Security Advisories

Critical Buffer Overflow in Windows Clients & Servers

November 20, 2002

Microsoft has released security bulletin MS02-065 to address a very serious vulnerability affecting both Windows PCs and servers. A buffer overflow exists in Microsoft Data Access Components, which is installed on Windows XP, 2000, and Me by default and also comes with several applications for NT 4.0. By sending a malformed HTTP request to an […]

Microsoft Releases IIS Security Alert/ Update

November 4, 2002

Microsoft has issued a security bulletin addressing ten vulnerabilities in IIS versions 4 through 5.1. Three of these holes are marked as critical – they range from remote buffer overflows to denial of service and cross-site-scripting. We highly recommend all IIS administrators download this immediately since exploits are already available for several of these vulnerabilities.

New Cumulative Patch for IIS

October 31, 2002

Microsoft has issued a new roll-up patch for Internet Information Server 4.0 through 5.1 in security bulletin MS02-062. The update includes all previously released fixes for IIS; in addition, it also patches four new vulnerabilities. Most of these holes are low to moderate risk issues – none of them allow remote command execution or system […]

« Older Entries   Newer Entries »