that may occur after Windows Updates code signed with SHA-2 only certificates are installed on devices with Symantec or Norton antivirus programs installed. The software may not correctly identify files included in the update as code signed by Microsoft, putting the device at risk for a delayed or incomplete update.

The safeguard hold has been removed. Symantec has completed its evaluation of the impact of this update and future updates to Windows 7 and Windows 2008 R2. Symantec has determined that there is no increased risk of a false positive detection for all in-field versions of Symantec Endpoint Protection and Norton antivirus programs. See the Symantec support article for additional details and please reach out to Symantec or Norton support if you encounter any issues.

After installing this update, applications that were made using Visual Basic 6 (VB6), macros using Visual Basic for Applications (VBA), and scripts or apps using Visual Basic Scripting Edition (VBScript) may stop responding and you may receive an "invalid procedure call error."This issue is resolved in KB4517297, which is an optional update. It is now available on Microsoft Update Catalog and Windows Server Update Services (WSUS).
VBScript in Internet Explorer 11 should be disabled by default after installing KB4507437 (Preview of Monthly Rollup) or KB4511872 (Internet Explorer Cumulative Update) and later. However, in some circumstances, VBScript may not be disabled as intended.

To mitigate this issue, follow these steps:

  1. In Internet Explorer 11 select the Tools icon or press and hold the alt key on your keyboard and press the letter x to see the menu.
  2. Select Internet Options.
  3. Select the Security tab.
  4. Select the Internet icon in the Select a zone to view or change security settings field.
  5. Select the Default Level button.
  6. Select the Ok button to accept settings and close the dialog.
  7. Close Internet Explorer 11. On the next start, VBScript will be disabled.
We are working on a resolution and will provide an update in an upcoming release.

How to get this update


Before installing this update

Microsoft strongly recommends that you install the updates listed below and restart your device before installing the latest Rollup. Installing these updates improves the reliability of the update process and mitigates potential issues while installing the Rollup.

  1. The latest servicing stack update (SSU) (KB4490628). If you are using Windows Update, the latest SSU will be offered to you automatically. To get the standalone package for the latest SSU, search for it in the Microsoft Update Catalog
  2. The latest SHA-2 update (KB4474419) released August 13, 2019. If you are using Windows Update, the latest SHA-2 update will be offered to you automatically. For more information on SHA-2 updates, see 2019 SHA-2 Code Signing Support requirement for Windows and WSUS.
  3. If you are using EFI Boot on your device or virtual machine (VM), you must also install KB3133977. Currently, KB3133977 is required as a workaround for a known issue when using EFI Boot and should be applied even if you are not using BitLocker.  For more information on this update, see the frequently asked questions in 2019 SHA-2 Code Signing Support requirement for Windows and WSUS.

 

Install this update

Release ChannelAvailableNext Step
Windows Update and Microsoft UpdateYesNone. This update will be downloaded and installed automatically from Windows Update.
Microsoft Update CatalogYesTo get the standalone package for this update, go to the Microsoft Update Catalog.
Windows Server Update Services (WSUS)Yes

This update will automatically synchronize with WSUS if you configure Products and Classifications as follows:

Product:  Windows 7 Service Pack 1, Windows Server 2008 R2 Service Pack 1

Classification: Security Updates

 

File information

For a list of the files that are provided in this update, download the file information for update 4512506

源码直接下载地址: https://pan.quark.cn/s/7bca15bc3872 标题中所提及的“Win7+32位操作系统:补丁kb4490628和kb4474419.rar”具体指向针对Windows 7 32位版本的两个关键安全补丁,即KB4490628与KB4474419。这些补丁主要应用于修正系统存在的安全漏洞,从而增强系统的防护能力,并处理用户在使用过程中可能遭遇的特定故障。KB4490628是由微软发布的一项综合安全补丁,其整合了此前所有针对Windows 7的升级内容,致力于提升系统的整体安全防护水平及运行稳定性。该补丁可能包含对操作系统核心模块的安全强化措施,涉及Windows Shell、Internet Explorer、Microsoft Edge、Windows App平台和框架、Windows Fundamentals、Windows Management、Windows Authentication、Windows Input和Composition等多个领域。仅如此,它还致力于纠正已知可能导致系统崩溃、运行效率降低或数据遗失的问题。KB4474419同样是一项重要的安全升级,其核心任务是针对Windows 7环境中的安全薄弱环节进行修补。此类安全漏洞存在被恶意行为者利用的风险,可能被用于远程代码执行、权限提升或其他恶意行为。KB4474419或许修复了操作系统中的多个关键组件,涵盖网络堆栈、图形渲染引擎、Windows内核模式驱动程序等。用户通过部署该补丁,能够有效抵御潜在的黑客攻击,确保个人数据的安全。根据描述,若在安装Visual Studio 2019(VS2019)时遭遇阻碍,例如安装流程停滞或出现循环状态,推荐首先...
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值