[VulnWatch] 3 new Microsoft security bulletins

From: Chris Wysopal (weld_at_vulnwatch.org)
Date: 01/13/04

  • Next message: Peter Winter-Smith: "[VulnWatch] RapidCache Multiple Vulnerabilities"
    Date: Tue, 13 Jan 2004 18:58:11 +0000 (GMT)
    To: vulnwatch@vulnwatch.org
    
    

    Critical:

    Vulnerability in Microsoft Internet Security and Acceleration Server 2000
    H.323 Filter Could Allow Remote Code Execution (816458)
    http://www.microsoft.com/technet/treeview/?url=/technet/security/bulletin/MS04-001.asp

    Important:

    Buffer Overrun in MDAC Function Could Allow Code Execution (832483)
    http://www.microsoft.com/technet/treeview/?url=/technet/security/bulletin/MS04-003.asp

    Moderate:

    Vulnerability in Exchange Server 2003 Could Lead to Privilege Escalation
    (832759)
    http://www.microsoft.com/technet/treeview/?url=/technet/security/bulletin/MS04-002.asp


  • Next message: Peter Winter-Smith: "[VulnWatch] RapidCache Multiple Vulnerabilities"

    Relevant Pages

    • [UNIX] XPDF Multiple Buffer Overflow Vulnerabilities (JPXStream.cc, Stream.cc)
      ... resulting in code execution is theoretical and dependent on the process ... DCTStream::Baseline Heap Overflow Vulnerability: ... The vulnerability specifically exists due to insufficient input validation ... data from within the PDF file. ...
      (Securiteam)
    • SecurityFocus Microsoft Newsletter #238
      ... It won't affect you unless you run Linux, OSX, some BSDs, or Windows... ... Mozilla Suite And Firefox Favicon Link Tag Remote Script Cod... ... MPlayer MMST Stream ID Remote Buffer Overflow Vulnerability ... A remote script code execution vulnerability affects Mozilla Suite and Mozilla Firefox. ...
      (Focus-Microsoft)
    • [Full-disclosure] Two Remote Code Execution Vulnerabilities in Internet Explorer
      ... Vulnerability 1: Internet Explorer Select Element Remote Code Execution ... There is a vulnerability in Internet Explorer which enables execution ...
      (Full-Disclosure)
    • Two Remote Code Execution Vulnerabilities in Internet Explorer
      ... Vulnerability 1: Internet Explorer Select Element Remote Code Execution ... There is a vulnerability in Internet Explorer which enables execution ...
      (Bugtraq)
    • Re: Security Patches
      ... Flaw in Windows Script Engine could allow code execution ... Unchecked Buffer in Locator Service Could Lead to Code Execution ... Directory Service Restore Mode Password Vulnerability ...
      (microsoft.public.win2000.security)