HelpWithWindows | Windows Forum | RoseCitySoftware




HelpWithWindows - Home

  Microsoft Security

Microsoft Windows Security Bulletin Summary for January, 2005

Summary

The Microsoft Windows security update for January 2005 addresses three newly discovered issues in Windows.

Severity Rating: Critical

Vulnerability in HTML Help Could Allow Code Execution (890175)

Affected
Software
  • Microsoft Windows 2000 Service Pack 3, Microsoft Windows 2000 Service Pack 4
  • Microsoft Windows XP Service Pack 1, Microsoft Windows XP Service Pack 2
  • Microsoft Windows XP 64-Bit Edition Service Pack 1
  • Microsoft Windows XP 64-Bit Edition Version 2003
  • Microsoft Windows Server 2003
  • Microsoft Windows Server 2003 64-Bit Edition
  • Microsoft Windows 98, Windows 98 Second Edition
  • Microsoft Windows Millennium Edition
Affected
Components
  • Internet Explorer 6.0 Service Pack 1 when installed on Microsoft Windows NT Server 4.0 Service Pack 6a or Microsoft Windows NT Server 4.0 Terminal Server Edition Service Pack 6.
Executive
Summary
A vulnerability exists in Windows that could allow remote code execution on an affected system.
Impact Remote Code Execution
Patches

Non-Affected Software:


Vulnerability in Cursor and Icon Format Handling Could Allow Remote Code Execution (891711)

Affected
Software
  • Microsoft Windows NT Server 4.0 Service Pack 6a
  • Microsoft Windows NT Server 4.0 Terminal Server Edition Service Pack 6
  • Microsoft Windows 2000 Service Pack 3, Microsoft Windows 2000 Service Pack 4
  • Microsoft Windows XP Service Pack 1
  • Microsoft Windows XP 64-Bit Edition Service Pack 1
  • Microsoft Windows XP 64-Bit Edition Version 2003
  • Microsoft Windows Server 2003
  • Microsoft Windows Server 2003 64-Bit Edition
  • Microsoft Windows 98, Windows 98 Second Edition, Microsoft Windows Millennium Edition
Executive
Summary
A vulnerability exists in Windows that could allow remote code execution on an affected system.
Impact Remote Code Execution
Patches

Non-Affected Software:


Severity Rating: Important

Vulnerability in Indexing Service Could Allow Remote Code Execution (871250)

Affected
Software
  • Microsoft Windows 2000 Service Pack 3, Microsoft Windows 2000 Service Pack 4
  • Microsoft Windows XP Service Pack 1
  • Microsoft Windows XP 64-Bit Edition Service Pack 1
  • Microsoft Windows XP 64-Bit Edition Version 2003
  • Microsoft Windows Server 2003
  • Microsoft Windows Server 2003 64-Bit Edition
Executive
Summary
A vulnerability exists in the Indexing Service that could allow remote code execution on an affected system. The Indexing Service is not enabled by default on the affected systems.
Impact Elevation of Privilege
Patches

Non-Affected Software:




HelpWithWindows RoseCitySoftware

Software Products, Spotlight of the Week, Partners, RCS newsletter, Corporate Sales, List with us