Microsoft KB Archive/902412

= MS06-003: Vulnerability in TNEF decoding in Microsoft Outlook and Microsoft Exchange could allow remote code execution =

Article ID: 902412

Article Last Modified on 9/19/2007

-

APPLIES TO


 * Microsoft Outlook 2000 Standard Edition
 * Microsoft Office 2000 with MultiLanguage Pack
 * Microsoft Outlook 2002 Standard Edition
 * Microsoft Office XP Multilingual User Interface Pack
 * Microsoft Office Outlook 2003
 * Microsoft Office 2003 Multilingual User Interface Pack
 * Microsoft Office 2003 Language Interface Pack
 * Microsoft Exchange Server 5.0 Service Pack 2
 * Microsoft Exchange Server 5.5 Service Pack 4
 * Microsoft Exchange Server 2000 Service Pack 3

-





Microsoft has released security bulletin MS06-003. The security bulletin contains all the relevant information about the security update. This information includes file manifest information and deployment options. To view the complete security bulletin, visit the following Microsoft Web sites:  Home users:

http://www.microsoft.com/athome/security/update/bulletins/200601.mspx

 IT professionals:

http://www.microsoft.com/technet/security/bulletin/ms06-003.mspx





Outlook, Office, or Exchange Server
This problem was first corrected in Office 2003 Service Pack 3.

To resolve this problem, obtain the latest service pack for Office 2003. For more information, click the following article number to view the article in the Microsoft Knowledge Base:

870924 How to obtain the latest service pack for Office 2003

Additional query words: update security_patch security_update security bug flaw vulnerability malicious attacker exploit registry unauthenticated buffer overrun overflow specially-formed scope specially-crafted denial of service DoS TSE WinNT Win2000



Keywords: kbbug kbfix kbsecvulnerability kbqfe kbsecurity kbwinnt400presp7fix kbsecbulletin kbwinxppresp2fix kbpubtypekc kbwin2000presp5fix kbwinserv2003presp1fix kboffice2003sp3fix KB902412

-

[mailto:TECHNET@MICROSOFT.COM Send feedback to Microsoft]

© Microsoft Corporation. All rights reserved.