Conflicting info between the global Security Bulletin and some SPi Security Bulletin



The global detailed Security Bulleting is given in:
http://www.microsoft.com/technet/security/current.aspx

I did find the following problems there.
I normally use Win 2K + SP4.
According the Security Bulletin for the release of SP4,
(http://www.microsoft.com/technet/security/prodtech/windows2000/w2ksp4.mspx)
it contains all new (new - with respect to SP3) patches in the range:
MS01-022 (4.18.2001) till MS03-030 (7.23.2003)
and of course also all prior patches from SP1 to SP3.

But when I looked in that detailed global list, I find for example that as old
MS00--077 (10.13.2000 !) and many other older than MS03-030
should be applied to W2K/SP4. This doesn't make sense.

I found the exact same contradictions with regard to Win XP SP2.
In this case, I found even a worse situation, when patch # MS03-011
showing up in the detailed global list, which according to its date
and patch # should be included in the Security Bulletin list for
WXP/SP2 but it is not!. This list is given in:
http://www.microsoft.com/technet/security/prodtech/windowsXP/xpsp2.mspx


So I don't know what to make of it and how I can rely on that
detailed global list in terms of what to pickup from it and apply to W2K/SP4
(and the same for WXP/SP2).

Any idea?

Thanks,
David


.



Relevant Pages

  • Re: Conflicting info between the global Security Bulletin and some SPi Security Bulletin
    ... According the Security Bulletin for the release of SP4, ... you will see that the updated patch was first included in SP3 ... expect it to be included in SP4 and me NOT needed to install it on a W2K4. ...
    (microsoft.public.win2000.security)
  • MS03-030 included in win2000 SP4?
    ... Security bulletin MS03-030 states that this fixed is ... When I look at the fix ... list of SP4 I can't find the related KB article number? ... the security bulletin is incorrect or this particular fix ...
    (microsoft.public.win2000.security)
  • Re: My MS04-028 FAQ
    ... > totally ridiculous for anyone trying to effect patch management on more ... > critical patches as this one, why didn't MS issue a Security Bulletin ... > already run," and ignore my new app? ... Does this vulnerability affect only MS sw? ...
    (microsoft.public.security)
  • Re: Zombies on the loose
    ... Microsoft issued a patch with security bulletin MS06-040 on Aug. 8. ... The Un-Funny Truth About Scientology: http://theunfunnytruth.ytmnd.com/ ... Scientology Harassment Continues: ...
    (comp.sys.mac.advocacy)
  • Re: Zombies on the loose
    ... The jump is due to ... the spread of Mocbot worm variants, ... Microsoft issued a patch with security bulletin MS06-040 on Aug. 8. ...
    (comp.sys.mac.advocacy)