Click Here to Install Silverlight*
United StatesChange|All Microsoft Sites
Microsoft
Download Center 
Search Advanced Search

Windows 2000 Security Patch: Superfluous decoding operation could allow command execution via IIS

Brief Description
Microsoft has released a patch that addresses a denial of service (DoS) vulnerability that exists in Microsoft Internet Information Services (IIS) 5.0 because the function that processes wildcard sequences in FTP commands does not always allocate sufficient memory when performing pattern matching.

On This Page

Quick Details
File Name:Q293826_W2K_SP3_x86_en.EXE
Version:q293826
Knowledge Base (KB) Articles:KB293826
Date Published:5/14/2001
Language:English
Download Size:1.9 MB
Estimated Download Time: 5 min 56K

Change Language:
  

Overview

Microsoft has released a patch that addresses a denial of service (DoS) vulnerability that exists in Microsoft Internet Information Services (IIS) 5.0 because the function that processes wildcard sequences in FTP commands does not always allocate sufficient memory when performing pattern matching. This patch is also a cumulative patch that includes the functionality of all security patches released to date for IIS 5.0.

 Top of page

System Requirements

  • Supported Operating Systems: Windows 2000
Windows 2000 Professional
Windows 2000 Server
Windows 2000 Advanced Server
Windows 2000 Datacenter
Internet Information Services 5.0

 Top of page

Instructions

Select your language from the drop-down list at the top of the page.
Click Go.
Click Security Update.
Do one of the following:
To start the installation immediately, click Run this program from its current location.
To copy the download to your computer for installation at a later time, click Save this program to disk.
Click OK.

 Top of page

 Top of page

 Top of page


© 2009 Microsoft Corporation. All rights reserved. Contact Us |Terms of Use |Trademarks |Privacy Statement