ms01
Microsoft Security Bulletin MS01-033
Unchecked Buffer in Index Server ISAPI Extension more>> This update resolves the "Unchecked Buffer in Index Server ISAPI Extension Could Enable Web Server Compromise" security vulnerability in Windows 2000 computers running Internet Information Service (IIS) 5.0, and is discussed in Microsoft Security Bulletin MS01-033. Download now to prevent a malicious user from taking control of your Web server.<<less
IIS 4.0 Cumulative Security Update MS01-044
IIS 4.0 Cumulative Security Update MS01-044 is a program consisting of the updates released for Internet Information Server (IIS) 4.0 since the release of Windows NT 4.0 Service Pack 5, including two new updates. more>> <<less
IIS 5.0 Cumulative Security Update MS01-044
Prevent malicious users from disrupting the service of IIS 5.0. more>>
IIS 5.0 Cumulative Security Update MS01-044 is a software which includes every update released for Internet Information Server (IIS) 5.0 and is discussed in Microsoft Security Bulletin MS01-044. This update addresses four new vulnerabilities: two security vulnerabilities that could enable a malicious user to temporarily disrupt the service of IIS 5.0; and two security vulnerabilities that could enable a malicious user to gain unauthorized privileges on your Web server.
Instructions:
- Click the Download link to start the download, or choose a different language from the drop-down list and click Go.Do one of the following:
- To start the installation immediately, click Open or Run this program from its current location.
- To copy the download to your computer for installation at a later time, click Save or Save this program to disk.
- Once saved you will need to open the .exe file to run the program.
Requirements: Windows 2000
Windows NT Invalid RDP Data Vulnerability Patch MS01-052
Windows NT Invalid RDP Data Vulnerability Patch MS01-052 is written to be a helpful program which can remove the Invalid RDP Data can Cause Terminal Service Failure vulnerability in computers running Windows 2000 more>>
Windows NT Invalid RDP Data Vulnerability Patch MS01-052 is written to be a helpful program which can remove the 'Invalid RDP Data can Cause Terminal Service Failure' vulnerability in computers running Windows 2000 and Windows NT4.0 Terminal Services Edition, discussed in Microsoft Security Bulletin MS01-052. Download now to prevent a malicious user from causing your server to fail.
Windows 2000 IrDA Driver Access Violation Patch MS01-046
Prevent users from crashing your system by sending malformed data frames to your PCs infrared port. more>>
Windows 2000 IrDA Driver Access Violation Patch MS01-046 is launched as a helpful and important update which fixes and repairs the "Malformed Data Frame Sent to a Windows 2000 Computer Through an Infrared Port Causes Stop Error" security vulnerability in Windows 2000 and is discussed in Microsoft Security Bulletin MS01-046. Download now to prevent a malicious user from causing your computer to crash by sending a malformed data frame to your computer's infrared port. For more information about this vulnerability, please read Microsoft Security Bulletin MS01-046.
Windows 2000 Invalid RDP Data Vulnerability Patch MS01-052
Windows 2000 Invalid RDP Data Vulnerability Patch has come as a useful program to remove the Invalid RDP Data can Cause Terminal Service Failure vulnerability in computers running Windows 2000 more>>
Windows 2000 Invalid RDP Data Vulnerability Patch MS01-052 has come as a useful program to remove the 'Invalid RDP Data can Cause Terminal Service Failure' vulnerability in computers running Windows 2000, discussed in Microsoft Security Bulletin MS01-052. Download now to prevent a malicious user from causing your server to fail. This vulnerability exists because the Remote Data Protocol (RDP) in computers running Windows 2000 does not handle a particular series of data packets correctly. If a malicious user sends this particular series of data packates to an affected server, it can cause an affected server to fail.
Windows NT 4.0 Winsock Mutex Vulnerability Patch MS01-003
Windows NT 4.0 Winsock Mutex Vulnerability Patch MS01-003 is a highly-efficient, high-quality patch which eliminates a security vulnerability in Windows NT 4.0. more>>
Windows NT 4.0 "Winsock Mutex" Vulnerability Patch MS01-003 is a highly-efficient, high-quality patch which eliminates a security vulnerability in Windows NT 4.0.
