This is a read-only archive. No new posts or registrations. Privacy Page
Discussion

Ms Security Bulletin Summary For April 2005

2 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

FYI…

- http://www.microsoft.com/technet/security/…n/ms05-apr.mspx
April 12, 2005

5 Critical
————-
MS05-019
- http://www.microsoft.com/technet/security/…n/MS05-019.mspx
"Vulnerabilities in TCP/IP Could Allow Remote Code Execution and Denial of Service"
MS05-020
- http://www.microsoft.com/technet/security/…n/MS05-020.mspx
"Cumulative Security Update for Internet Explorer (890923)"
MS05-021
- http://www.microsoft.com/technet/security/…n/MS05-021.mspx
"A vulnerability exists in Microsoft Exchange Server that could allow an attacker to run arbitrary code."
MS05-022
- http://www.microsoft.com/technet/security/…n/MS05-022.mspx
"A vulnerability exists in MSN Messenger that could allow an attacker to run arbitrary code."
MS05-023
- http://www.microsoft.com/technet/security/…n/MS05-023.mspx
"Vulnerabilities exist in Microsoft Word that could allow an attacker to take complete control of an affected system."

3 Important
————-
MS05-016
- http://www.microsoft.com/technet/security/…n/MS05-016.mspx
"A vulnerability exists in Windows that could allow an attacker to take complete control of an affected system. User interaction is required for an attacker to exploit this vulnerability."
MS05-017
- http://www.microsoft.com/technet/security/…n/MS05-017.mspx
"A vulnerability exists in MSMQ that could allow an attacker to take complete control of an affected system. Message Queuing is not installed by default on the operating systems software affected by this security bulletin."
MS05-018
- http://www.microsoft.com/technet/security/…n/MS05-018.mspx
"Vulnerabilities exist in Windows that could allow an attacker to take complete control of an affected system. To exploit this vulnerability an attacker must have valid credentials and must be able to logon locally to the affected system."

:blink:
FYI…

Updated Microsoft Security Bulletins and Software
- http://isc.sans.org/diary.php?date=2005-04-12
Updated April 12th 2005 18:49 UTC
"In addition to addressing the vulnerabilities described above, Microsoft updated three previously-published security bulletins: MS05-002, MS05-009 and MS05-010…

- http://www.microsoft.com/technet/security/…n/MS05-002.mspx
Updated: April 12, 2005
The update to the MS05-002 advisory (Vulnerability in Cursor and Icon Format Handling Could Allow Remote Code Execution) is relevant to those who are applying the patch to Windows 98, 98SE, and ME; users of these platforms may need to re-apply the patch.
- http://www.microsoft.com/technet/security/…n/MS05-009.mspx
Updated: April 12, 2005
The update to the MS05-009 advisory (Vulnerability in PNG Processing Could Allow Remote Code Execution) reflects the availability of an updated version of Microsoft Windows Messenger version 4.7.0.2009 for Windows XP Service Pack 1.
- http://www.microsoft.com/technet/security/…n/MS05-010.mspx
Updated: April 12, 2005
The update to the MS05-010 advisory (Vulnerability in the License Logging Service Could Allow Code Execution) revises the "Mitigating Factors" section of the write-up to reflect new findings regarding Windows 2000 Server Service Pack 4 and points out the existence of the Knowledge Base Article 896658, which is relevant to users running Windows 2000 Server Service Pack 4…"
- http://support.microsoft.com/kb/896658
"W2k SP4 does not update the Netserv.inf file when creating a slipstream installation"

:ph34r:
FYI…

- http://isc.sans.org/diary.php?date=2005-04-12
Updated April 12th 2005 22:13 UTC
"…Our team compiled the following technical summary of today's patch cluster. This was written by several people working in parallel, so please excuse the differences in style across the segments.

Bulletin Severity Impact Supercedes
MS05-016 Important Remote Code Execution MS05-008
MS05-017 Important Remote Code Execution N/A
MS05-018 Important Elevation of Privilege See Below***
MS05-019 Critical Remote Code Execution N/A
MS05-020 Critical Remote Code Execution MS05-014 (Exploit available)
MS05-021 Critical Remote Code Execution MS04-035 (Exchange W2K only)
MS05-022 Critical Remote Code Execution MS05-009
MS05-023 Critical Remote Code Execution MS03-050

***MS05-018 Supercedes the following:
Bulletin ID Windows2000 XPSP1 XPSP2 WindowsServer2003
MS03-013 Not Replaced Replaced N/A N/A
MS03-045 Replaced Not Replaced N/A Not Replaced
MS04-032 Not Replaced Not Replaced N/A Replaced
MS05-002 Replaced Replaced N/A Not Replaced …"

(Quite a bit more detail and analysis done by the ISC - use the link above.)

:oops: