Windows 2000 Security Patch: SMTP RollupBrief DescriptionMicrosoft has released a patch for Windows 2000 that will eliminate a vulnerability that exists because a malicious user could issue a specially formatted, non-RFC compliant SMTP command that will result in a Denial of Service attack. On This PageQuick Details
OverviewMicrosoft has released a patch for Windows 2000 that will eliminate a vulnerability that exists because a malicious user could issue a specially formatted, non-RFC compliant SMTP command that will result in a Denial of Service attack. This would be carried out more typically through a custom application where the malformed data would cause the SMTP service to fail. Download now to prevent a possible Denial of Service Attack. System Requirements
Windows 2000 Server Windows 2000 Advanced Server InstructionsAfter you click on the Download Link, you will see a dialog with the question "What would you like to do with this file?" If you choose to "Run this program from it's current location" it will automatically install the program to your computer. If you choose "Save this program to a disk" you will be prompted for a location to save the file to. Once saved you will need to open the .exe file to run the program. Additional InformationWho should read this bulletin: Customers using Microsoft® Windows® 2000 Server and Professional, Windows XP Professional and Exchange Server 2000 Impact of vulnerability:Denial of Service Maximum Severity Rating:Low Recommendation:Customers who need the Windows 2000 SMTP services should apply the patch; all others should disable the SMTP service. Affected Software: Microsoft Windows 2000 Microsoft Windows XP Professional Microsoft Exchange 2000 |
||||||||||||||||||||