The vulnerability could allow a malicious user to run a special program to disable an affected computer's network functionality. Like all other objects under Windows NT 4.0, mutexes--synchronization objects that govern access to resources--have permissions associated with them that govern how they can be accessed. However, a particular mutex used to govern access to a networking resource has inappropriately loose permissions. This could enable an attacker who had the ability to run code on a local machine to monopolize the mutex, thereby preventing any other processes from using the resource that it controlled. This would have the effect of preventing the machine from participating in the network.
The attacker would require interactive logon access to the affected machine. This significantly limits the scope of the vulnerability because, if normal security recommendations have been followed, unprivileged users will not be granted interactive logon rights to critical machines such as servers. Unprivileged users typically are granted interactive logon rights to workstations and terminal servers. However, a workstation would not be a tempting target for an attacker, because he could only use this vulnerability to deny service to himself. The machines most likely to be affected would be terminal servers.
Windows NT RPC Endpoint Mapper Vulnerability Patch MS01-048
Windows NT RPC Endpoint Mapper Vulnerability Patch has come as a smart tool to deal with the Malformed RPC Packet security vulnerability in computers running Windows NT 4.0 more>>
Windows NT RPC Endpoint Mapper Vulnerability Patch MS01-048 has come as a smart tool to deal with the 'Malformed RPC Packet' security vulnerability in computers running Windows NT 4.0 and is discussed in Microsoft Security Bulletin MS01-048. Download now to prevent a malicious user from launching a denial of service attack using the Remote Procedure Call (RPC) client. This vulnerability exists because there is an error in the way the endpoint mapper (used by the RPC service to determine which remote port to use) processes queries. If a malicious user sends a malformed RPC query to an affected Windows NT 4.0 computer, it can cause the server to stop responding to requests.
Windows 2000 SMTP Mail Relaying Vulnerability Patch MS01-037
Windows 2000 SMTP Mail Relaying Vulnerability Patch is designed to be a handy tool to deal with the Windows 2000 SMTP Mail Relaying security vulnerability more>>
Windows 2000 SMTP Mail Relaying Vulnerability Patch MS01-037 is designed to be a handy tool to deal with the 'Windows 2000 SMTP Mail Relaying' security vulnerability in the Windows 2000 Simple Mail Transfer Protocol (SMTP) service and is discussed in Microsoft Security Bulletin MS01-037. Download now to prevent malicious users from relaying e-mail messages from your computer.
This vulnerability results because of an authentication error in the Windows 2000 SMTP service that installs by default as part of Windows 2000 Server products and optionally on Windows 2000 Professional. Download now to prevent a malicious user from using your computer for mail relaying. This vulnerability applies only to standalone computers (a computer that is not a member of a domain) and does not affect computers that are running Exchange 2000 Server.
Windows Media Player ASF Unchecked Buffer Vulnerability MS01-056
Patch two security vulnerabilities in Windows Media Player. more>>
Windows Media Player ASF Unchecked Buffer Vulnerability MS01-056 is a useful software which addresses two security vulnerabilities in Windows Media Player.
The two vulnerabilities are a buffer overrun in the functionality used to process Active Stream Redirector (.ASX) files, and a vulnerability affecting how Windows Media Player handles Internet shortcuts.
In addition, this update addresses a potential privacy vulnerability that was recently identified. This patch should be used with Windows Media Player 6.4, 7, or 7.1.
WareSeeker Editor
Microsoft Outlook View Control Vulnerability Patch MS01-038
Microsoft Outlook View Control Vulnerability Patch is a beneficial and easy-to-use application which allows you to view Outlook e-mail folders on Web pages in Outlook 2000. more>>
Microsoft Outlook View Control Vulnerability Patch MS01-038 is a beneficial and easy-to-use application which allows you to view Outlook e-mail folders on Web pages in Outlook 2000. The Outlook 2000 Update: E-mail Security protects you from attackers who attempt to exploit the vulnerability in the Outlook mail client. You can use the Outlook View Control on Web sites that are outside the Outlook mail client. This update prevents the control from being invoked by scripting or Hypertext Markup Language (HTML) code on a Web page potentially controlled by someone with malicious intent.
