|
microsoft: Patches/SP's: Microsoft releases three new updates |
|
|
There does not exist a category of science to which one can give the name
applied science. There are science and the applications of science.
Louis Pasteur (1822-95); French chemist.
- Microsoft releases three new updates -
Oxygen3 24h-365d, by Panda Software (http://www.pandasoftware.com)
Madrid, January 14, 2004 - Microsoft has reported(*) some vulnerabilities
affecting Exchange Server 2003, Microsoft Data Access Components (MDAC) and
ISA Server 2000, and has released the corresponding patches.
The most serious of the problems affects Microsoft Internet Security and
Acceleration Server 2000 (ISA Server 2000). Due to a buffer overflow in the
H.323 filter, a remote attacker could run code on the ISA servers with the
filter enable (a default option).
The vulnerability in Microsoft Data Access Components (MDAC) could allow
code to be run on client systems, when they launch a request to consult the
list of SQL servers in the network. The Exchange Server 2003 vulnerability
could allow, under certain circumstances, an Outlook Web Access(OWA) user,
random access to third parties' mailboxes.
(*) More information on these vulnerabilities, the versions affected and the
availability of patches released by Microsoft, is available at:
- http://www.microsoft.com/technet/security/bulletin/MS04-001.asp
- http://www.microsoft.com/technet/security/bulletin/MS04-002.asp
- http://www.microsoft.com/technet/security/bulletin/MS04-003.asp
NOTE: The addresses above may not show up on your screen as single lines.
This would prevent you from using the links to access the web pages. If this
happens, just use the 'cut' and 'paste' options to join the pieces of the
URL.
|
|
|
|
Posted on Thursday, 15 January 2004 @ 09:09:19 EST by phoenix22
|
|
|
|
|
Login |
|
|
|
|
|
· New User? ·
Click here to create a registered account.
|
|
|
Article Rating |
|
|
|
|
|
Average Score: 0
Votes: 0
|
|
|