Home / bulletins MS07-034 - Critical: Cumulative Security Update for Outlook Express and Windows Mail (929123) - Version:1.3
Posted on 27 June 2007
CriticalSeverity Rating: Critical - Revision Note: Updated the Microsoft Knowledge Base Article to reference KB Article 929123 in the Known Issues section.Summary: This critical security update resolves two privately reported and two publicly disclosed vulnerabilities. One of these vulnerabilities could allow remote code execution if a user viewed a specially crafted e-mail using Windows Mail in Windows Vista. The other vulnerabilities could allow information disclosure if a user visits a specially crafted Web page using Internet Explorer and cannot be exploited directly in Outlook Express. For the information disclosure vulnerabilities, users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.