For more information on this issue, see the Microsoft Security MS01-038: Outlook View Control Exposes Unsafe Functionality. The Outlook 2000 SR-1 View Control Security Update requires that you first install Office 2000 Service Release 1 (SR-1) (which includes the original Office 2000 SR-1 update and the Office 2000/Windows 2000 Registry Repair Utility).
Windows 2000 Invalid RDP Data Memory Leak Vulnerability MS01-040
Windows 2000 Invalid RDP Data Memory Leak Vulnerability is considered as a professional and smart update which eliminates the Invalid RDP Data can Cause Terminal Service Failure vulnerability in computers running Windows 2000, and is discussed in Microsoft Security Bulletin MS01-052. more>>
Windows 2000 Invalid RDP Data Memory Leak Vulnerability MS01-040 is considered as a professional and smart update which eliminates the 'Invalid RDP Data can Cause Terminal Service Failure' vulnerability in computers running Windows 2000, and is discussed in Microsoft Security Bulletin MS01-052. Download now to prevent a malicious user from causing your server to fail.
This vulnerability exists because the Remote Data Protocol (RDP) in computers running Windows 2000 does not handle a particular series of data packets correctly. If a malicious user sends this particular series of data packates to an affected server, it can cause an affected server to fail.
Windows 2000 Predictable Name Pipes Vulnerability Patch MS01-031
Windows 2000 Predictable Name Pipes Vulnerability Patch MS01-031 is developed to be an essential program to resolve Predicatable Name Pipes Could Enable Privilege Elevation via Telnet security vulnerability more>>
Windows 2000 Predictable Name Pipes Vulnerability Patch MS01-031 is developed to be an essential program to resolve "Predicatable Name Pipes Could Enable Privilege Elevation via Telnet" security vulnerability in the Windows 2000 Telnet service. Download now to prevent a malicious user from launching programs on your computer, gaining access to your network, or initiating a denial of service attack against your computer.
This update addresses these issues: Two vulnerabilities that could enable an attacker to gain privileges on a Telnet server. Four vulnerabilities that could be used to disrupt Telnet services. One vulnerability that could make it easier for an attacker to gain access to a poorly configured network via the Telnet service.
Windows 2000 NNTP Denial of Service Vulnerability Patch MS01-043
Windows 2000 NNTP Denial of Service Vulnerability Patch is developed to be a handy tool to remove a denial of service vulnerability in Windows 2000 computers running the Network News Transfer Protocol (NNTP) service. more>>
Windows 2000 NNTP Denial of Service Vulnerability Patch MS01-043 is developed to be a handy tool to remove a denial of service vulnerability in Windows 2000 computers running the Network News Transfer Protocol (NNTP) service. This denial of service vulnerability exists because the NNTP service in Windows 2000 contains a memory leak. If a malicious user sends a large amount of specially malformed data to an affected server, it can deplete the memory that is available to the server, which can cause the server to stop performing.
Windows NT NNTP Denial of Service Vulnerability Patch MS01-043
Windows NT NNTP Denial of Service Vulnerability Patch has come as a smart tool to remove a denial of service vulnerability in Windows NT 4.0 computers more>>
Windows NT NNTP Denial of Service Vulnerability Patch MS01-043 has come as a smart tool to remove a denial of service vulnerability in Windows NT 4.0 computers running the Network News Transfer Protocol (NNTP) service. This denial of service vulnerability exists because the NNTP service in computers running Windows NT 4.0 contains a memory leak. If a malicious user sends a large amount of specially malformed data to an affected server, it can deplete the memory that is available to the server, which can cause the server to stop performing.