- Servers
- Desktops
- Laptops
- Tablet PCs
- PDAs
- Smart phones
- Digital cameras
- Camcorders
- Printers & multifunction devices
- Scanners
- Copiers
- Monitors & projectors
- Hard drives & burners
- Peripherals
- Productivity
- Accounting & finance
- Data management
- Graphics & publishing
- Web publishing
- Operating systems
- Security & utilities
- Downloads & trial software
- Handheld software
- Instant messaging
- Cell phones & plans
- Voice over Internet
- Telephones
- Routers & gateways
- Wireless networking
- Network adapters
- Internet access
- Web hosting
- Domain search
- Hotspot Zone
- Desktops
- Laptops
- Servers and storage
- PDAs
- Cell phones
- Monitors & projectors
- Printers
- Networking and wireless
- Security and utility software
- Productivity software
- Access, hosting, and services
- All business buying guides
CNET Security Center: Your complete source of antivirus and Internet security information.
Nine patches are deemed critical by the software giant.
By Robert Vamosi (August 8, 2006)
Date first reported: 8/8/06
Software vulnerable: Windows 2000, Windows XP, and Windows Server 2003; Microsoft Office 2000, XP, and 2003; plus Microsoft Office for Mac OS X.
What it does: Critical flaws left unpatched could allow remote exploitation of your PC.
Recommendations: Download and install these patches as soon as possible.
Entitled "Vulnerability in Server Service Could Allow Remote Code Execution (921883)," this advisory affects Windows 2000 and XP; it also affects Windows Server 2003. Exploitation could lead to remote code execution.
Entitled "Vulnerability in DNS Resolution Could Allow Remote Code Execution (920683)," this advisory affects Windows 2000 and XP; it also affects Windows Server 2003. Exploitation could lead to remote code execution.
Entitled "Cumulative Security Update for Internet Explorer (918899)," this advisory affects Internet Explorer versions 5.01 through 6 running on Windows 2000 and XP; it also affects Windows Server 2003. Exploitation could lead to remote code execution.
Entitled "Vulnerability in Microsoft Windows Could Allow Remote Code Execution (920214)," this advisory affects Outlook Express 6 running Windows XP SP2, XP x64, and Windows Server 2003 SP1; it does not affect Windows 2000, XP SP1. Exploitation could lead to remote code execution.
Entitled "Vulnerability in Microsoft Management Console Could Allow Remote Code Execution (917008)," this advisory affects Windows 2000 SP4; it does not affect Windows XP, XP x64, or Windows Server 2003. Exploitation could lead to remote code execution.
Entitled "Vulnerability in Windows Explorer Could Allow Remote Code Execution (921398)," this advisory affects Windows 2000 SP4, XP, and Windows Server 2003. Exploitation could lead to remote code execution.
Entitled "Vulnerability in HTML Help Could Allow Remote Code Execution (922616)," this advisory affects Windows 2000 SP4, XP, and Windows Server 2003. Exploitation could lead to remote code execution.
Entitled "Vulnerability in Microsoft Visual Basic for Applications Could Allow Remote Code Execution (921645)," this advisory affects Microsoft Office 2000 SP3, Microsoft Project SP1, Microsoft Access SP3, Microsoft Project 2002, Microsoft Visio 2002, plus Microsoft Works Suites 2004, 2005, and 2006; it does not affect Microsoft Office 2003 SP1 and SP2. Exploitation could lead to remote code execution.
Entitled "Vulnerabilities in Microsoft Office Could Allow Remote Code Execution (922968)," this advisory affects Microsoft Office 2000 SP3, specifically PowerPoint 2000; Microsoft Office XP SP3, specifically PowerPoint 2002; Microsoft Office 2003, specifically PowerPoint 2003; and Microsoft Office for Mac OS X, specifically PowerPoint 2004. It does not affect Microsoft Powerpoint Viewer 2003, or Microsoft Works Suites 2004, 2005, and 2006. Exploitation could lead to remote code execution.
Entitled "Vulnerability in Windows Kernel Could Result in Elevation of Privilege (920958)," this advisory affects Windows 2000 SP4; it does not affect Windows XP or Windows Server 2003. Exploitation could lead to escalation of privileges on a compromised machine.
Entitled "Vulnerabilities in Microsoft Windows Hyperlink Object Library Could Allow Remote Code Execution (920670)," this advisory affects Windows 2000 and XP; it also affects Windows Server 2003. Exploitation could lead to remote code execution.
Entitled "Vulnerability in Windows Kernel Could Result in Remote Code Execution (917422)," this advisory affects Windows 2000 and XP; it also affects Windows Server 2003. Exploitation could lead to remote code execution.
