Security Bulletins Included in Windows Server 2003 Service Pack 1

Published: March 28, 2005

Microsoft has released Windows Server 2003 Service Pack 1.

Microsoft Windows Server 2003 Service Pack 1 (SP1) provides new proactive security technologies to help defend against viruses, worms, and attackers. The following Microsoft Security Bulletins describe the issues addressed by SP1.

MS05-015 (888113): Vulnerability in Hyperlink Object Library Could Allow Remote Code Execution

MS05-014 (867282): Cumulative Security Update for Internet Explorer

MS05-013 (891781): Vulnerability in the DHTML Editing ActiveX Control could allow code execution

MS05-012 (873333): Vulnerability in OLE and COM Could Allow Remote Code Execution

MS05-011 (885250): Vulnerability in Server Message Block Could Allow Remote Code Execution

MS05-010 (885834): Vulnerability in the License Logging Service Could Allow Code Execution

MS05-009 (890261): Vulnerability in PNG Processing Could Lead to Buffer Overrun

MS05-008 (890047): Vulnerability in Windows Shell Could Allow Remote Code Execution

MS05-004 (887219): ASP.NET Path Validation Vulnerability

MS05-003 (871250): Vulnerability in the Indexing Service Could Allow Remote Code Execution

MS05-002 (891711): Vulnerability in Cursor and Icon Format Handling Could Allow Remote Code Execution

MS05-001 (890175): Vulnerability in HTML Help Could Allow Code Execution

MS04-045 (870763): Vulnerability in WINS Could Allow Remote Code Execution

MS04-044 (885835): Vulnerabilities in Windows Kernel and LSASS Could Allow Elevation of Privilege

MS04-043 (873339): Vulnerability in HyperTerminal Could Allow Code Execution

MS04-041 (885836): Vulnerability in WordPad Could Allow Code Execution

MS04-038 (834707): Cumulative Security Update for Internet Explorer

MS04-037 (841356): Vulnerability in Windows Shell Could Allow Remote Code Execution

MS04-036 (883935): Vulnerability in NNTP Could Allow Code Execution

MS04-035 (885881): Vulnerability in SMTP Could Allow Remote Code Execution

MS04-034 (873376): Vulnerability in Compressed (zipped) Folders Could Allow Code Execution

MS04-032 (840987): Security Update for Microsoft Windows

MS04-031 (841533): Vulnerability in NetDDE Could Allow Remote Code Execution

MS04-030 (824151): Vulnerability in WebDav XML Message Handler Could Lead to a Denial of Service

MS04-028 (873374): Buffer Overrun in JPEG Processing (GDI+) Could Allow Code Execution

MS04-025 (867801): Cumulative Security Update for Internet Explorer

MS04-024 (839645): Vulnerability in Windows Shell Could Allow Remote Code Execution

MS04-023 (840315): Vulnerability in HTML Help Could Allow Code Execution

MS04-018 (823353): Cumulative Security Update for Outlook Express

MS04-016 (839643): Vulnerability in DirectPlay Could Allow Denial of Service

MS04-015 (840374): Vulnerability in Help and Support Center Could Allow Remote Code Execution

MS04-014 (837001): Vulnerability in the Microsoft Jet Database Engine Could Allow Code Execution

MS04-013 (837009): Cumulative Security Update for Outlook Express

MS04-012 (828741): Cumulative Update for Microsoft RPC/DCOM

MS04-011 (835732): Security Update for Microsoft Windows

MS04-007 (828028): ASN .1 Vulnerability Could Allow Code Execution

MS04-006 (830352): Vulnerability in the Windows Internet Naming Service (WINS) Could Allow Code Execution

MS04-004 (832894): Cumulative Security Update for Internet Explorer

MS04-003 (832483): Buffer Overrun in MDAC Function Could Allow Code Execution

MS03-048 (824145): Cumulative Security Update for Internet Explorer

MS03-045 (824141): Buffer Overrun in the ListBox and in the ComboBox Control Could Allow Code Execution

MS03-044 (825119): Buffer Overrun in Windows Help and Support Center Could Lead to System Compromise

MS03-043 (828035): Buffer Overrun in Messenger Service Could Allow Code Execution

MS03-041 (823182): Vulnerability in Authenticode Verification Could Allow Remote Code Execution

MS03-040 (828750): Cumulative Patch for Internet Explorer

MS03-039 (824146): Buffer Overrun In RPCSS Service Could Allow Code Execution

MS03-034 (824105): Flaw in NetBIOS Could Lead to Information Disclosure

MS03-032 (822925): Cumulative Patch for Internet Explorer

MS03-030 (819696): Unchecked Buffer in DirectX Could Enable System Compromise

MS03-026 (823980): Buffer Overrun In RPC Interface Could Allow Code Execution

MS03-023 (823559): Buffer Overrun In HTML Converter Could Allow Code Execution

MS03-020 (818529): Cumulative Patch for Internet Explorer

For additional information on Windows Server 2003 Service Pack 1, please visit the Windows Server 2003 TechCenter at http://go.microsoft.com/fwlink/?LinkId=57073 


Top of pageTop of page