{"id":191377,"date":"2017-06-14T00:45:11","date_gmt":"2017-06-13T22:45:11","guid":{"rendered":"http:\/\/www.borncity.com\/blog\/?p=191377"},"modified":"2024-07-21T02:45:32","modified_gmt":"2024-07-21T00:45:32","slug":"sicherheits-update-kb4024323-fr-windows-xp-server-2003","status":"publish","type":"post","link":"https:\/\/borncity.com\/blog\/2017\/06\/14\/sicherheits-update-kb4024323-fr-windows-xp-server-2003\/","title":{"rendered":"Sicherheits-Updates f&uuml;r Windows XP\/ Server 2003"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline; border-width: 0px;\" title=\"Update\" src=\"https:\/\/borncity.com\/blog\/wp-content\/uploads\/2015\/02\/Update.jpg\" alt=\"Windows Update\" width=\"40\" height=\"40\" align=\"left\" border=\"0\" \/>Am Juni 2017 Patchday hat Microsoft auch mehrere kritische Sicherheits-Update f\u00fcr Windows XP\/Server 2003 ausgerollt. Dieses sollen L\u00fccken, die eine Rechteerh\u00f6hung erm\u00f6glicht, schlie\u00dfen. <strong>Erg\u00e4nzung:<\/strong> Artikel umgeschrieben und um alle Updates erweitert.<\/p>\n<p><!--more--><\/p>\n<h2>Sonder-Updates f\u00fcr Windows XP\/Server 2003<\/h2>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/ssl-vg03.met.vgwort.de\/na\/c719fe1348804d02b4b73727b4362926\" alt=\"\" width=\"1\" height=\"1\" \/>Im Blog-Beitrag <a href=\"https:\/\/borncity.com\/blog\/2017\/06\/14\/microsoft-sicherheits-advisory-juni-2017\/\">Microsoft Sicherheits-Advisory Juni 2017<\/a> hatte ich auf gr\u00f6\u00dfere Schwachstellen im Bereich Netzwerkfunktionen (SMBv2, WebDAV, Kerberos, SMB Server, RDP etc.) hingewiesen. Diese Schwachstellen finden sich auch in \u00e4lteren Windows-Versionen wie Windows XP und Windows Server 2003 (sowie Vista und Windows 8), die aus dem Support gefallen sind.<\/p>\n<p>In <a href=\"https:\/\/web.archive.org\/web\/20190428145722\/https:\/\/blogs.technet.microsoft.com\/msrc\/2017\/06\/13\/june-2017-security-update-release\/\" target=\"_blank\" rel=\"noopener noreferrer\">diesem MSRT-Blog-Beitrag<\/a> weist Microsoft darauf hin, dass man zus\u00e4tzliche, kritische Sicherheits-Updates auch f\u00fcr \u00e4ltere Plattformen (die sich im dem sogenannten Custom-Support gegen Bezahlung befinden) allgemein freigibt.<\/p>\n<blockquote><p>Today, as part of our regular Update Tuesday schedule, we have taken action to provide additional critical security updates to address vulnerabilities that are at heightened risk of exploitation due to past nation-state activity and disclosures. Some of the releases today are new, and some are for older platforms under custom support agreements, that we are making publicly available today. Customers with automatic updates enabled are protected and there is no additional action required. For customers managing updates, or those on older platforms, we encourage them to apply these updates as soon as possible.<\/p><\/blockquote>\n<p>Von Adrienne Hall, General Manager Crisis Management bei Microsoft hat wohl folgende Stellungnahme abgegeben.<\/p>\n<blockquote><p>In reviewing the updates for this month, some vulnerabilities were identified that pose elevated risk of cyberattacks by government organizations, sometimes referred to as nation-state actors, or other copycat organizations. To address this risk, today we are providing additional security updates along with our regular Update Tuesday service. These security updates are being made available to all customers, including those using older versions of Windows.