main

Microsoft Security Round-up for April '04

Steven Parker   on 14 April 2004 - 13:47 · 7 comments & 463 views

Advertisement (Why?)
In case you missed the April Microsoft Security Round-up we posted from Microsoft Download Center we have decided to do a round-up post of our own, so patch up!

In this bulletin are the following patch updates:

Microsoft Security Bulletin MS04-014
Vulnerability in the Microsoft Jet Database Engine Could Allow Code Execution (837001)
Microsoft Security Bulletin MS04-012
Cumulative Update for Microsoft RPC/DCOM (828741)
Microsoft Security Bulletin MS04-011
Security Update for Microsoft Windows (835732)
Microsoft Security Bulletin MS02-011
An authentication flaw could allow unauthorized users to be authenticated on the SMTP service
Microsoft Knowledge Base Article - 834130
Microsoft Exchange 5.0 Update Rollup

Read more for a detailed view of the above updates.

News source: Collected from Microsoft Download Center


Security Update Windows XP/64/2000/NT4.0 (KB837001)
A security issue has been identified that could allow an attacker to compromise a computer running Windows and gain control over it. You can help protect your computer by installing this update from Microsoft. After you install this item, you may have to restart your computer.

Download: Security Update for Windows XP | XP 64 Bit Edition
Download: Security Update for Windows 2000
Download: Security Update for Windows NT4.0
View: Knowledge Base Article

Security Update Windows 2003/64/XP/64/2000/NT4.0 (KB828741)
A security issue has been identified that could allow an attacker to compromise a computer running Windows and gain control over it. You can help protect your computer by installing this update from Microsoft. After you install this item, you may have to restart your computer.

Download: Security Update for Server 2003 64 Bit Edition and XP 64 Bit Edition Version 2003
Download: Security Update for Windows Server 2003
Download: Security Update for Windows XP
Download: Security Update for Windows 2000
Download: Security Update for Windows NT Server 4.0 | Windows NT Workstation 4.0
View: Security Bulletin

Security Update Windows 2003/XP/64/2000/NT4.0 WKS/SRV (KB835732)
Multiple security issues have been identified that could allow an attacker to compromise a computer running Windows and gain complete control over it. You can help protect your computer by installing this update from Microsoft. After you install this item, you may have to restart your computer.

Download: Security Update for Windows Server 2003
Download: Security Update for Windows XP | XP 64 Bit Edition
Download: Security Update for Windows 2000
Download: Security Update for Windows NT Server 4.0 | Windows NT Workstation 4.0
View: Security Bulletin

Security Update for Windows NT4.0 Option Pack (KB310669)
Microsoft has released a patch for Microsoft® Windows NT4 Option Pack that will eliminate a vulnerability that exists because a malicious user could issue a specially formatted, non-RFC compliant SMTP command that will result in a Denial of Service attack. This would be carried out more typically through a custom application where the malformed data would cause the SMTP service to fail. Download now to prevent a possible Denial of Service Attack.

Download: Security Update for Windows NT4 Option Pack
View: More Information About This Download

Security Update for Exchange 5.0 (KB834130)
A security issue has been identified that could allow an attacker to run programs and access data on a computer running Microsoft® Exchange Server 5.0. You can help protect your computer by installing this update from Microsoft.

Download: Security Update for Exchange 5.0
View: More Information About This Download

Post a comment · Send to friend Comments · There are 7 additional comments
(1 reply) #1 PseudoRandomDragon on 14 Apr 2004 - 13:49
I am glad Neowin posts this. Thanks, Neowin!
#1.1 Alain_WU on 22 Apr 2004 - 08:56
Yes, thanks for this info as Windows NT4 (Workstation and Server) Windows Updates (WU) are less and less easy to find on the www.microsoft.com. However, help is at hand with MBSA 1.2 (Microsoft Baseline Security Analyzer version 1.2) as it reports most of the missing critical updates on your own (and other networked) PCs and tells you where to find/download them (once, for example, for multiple PCs updates).

It's only 1.55MB and is available at
http://support.microsoft.com/default.aspx?scid=kb;en-us;320454&sd=tech
or
http://download.microsoft.com/download/d/7/5/d757ff81-4f97-4a6d-a9d8-edea72363aa8/MBSASetup-en.msi

You can run MBSA version 1.2 on computers that run Windows Server 2003, Windows 2000, or Windows XP. MBSA can scan Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 computers. You can only run local scans on computers that run Windows XP Home Edition or Windows XP Professional if the computer uses the simple file sharing model.

