Home / bulletins

MS10-024 - Important: Vulnerabilities in Microsoft Exchange and Windows SMTP Service Could Allow Denial of Service (981832) - Version:1.2

Posted on 21 April 2010

There is an newer version: MS10-024 - Version: 2.0

Important

Severity Rating: Important - Revision Note: V1.2 (April 15, 2010): Added an entry in the Update FAQ to announce a detection change to the update for Microsoft Exchange Server 2000 Service Pack 3. This is a detection change only. There were no changes to the security update files in this bulletin. Customers who have already installed the update successfully do not need to reinstall.Summary: This security update resolves one publicly disclosed vulnerability and one privately reported vulnerability in Microsoft Exchange and Windows SMTP Service. The more severe of these vulnerabilities could allow denial of service if an attacker sent a specially crafted DNS response to a computer running the SMTP service. By default, the SMTP component is not installed on Windows Server 2003, Windows Server 2003 x64 Edition, or Windows XP Professional x64 Edition.

Link

Other versions

 

TOP