Security Update, February 22, 2001

Published: February 22, 2001
**
Download

English

DownloadSecurity Update
346 KB file

Arabic

DownloadSecurity Update
346 KB file

Chinese (Simplified)

DownloadSecurity Update
346 KB file

Chinese (Traditional)

DownloadSecurity Update
346 KB file

Czech

DownloadSecurity Update
346 KB file

Danish

DownloadSecurity Update
346 KB file

Dutch

DownloadSecurity Update
346 KB file

Finnish

DownloadSecurity Update
346 KB file

French

DownloadSecurity Update
346 KB file

German

DownloadSecurity Update
346 KB file

Greek

DownloadSecurity Update
346 KB file

Hebrew

DownloadSecurity Update
346 KB file

Hungarian

DownloadSecurity Update
346 KB file

Italian

DownloadSecurity Update
346 KB file

Japanese

DownloadSecurity Update
346 KB file

Korean

DownloadSecurity Update
346 KB file

Norwegian

DownloadSecurity Update
346 KB file

Polish

DownloadSecurity Update
346 KB file

Portugese (Brazilian)

DownloadSecurity Update
346 KB file

Portugese

DownloadSecurity Update
346 KB file

Russian

DownloadSecurity Update
346 KB file

Spanish

DownloadSecurity Update
346 KB file

Swedish

DownloadSecurity Update
346 KB file

Turkish

DownloadSecurity Update
346 KB file
**

Read This First

This update resolves the "Malformed vCard" security vulnerability in Outlook and Outlook Express. This vulnerability exists because the component in Outlook and Outlook Express that processes the vCard (virtual business card) has an unchecked buffer (a temporary data storage area without a string length limit). A malicious user can exploit this vulnerability by creating a vCard that contains specially malformed data, and sending it to another user. When the recipient opens the vCard, the data overruns the buffer. This causes the e-mail program to stop functioning until it is restarted. In a more serious case, a malicious user could exploit the unchecked buffer to run unauthorized on the other user's computer. Download now to ensure that your e-mail service processes vCards correctly.

For more information about this vulnerability, please read Microsoft Security Bulletin MS01-012.

Top of pageTop of page

System Requirements

This update applies to:

Internet Explorer 5.01 Service Pack 1.

Internet Explorer 5.5 Service Pack 1.

Note: Because this vulnerability exists in a component of Outlook Express, which ships as a part of Internet Explorer, the update version you download is dependent upon whether you have Internet Explorer 5.5 Service Pack 1 or Internet Explorer 5.01 Service Pack 1.

Top of pageTop of page

How to download and install

Select your language from the download box on the right.

Top of pageTop of page

How to use

Restart your computer to complete the installation.

Top of pageTop of page

How to uninstall

Uninstall is not available.


For More Information

Top of pageTop of page