目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2026-40058— CrowdStrike Falcon for Windows 漏洞

一分钟漏洞结论

影响对象
CrowdStrike Falcon sensor for Windows
利用判断
尚无明确在野利用证据,仍需结合暴露面评估
建议动作
优先检查厂商安全公告和参考链接中的修复版本;无法立即升级时,限制受影响服务暴露并加强监测。

CrowdStrike 已发布安全更新,以修复 Windows 版 Falcon 传感器中的漏洞。该漏洞仅在启用“Microsoft Office 文件恶意宏移除”Windows 策略设置时存在;在此情况下,客户通过“云恶意软件防护(针对 Microsoft Office 文件)”设置仍可保持受保护状态。 该更新已立即适用于 Windows 7/2008 R2 系统的 7.34 及以上版本、7.32 LTS 以及 7.16 版本。Mac、Linux 和旧系统版的 Falcon 传感器不受此漏洞影响。 该漏洞可能导致

CVSS 8.8 · High

可能的 ATT&CK 技术 1 AI

T1543 · Create or Modify System Process
获取后续新漏洞提醒 登录后订阅

一、 漏洞 CVE-2026-40058 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
Vulnerability Affecting Office Macro Removal in CrowdStrike Falcon Sensor for Windows
来源: CVE Program / CVE List V5
Vulnerability Description
CrowdStrike released a security update to address a vulnerability in the Falcon sensor for Windows. The vulnerability only exists when the Microsoft Office File Malicious Macro Removal Windows policy setting is enabled and customers remain protected through the Cloud Anti-malware for Microsoft Office Files settings. An update is available immediately for versions 7.34 and above, 7.32 LTS, and 7.16 for Windows 7/2008 R2 systems. The Falcon sensor for Mac, Linux, and Legacy Systems are not affected.  This vulnerability could expose an arbitrary file write to protected locations from an unprivileged context, potentially leading to local privilege escalation. The CrowdStrike Laroux Malware Cleanup Tool, based off of the same feature in the CrowdStrike Falcon sensor for Windows, is also affected. An update for this tool is also available immediately.
来源: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
来源: CVE Program / CVE List V5
Vulnerability Type
检查时间与使用时间(TOCTOU)的竞争条件
来源: CVE Program / CVE List V5

受影响产品

厂商 产品 影响版本 CPE 订阅
CrowdStrike Falcon sensor for Windows 8.10.0 ~ 8.10.21408 -
CrowdStrike Falcon sensor for Windows 7.16.0 ~ 7.16.18644 -
CrowdStrike Laroux Cleanup Tool 1.0.20 ~ 1.4.70.0 -

二、漏洞 CVE-2026-40058 的公开POC

# POC 描述 源链接 神龙链接
AI 生成 POC 高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2026-40058 的情报信息

登录查看更多情报信息。

CVE-2026-40058 厂商安全公告 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2026-40058

暂无评论


发表评论