Microsoft 製品の脆弱性対策について(2026年7月)

Imported from official source

Announcement

2026年7月15日(日本時間)に Microsoft 製品に関するセキュリティ更新プログラム(月例)が公表されています。
これらの脆弱性を悪用された場合、アプリケーションプログラムが異常終了する、攻撃者によってパソコンを制御される、といった様々な被害が発生するおそれがあります。

この内 CVE-2026-56155、CVE-2026-56164 の脆弱性について、Microsoft 社では悪用の事実を確認済みと公表しており、今後被害が拡大するおそれがあるため、至急、セキュリティ更新プログラムを適用してください。

セキュリティ更新は通常自動で行われます。Windows Update を通じて、セキュリティ更新プログラムや重要な更新が自動的にダウンロードされインストールされます。
また、更新管理を行っている組織は Microsoft 社のセキュリティ更新プログラム(月例)の情報を参照の上、早期に更新の展開をしてください。

Windows Update からセキュリティ更新プログラムを確認いただけます。また、セキュリティ更新プログラムの適用は再起動が必要になることがあります。
Windows Update の利用方法については以下のサイトを参照してください。

  • Web コンテンツ内に HTML タグを記載することで、IPA から発信する「重要なセキュリティ情報」をリアルタイムに自組織内の Web サイト上などに表示できます。脆弱性対策の促進にご活用ください。
  • This is an extract. The publication continues at the source.

    Read the original at the source: https://www.ipa.go.jp/security/security-alert/2026/0715-ms.html

    Officially imported this from Information-technology Promotion Agency (IPA)’s own source and shows an extract. If you work there, claiming the profile and verifying the domain lets you choose to show the full text here.

    Provenance

    Organization
    Information-technology Promotion Agency (IPA) — imported from official source
    Official source
    https://www.ipa.go.jp/security/alert-rss.rdf RSS
    Imported
    October 03, 2026 20:39
    Versions
    1 recorded
    Identity
    https://www.ipa.go.jp/security/security-alert/2026/0715-ms.html

    Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.