PPRuNe Forums - View Single Post - Latest Microsoft Security Vulnerabilities...
Old 16th October 2003 | 18:04
  #1 (permalink)  
RomeoTangoFoxtrotMike
20 Anniversary
 
Joined: Mar 2002
Posts: 448
Likes: 0
From: London, UK
Exclamation Latest Microsoft Security Vulnerabilities...

Yippee, the latest batch of Microsoft Security vulnerabilities...

( Ob Disclaimer: this information has been culled from Microsoft and is provided to Pruners as-is to help them keep ahead of the game. As with all "security alerts", you should satisfy yourself that it's genuine, suitable and applicable to your circumstances -- just like flight planning. )

Having got that over with...

Microsoft have just released 5 new security alerts:-

MS03-041
MS03-042
MS03-043
MS03-044
MS03-045

The first 4 are classed as critical, while the last one merely urgent.



Microsoft Security Bulletin MS03-041

Vulnerability in Authenticode Verification Could Allow Remote Code Execution (823182)


Affected Software:

Microsoft Windows NT Workstation 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Terminal Server Edition
Microsoft Windows 2000, Service Pack 2 - Download the patch
Microsoft Windows 2000, Service Pack 3, Service Pack 4
Microsoft Windows XP Gold, Service Pack 1
Microsoft Windows XP 64-bit Edition
Microsoft Windows XP 64-bit Edition Version 2003
Microsoft Windows Server 2003
Microsoft Windows Server 2003 64-bit Edition

Non Affected Software:

Microsoft Windows Millennium Edition

The software listed above has been tested to determine if the versions are affected. Other versions are no longer supported, and may or may not be affected.



Microsoft Security Bulletin MS03-042

Buffer Overflow in Windows Troubleshooter ActiveX Control Could Allow Code Execution (826232)


Affected Software:

Microsoft Windows 2000, Service Pack 2
Microsoft Windows 2000, Service Pack 3, Service Pack 4

Non Affected Software:

Microsoft Windows NT 4.0
Microsoft Windows NT Server 4.0, Terminal Server Edition
Microsoft Windows Millennium Edition
Microsoft Windows XP
Microsoft Windows Server 2003
The software listed above has been tested to determine if the versions are affected. Other versions are no longer supported, and may or may not be affected.


Microsoft Security Bulletin MS03-043

Buffer Overrun in Messenger Service Could Allow Code Execution (828035)

Affected Software:

Microsoft Windows NT Workstation 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Terminal Server Edition, Service Pack 6
Microsoft Windows 2000, Service Pack 2
Microsoft Windows 2000, Service Pack 3, Service Pack 4
Microsoft Windows XP Gold, Service Pack 1
Microsoft Windows XP 64-bit Edition
Microsoft Windows XP 64-bit Edition Version 2003
Microsoft Windows Server 2003
Microsoft Windows Server 2003 64-bit Edition

Non Affected Software:

Microsoft Windows Millennium Edition


Microsoft Security Bulletin MS03-044

Buffer Overrun in Windows Help and Support Center Could Lead to System Compromise

Affected Software:

Microsoft Windows Millennium Edition
Microsoft Windows NT Workstation 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Terminal Server Edition, Service Pack 6
Microsoft Windows 2000, Service Pack 2
Microsoft Windows 2000, Service Pack 3, Service Pack 4
Microsoft Windows XP Gold, Service Pack 1
Microsoft Windows XP 64-bit Edition
Microsoft Windows XP 64-bit Edition Version 2003
Microsoft Windows Server 2003
Microsoft Windows Server 2003 64-bit Edition

Non Affected Software:

None

The software listed above has been tested to determine if the versions are affected. Other versions are no longer supported, and may or may not be affected.


Microsoft Security Bulletin MS03-045

Buffer Overrun in the ListBox and in the ComboBox Control Could Allow Code Execution (824141)

Affected Software:

Microsoft Windows NT Workstation 4.0, Service Pack 6a – Download the patch
Microsoft Windows NT Server 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Terminal Server Edition, Service Pack 6
Microsoft Windows 2000, Service Pack 2
Microsoft Windows 2000 Service Pack 3, Service Pack 4
Microsoft Windows XP Gold, Service Pack 1
Microsoft Windows XP 64 bit Edition
Microsoft Windows XP 64 bit Edition Version 2003
Microsoft Windows Server 2003
Microsoft Windows Server 2003 64 bit Edition

Non Affected Software:

Microsoft Windows Millennium Edition

Last edited by RomeoTangoFoxtrotMike; 16th October 2003 at 18:15.
RomeoTangoFoxtrotMike is offline