<\/p><\/blockquote>\n<p>Es gibt bei beiden Quellen, den Hinweis, dass die keine Abkehr von der Politik bedeutete, dass Betriebssysteme nach dem Support-Ende keine \u00f6ffentlichen Updates mehr erhalten. Hier w\u00fcrde ich sagen WannaCry l\u00e4sst gr\u00fc\u00dfen. Daher sind die Updates auch manuell per Download Center oder Microsoft Update Catalog herunterzuladen<\/p>\n<h2>Update KB4024323<\/h2>\n<p>Microsoft hat nicht sehr viele Details zu <a href=\"https:\/\/web.archive.org\/web\/20200420173237\/https:\/\/support.microsoft.com\/en-us\/help\/4024323\/security-update-of-windows-xp-and-windows-server-2003\/\" target=\"_blank\" rel=\"noopener noreferrer\">KB4024323<\/a>, welches f\u00fcr Windows XP\/ Server 2003 und Windows XP Embedded bereitgestellt wird, publiziert. Im <a href=\"http:\/\/www.catalog.update.microsoft.com\/search.aspx?q=4024323\" target=\"_blank\" rel=\"noopener noreferrer\">Update Catalog<\/a> hei\u00dft es lediglich:<\/p>\n<blockquote><p>A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.<\/p><\/blockquote>\n<p>Geht man aber in das Dokument <a href=\"https:\/\/support.microsoft.com\/en-us\/help\/4025687\/microsoft-security-advisory-4025685-guidance-for-older-platforms\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft security advisory 4025685: Guidance for older platforms: June 13, 2017<\/a> werden Einzelheiten klar. Im Update wird das Sicherheits-Advisory CVE-2017-7269 adressiert. \u00dcber die Links der CVEs gibt es weitere Informationen zur Sicherheitsl\u00fccken. Es handelt sich um die <a href=\"https:\/\/web.archive.org\/web\/20200420173237\/https:\/\/support.microsoft.com\/en-us\/help\/4024323\/security-update-of-windows-xp-and-windows-server-2003\/\" target=\"_blank\" rel=\"noopener noreferrer\">Windows RPC remote code execution vulnerability<\/a>-Schwachstelle.<\/p>\n<p>Das Dokument <a href=\"https:\/\/support.microsoft.com\/en-us\/help\/4025687\/microsoft-security-advisory-4025685-guidance-for-older-platforms\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft security advisory 4025685: Guidance for older platforms: June 13, 2017<\/a> f\u00fchrt auch die adressierten Sicherheitsl\u00fccken f\u00fcr Windows Server 2003 auf.<\/p>\n<p>Das Update steht nur \u00fcber den <a href=\"http:\/\/catalog.update.microsoft.com\/v7\/site\/search.aspx?q=4024323\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Update Catalog<\/a> oder das Microsoft Download Center zur Verf\u00fcgung. Hier die Download-Adressen aus dem Microsoft Download Center:<\/p>\n<p>Windows Server 2003 (x86): Download<br \/>\nWindows Server 2003 (x64): Download<\/p>\n<p>Windows XP (x86): Download<br \/>\nWindows XP (x64): Download<br \/>\nWindows XP Embedded: Download<\/p>\n<h2>Update KB2347290<\/h2>\n<p>Dieses Update f\u00fcr Windows XP SP3 und Windows Server 2003 adressiert die Sicherheitsl\u00fccke MS10-061 (Vulnerability in Print Spooler Service Could Allow Remote Code Execution (2347290)). Das Update finden sich im <a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=KB2347290%20windows%20xp\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft Update Catalog<\/a>.