安全通報資訊
※安全通報資訊
安全通報類型
微軟安全通報
發佈日期
2026-04-17
標題
【漏洞預警】微軟釋出115年4月份安全性更新
CVE
BID
影響平台
影響平台-系統 ● Azure Logic Apps ● Microsoft Power App ● Remote Desktop Client ● SQL Server ● NET ● NET Framework ● NET and Visual Studio ● NET, .NET Framework, Visual Studio ● Applocker Filter Driver (applockerfltr.sys) ● Azure Monitor Agent ● Desktop Window Manager ● Function Discovery Service (fdwsd.dll) ● GitHub Copilot and Visual Studio Code 影響平台-軟體 ● Windows Advanced Rasterization Platform ● Windows IKE Extension ● Windows Push Notifications ● Windows Shell ● Microsoft Brokering File System ● Microsoft Defender ● Microsoft Dynamics 365 (on-premises) ● Microsoft Edge (Chromium-based) ● Microsoft Graphics Component ● Microsoft High Performance Compute Pack (HPC) ● Microsoft Management Console ● Microsoft Office ● Microsoft Office Excel ● Microsoft Office PowerPoint ● Microsoft Office SharePoint ● Microsoft Office Word ● Microsoft PowerShell ● Microsoft Windows ● Microsoft Windows Search Component ● Microsoft Windows Speech ● Role: Windows Hyper-V ● Universal Plug and Play (upnp.dll) ● Windows Active Directory ● Windows Admin Center ● Windows Ancillary Function Driver for WinSock ● Windows Biometric Service ● Windows BitLocker ● Windows Boot Loader ● Windows Boot Manager ● Windows COM ● Windows Client Side Caching driver (csc.sys) ● Windows Cloud Files Mini Filter Driver ● Windows Common Log File System Driver ● Windows Container Isolation FS Filter Driver ● Windows Cryptographic Services ● Windows Encrypting File System (EFS) ● Windows File Explorer ● Windows GDI ● Windows HTTP.sys ● Windows Hello ● Windows Installer ● Windows Kerberos ● Windows Kernel ● Windows Kernel Memory ● Windows LUAFV ● Windows Local Security Authority Subsystem Service (LSASS) ● Windows Management Services ● Windows OLE ● Windows Print Spooler Components ● Windows Projected File System ● Windows RPC API ● Windows Recovery Environment Agent ● Windows Redirected Drive Buffering ● Windows Remote Desktop ● Windows Remote Desktop Licensing Service ● Windows Remote Procedure Call ● Windows SSDP Service ● Windows Sensor Data Service ● Windows Snipping Tool ● Windows Speech Brokered Api ● Windows Storage Spaces Controller ● Windows TCP/IP ● Windows TDI Translation Driver (tdx.sys) ● Windows USB Print Driver ● Windows Universal Plug and Play (UPnP) Device Host ● Windows User Interface Core ● Windows User Interface Core ● Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) ● Windows WalletService ● Windows Win32K - GRFX ● Windows Win32K - ICOMP
說明
發佈編號:TACERT-ANA-2026041709043535 (轉發 國家資安資訊分享與分析中心 資安訊息警訊 NISAC-200-202604-00000009) 微軟釋出115年4月份安全性更新,共修補165個漏洞,其中包含8個高風險漏洞與1個已遭利用之漏洞,請儘速確認並進行修補。 情資分享等級: WHITE(情資內容為可公開揭露之資訊)
解決方式
[建議措施:] 目前微軟官方已針對弱點釋出修復版本,請各機關可聯絡系統維護廠商或參考以下連結: https://msrc.microsoft.com/update-guide/releaseNote/2026-Apr [參考資料:] 1. https://msrc.microsoft.com/update-guide/releaseNote/2026-Apr
相關資訊連結
相關修正資訊連結