Hope it helps other people still running NT4 (SP6a)

Alain
(2 replies) #2 ben_b on 14 Apr 2004 - 14:45
1.. Security Update, August 20, 2000
2.. Security Update, February 14, 2002 (Internet Explorer 6)
3.. Q324380: Security Update (Windows 2000)
4.. Q328310: Security Update (Windows 2000)
5.. 330994: April 2003, Security Update for Outlook Express 5.5 Service
Pack 2
6.. 330994: April 2003, Security Update for Outlook Express 6
7.. 330994: April 2003, Security Update for Outlook Express 6 SP1
8.. 811493: Security Update (Windows XP)
9.. Security Update for Windows 2000 (815021)
10.. Q815487: Critical update for Windows XP Media Center Edition
11.. Security Update for Windows 2000 (KB822343)
12.. 822679: Security Update (Windows 2000)
13.. 823559: Security Update for Microsoft Windows
14.. Security Update for Windows XP (KB821557)
15.. 821557: Security Update (Windows XP 64 Bit Edition)
16.. Security Update for Windows XP (KB824146)
17.. Security Update for Windows 2000 (KB824146)
18.. Security Update for Windows Server 2003 (KB824146)
19.. Security Update for Windows 2000 (KB824141)
20.. Security Update for Windows Server 2003 (KB823182)
21.. Recommended Update for Windows XP SP1 (KB822603)
22.. Security Update for Windows XP (KB821557)
23.. 823559: Security Update for Microsoft Windows
24.. Security Update for Microsoft Windows Server 2003 (KB828035)
25.. Security Update for Windows 2000 (KB824141)
26.. Update for Windows 2000 (KB824141)
27.. Security Update for Windows 2000 (KB82802
28.. Security Update for Windows XP (KB82802
29.. Security Update for Windows Server 2003 (KB82802
30.. Critical Update for Windows XP Media Center Edition 2004 (KB830786)
31.. Critical Update for Microsoft Windows XP Media Center Edition
Infrared Receiver (KB83241
32.. Windows XP Driver 5.10.0.5410 for Realtek AC 97 Audio (KB833846)
33.. Critical Update for IntelliType Pro and IntelliPoint on Windows XP
(KB834840)
34.. Critical Update for Internet Explorer 6 Service Pack 1 (KB831167)
35.. Critical Update for Internet Explorer 6 Service Pack 1 64-bit Edition
(KB831167)
36.. Security Update for Windows Server 2003 (KB835732)
37.. Security Update for Windows Server 2003 64-bit Edition (KB835732)
38.. Security Update for Windows XP 64-bit Edition, Version 2003
(KB835732)
39.. Security Update for Windows XP (KB835732)
40.. Security Update for Windows XP 64-bit Edition (KB835732)
41.. Security Update for Windows 2000 (KB835732)
42.. Security Update for Windows Server 2003 (KB828741)
43.. Security Update for Windows Server 2003 64-bit Edition (KB828741)
44.. Security Update for Windows XP 64-bit Edition, Version 2003
(KB828741)
45.. Security Update for Windows 2000 (KB828741)
46.. Security Update for Windows XP 64-bit Edition (KB828741)
47.. Security Update for Windows XP (KB828741)
48.. Cumulative Security Update for Outlook Express 6 Service Pack 1
(KB837009)
49.. Security Update for Windows Server 2003 64-bit Edition (KB837001)
50.. Security Update for Windows Server 2003 (KB837001)
51.. Security Update for Windows XP 64-bit Edition, Version 2003
(KB837001)
52.. Security Update for Windows 2000 (KB837001)
53.. Security Update for Windows XP 64-bit Edition (KB837001)
54.. Security Update for Windows XP (KB837001)
55.. Cumulative Security Update for Outlook Express 6 Service Pack 1
64-bit Edition (KB837009)
56.. Cumulative Security Update for Outlook Express 5.5 Service Pack 2
(KB837009)
57.. Cumulative Security Update for Outlook Express 6 (KB837009)
58.. Cumulative Security Update for Outlook Express for Windows Server
2003 (KB837009)
59.. Cumulative Security Update for Outlook Express for Windows Server
2003 64-bit (KB837009)
60.. Cumulative Security Update for Outlook Express for Windows XP 64-bit,
Version 2003 (KB837009)
61.. Security Update for Windows XP (KB835732)
62.. Security Update for Windows XP (KB828741)
63.. Security Update for Windows XP (KB837001)
#2.1 JaggedFlame on 14 Apr 2004 - 20:51
So?
#2.2 ben_b on 15 Apr 2004 - 02:49
That was just a full list of all the updates...
#3 Mav Phoenix on 14 Apr 2004 - 15:25
Better patched than not, good job reporting this nw.
#4 chuayw2000 on 15 Apr 2004 - 07:14
Hm. I installed XP SP2 RC1 and these updates don't show up on Windows Update site. Is it compatible with SP2?

Commenting has either been disabled on this article or you are not logged in. Click here to login or register, its free!

Note: Anonymous commenting is disabled in order to keep the quality of responses to a high standard.

Advertisement (Why?)