<\/p>\n<h2>Update KB4012598<\/h2>\n<p>Das Update f\u00fcr Windows XP SP3 und Windows Server 2003 adressiert die Sicherheitsl\u00fccke <a href=\"https:\/\/technet.microsoft.com\/library\/security\/ms17-010.aspx\" target=\"_blank\" rel=\"noopener noreferrer\">MS17-010<\/a><u><\/u> (Security Update for Microsoft Windows SMB Server (4013389)). Das Update finden sich im Download Center:<\/p>\n<p><a href=\"https:\/\/web.archive.org\/web\/20170918033512\/http:\/\/www.microsoft.com:80\/en-us\/download\/details.aspx?id=55245\" target=\"_blank\" rel=\"noopener noreferrer\">Windows XP SP3 32 Bit<\/a><br \/>\n<a href=\"https:\/\/web.archive.org\/web\/20210227140141\/https:\/\/www.microsoft.com\/en-us\/download\/details.aspx?id=55250\" target=\"_blank\" rel=\"noopener noreferrer\">Windows XP SP2 64 Bit<\/a><br \/>\n<a href=\"https:\/\/www.microsoft.com\/en-us\/download\/details.aspx?id=55244\" target=\"_blank\" rel=\"noopener noreferrer\">Windows Server 2003<\/a><\/p>\n<h2>Update KB958644<\/h2>\n<p>Update KB958644 f\u00fcr Windows XP SP3 und Windows Server 2003 adressiert die Sicherheitsl\u00fccke <a href=\"https:\/\/technet.microsoft.com\/library\/security\/ms08-067.aspx\" target=\"_blank\" rel=\"noopener noreferrer\">MS08-067<\/a><u><\/u><u><\/u> (Vulnerability in Server Service Could Allow Remote Code Execution (958644)). Das Update finden sich im Download Center.<\/p>\n<p>Windows XP SP3 32 Bit<br \/>\n<a href=\"https:\/\/web.archive.org\/web\/20200813045606\/https:\/\/www.microsoft.com\/en-us\/download\/details.aspx?id=21663\" target=\"_blank\" rel=\"noopener noreferrer\">Windows XP SP2 64 Bit<\/a><br \/>\n(gebrochen)<\/p>\n<h2>Update KB4012583<\/h2>\n<p>Das Update KB958644 f\u00fcr Windows XP SP3 und Windows Server 2003 adressiert die Sicherheitsl\u00fccke <a href=\"https:\/\/technet.microsoft.com\/library\/security\/ms17-013.aspx\" target=\"_blank\" rel=\"noopener noreferrer\">MS17-013<\/a><u><\/u> (Security Update for Microsoft Graphics Component (4013075)). Das Update finden sich im Download Center.<\/p>\n<p><a href=\"https:\/\/www.microsoft.com\/en-us\/download\/details.aspx?id=55460\" target=\"_blank\" rel=\"noopener noreferrer\">Windows XP SP3 32 Bit<\/a><br \/>\nWindows XP SP2 64 Bit<br \/>\n<a href=\"https:\/\/www.microsoft.com\/en-us\/download\/details.aspx?id=55419\" target=\"_blank\" rel=\"noopener noreferrer\">Windows Server 2003<\/a><\/p>\n<p>Danke an Kim f\u00fcr den Hinweis im erg\u00e4nzenden Kommentar.<\/p>\n<h2>Weitere Sicherheits-Updates f\u00fcr Windows XP\/Server 2003<\/h2>\n<p>An dieser Stelle noch ein weiterer Hinweis. Dokument <a href=\"https:\/\/support.microsoft.com\/en-us\/help\/4025687\/microsoft-security-advisory-4025685-guidance-for-older-platforms\" target=\"_blank\" rel=\"noopener noreferrer\">Microsoft security advisory 4025685: Guidance for older platforms: June 13, 2017<\/a> kann man den Abschnitt 'Older platforms table 1 of 3' durchgehen. Dort findet man weitere Updates f\u00fcr Windows XP und Windows Server 2003, die kritische Sicherheitsl\u00fccken schlie\u00dfen. Nachfolgend eine komprimierte Aufstellung mit Links zu den betreffenden Paketen.<\/p>\n<p>Windows XP Service Pack 3: 958644<u><\/u>, <a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=KB2347290%20windows%20xp\" target=\"_blank\" rel=\"noopener noreferrer\">2347290<\/a><u><\/u>, 4012598<u><\/u>, 4012583 (gel\u00f6scht)<u><\/u><\/p>\n<p>Microsoft Windows XP Professional x64 Edition Service Pack 2: 958644<u><\/u>, 2347290<u><\/u>, 4012598<u><\/u>, 4012583<u><\/u><\/p>\n<p>Windows Server 2003 x64 Edition Service Pack 2: (gebrochen)<u><\/u>, 2347290<u><\/u>, 3011780<u><\/u>, 4012598<u><\/u>, 4012583<u><\/u>.