Critical Outlook Express Vulnerability secretly patchedBest Security Tips offers daily news, information, advices and tips about spyware, adware, viruses, trojans, web vulnerabilities, hackers, other threats    | Register now | Login
   
TIPS NEWS TOOLS DOWNLOADS MALWARE FORUM BOOKS FREE MAGAZINES FREE WEBCASTS & VIDEOS
Internet security & monitoring for networks - Dld trial!  Bookmark and Share 
Best Tips
Security Scanner
Security Categories
Advertise With Us!
Latest Viruses / Threats
Our Partners
Downloads
Windows Security : Critical Outlook Express Vulnerability secretly patched
Posted by Max on 2007/10/15 15:48:37 (1443 reads)
Windows Security

Last week, Microsoft released its monthly security update cycle which contained six security updates and one re-release.Nothing new so far, except that one of those six security updates has been labeled CRITICAL by Microsoft and it affects all Windows versions since Windows 2000 up to Vista.

It's Outlook Express that got fried.

That one "has the potential to be the worst of the batch because these applications come packaged with nearly every release of the Windows operating system," said Ben Greenbaum, a senior research manager with Symantec Security Response, in a statement e-mailed by the company.


To illustrate the point, here's the list of affected Windows versions:
  • Microsoft Windows 2000 Service Pack 4
  • Windows XP Service Pack 2
  • Windows XP Professional x64 Edition Service Pack 2
  • Windows Server 2003 Service Packs 1 and 2
  • Windows Server 2003 x64 Edition
  • Windows Server 2003 x64 Edition Service Pack 2
  • Windows Server 2003 with SP1 or SP2 for Itanium-based Systems
  • Windows Vista
  • Windows Vista x64 Edition
This critical security update resolves one privately reported vulnerability. The vulnerability could allow remote code execution due to an incorrectly handled malformed NNTP response. An attacker could exploit the vulnerability by constructing a specially crafted Web page.

This is a critical security update for all supported versions of Microsoft Outlook express and Microsoft Windows Mail.

Recommendation. Microsoft recommends that customers apply the update immediately.
View Microsoft Security Bulletin MS07-056




Other articles
2010/3/18 8:07:31 - Panda Cloud Antivirus Receives ICSA Labs' First Cloud-Based Certification
2010/3/17 15:49:34 - Open-Source Email Security Taken To The Next Level at WebhostingDay
2010/3/17 15:18:40 - McAfee Warns ABout Scareware or Fake Antivirus Software
2010/3/2 5:22:13 - VeriSign and AVG Will Integrate VeriSign Trust(TM) Seal Within AVG LinkScanner(R)
2010/3/1 7:36:12 - New Stealth Software Protects P2P Users From Lawsuits by Copyright Holders
2010/2/24 13:55:16 - New State of The Art Firewall By Palo Alto Networks
2010/2/24 13:50:26 - Beware of Fake Antimalware Programs Like PCsProtector
2010/2/24 13:38:02 - New Registry Cleaner Guide Helps Your PC Perform Faster
2010/2/3 7:32:43 - PC Login Now (Full version) Available Now For Free.
2010/2/3 7:11:57 - Mitto Named One of 20 Top Web Applications

The comments are owned by the poster. We aren't responsible for their content.