Critical Outlook Express Vulnerability secretly patchedBest Security Tips offers daily news, information, advices and tips about spyware, adware, viruses, trojans, web vulnerabilities, hackers, other threats    | Register now | Login
   
TIPS NEWS TOOLS DOWNLOADS MALWARE FORUM BOOKS FREE MAGAZINES FREE WEBCASTS & VIDEOS
GFI LANguard Network Security Scanner - Dld 30-day trial! del.icio.us  digg  Furl  NewsVine  Spurl  Blinklist  Ma.gnolia  Reddit  Tailrank  YahooMyWeb 
Best Tips
Security Scanner
Security Categories
Advertise With Us!
Latest Viruses / Threats
2008/8/20 3:43:07
2008/8/20 3:43:07
2008/8/20 3:43:07
2008/8/20 0:00:00
2008/8/19 18:16:23
Downloads
RSS / Atom Feeds
Windows Security : Critical Outlook Express Vulnerability secretly patched
Posted by Max on 2007/10/15 15:48:37 (693 reads)
Windows Security

Last week, Microsoft released its monthly security update cycle which contained six security updates and one re-release.Nothing new so far, except that one of those six security updates has been labeled CRITICAL by Microsoft and it affects all Windows versions since Windows 2000 up to Vista.

It's Outlook Express that got fried.

That one "has the potential to be the worst of the batch because these applications come packaged with nearly every release of the Windows operating system," said Ben Greenbaum, a senior research manager with Symantec Security Response, in a statement e-mailed by the company.


To illustrate the point, here's the list of affected Windows versions:
  • Microsoft Windows 2000 Service Pack 4
  • Windows XP Service Pack 2
  • Windows XP Professional x64 Edition Service Pack 2
  • Windows Server 2003 Service Packs 1 and 2
  • Windows Server 2003 x64 Edition
  • Windows Server 2003 x64 Edition Service Pack 2
  • Windows Server 2003 with SP1 or SP2 for Itanium-based Systems
  • Windows Vista
  • Windows Vista x64 Edition
This critical security update resolves one privately reported vulnerability. The vulnerability could allow remote code execution due to an incorrectly handled malformed NNTP response. An attacker could exploit the vulnerability by constructing a specially crafted Web page.

This is a critical security update for all supported versions of Microsoft Outlook express and Microsoft Windows Mail.

Recommendation. Microsoft recommends that customers apply the update immediately.
View Microsoft Security Bulletin MS07-056




Other articles
2008/8/13 16:42:03 - 10 Million Zombies Are Spreading Spam and Malware Every Day
2008/8/11 9:03:35 - Nearly $8.5 Billion Lost by US Consumers because of Online Threats
2008/8/8 6:35:36 - EDS' Eight Tips for Consumers to Protect Themselves from Identity Theft
2008/8/4 11:16:32 - NovaShield, Inc. Launches NovaShield AntiMalware Version 2.0 With 90-Day Free Trial
2008/8/3 4:35:31 - Full P2P Anonymity using Torrent Privacy

The comments are owned by the poster. We aren't responsible for their content.