<\/p>\n<p>Windows XP Service Pack 3: 4022747<u><\/u>, Internet Explorer 8 4018271<u><\/u>, 4018466<u><\/u>, 3197835<u><\/u>, 4024323 (gebrochen)<u><\/u><\/p>\n<p>Microsoft Windows XP Professional x64 Edition Service Pack 2: 4022747 (Entfernt)<u><\/u>, Internet Explorer 8 4018271<u><\/u>, 4018466<u><\/u>, 3197835<u><\/u>, 4024323<u><\/u><\/p>\n<p>Windows Server 2003 Service Pack 2: 4022747<u><\/u>, 4018466<u><\/u>, 3197835 (entfernt)<u><\/u>. 4024323<u><\/u><\/p>\n<p>Windows Server 2003 x64 Edition Service Pack 2: 4022747<u><\/u>, 4018466<u><\/u>, 3197835<u><\/u>, 4024323<u><\/u><\/p>\n<p>Windows XP Service Pack 3: 4025218<u><\/u>, 4024402<u><\/u>, 4019204<u><\/u><\/p>\n<p>Microsoft Windows XP Professional x64 Edition Service Pack 2: 4025218<u><\/u>, 4024402<u><\/u>, 4019204<u><\/u><\/p>\n<p>Windows Server 2003 Service Pack 2: 4025218<u><\/u>, 4024402<u><\/u>, 4019204<u><\/u><\/p>\n<p>Windows Server 2003 x64 Edition Service Pack 2: 4025218<u><\/u>, 4024402<u><\/u>, 4019204<u><\/u><\/p>\n<p><strong>\u00c4hnliche Artikel:<br \/>\n<\/strong><a href=\"https:\/\/borncity.com\/blog\/2017\/06\/13\/juni-2017-patchday-kurzbersicht\/\">Microsoft Juni 2017 Patchday Kurz\u00fcbersicht<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/blog\/2017\/06\/14\/microsoft-sicherheits-advisory-juni-2017\/\">Microsoft Sicherheits-Advisory Juni 2017<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/blog\/2017\/06\/14\/patchday-juni-2017-updates-fr-windows-78-1\/\">Patchday Juni 2017: Updates f\u00fcr Windows 7\/8.1<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/blog\/2017\/06\/13\/patchday-juni-2017-updates-fr-windows10\/\">Patchday Juni 2017: Updates f\u00fcr Windows 10<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/blog\/2017\/06\/14\/office-sicherheits-updates-13-juni-2017\/\">Office Sicherheits-Updates (13. Juni 2017)<\/a><br \/>\n<a href=\"https:\/\/borncity.com\/blog\/2017\/06\/14\/weitere-sicherheits-updates-13-juni-2017\/\" rel=\"bookmark\">Weitere Sicherheits-Updates 13. Juni 2017<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Am Juni 2017 Patchday hat Microsoft auch mehrere kritische Sicherheits-Update f\u00fcr Windows XP\/Server 2003 ausgerollt. Dieses sollen L\u00fccken, die eine Rechteerh\u00f6hung erm\u00f6glicht, schlie\u00dfen. Erg\u00e4nzung: Artikel umgeschrieben und um alle Updates erweitert.<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2557],"tags":[6276,6278,6171,6275,6277,4328,6273,6274,4342],"class_list":["post-191377","post","type-post","status-publish","format-standard","hentry","category-windows-server","tag-kb2347290","tag-kb4012583","tag-kb4012598","tag-kb4024323","tag-kb958644","tag-sicherheit","tag-updae","tag-windows-server-2013","tag-windows-xp"],"_links":{"self":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts\/191377","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/comments?post=191377"}],"version-history":[{"count":0,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts\/191377\/revisions"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/media?parent=191377"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/categories?post=191377"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/tags?post=191377"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}