Information Technology Services: Alerts Archive

ALARM Group ALERTclick for a description of ALARM, The Computing Alert System
Alert Number:  020805-01
Alert Date:  02/08/05
Alert Title:  Microsoft releases twelve security bulletins for February
Update-to:  none
OS/Platform/Application:   Microsoft Windows XP (Service Packs 1 and 2, Professional, Home Edition)
 Microsoft Windows Server 2003 (Including Datacenter, Enterprise, Small
 Business, Standard, Gold and Web Editions)
 Microsoft Windows 2000 (Including Advanced, Professional, and Data Center
 Server Editions, Service Packs 3 and 4)
 Microsoft Windows NT Server 4.0 (Including Enterprise and Terminal Server
 Editions, Service Packs 6 and 6a)
 Microsoft Windows 98, 98 SE, ME, Gold
 Microsoft Exchange Server (including 2003 Gold, Exchange Server 2003 SP1, 5.5 SP4, 5.0 SP2)
 Microsoft Proxy Server 2.0 SP1
 Microsoft ISA Server 2000 SP1 and SP2
 Microsoft Internet Explorer (Including version 5.01 SP3 and 4, Version 5.5, Version 6 SP1)
 Windows Media Player 9.0 Gold
 Windows Messenger 4.7 and 5.x Gold
 MSN Messenger Gold
 Office XP SP2 and SP3
 Outlook 2002 SP2 and SP3
 Outlook 2003 Gold
 Word 2002 SP2 and SP3
 Word 2003 Gold and SP1
 Excel 2002 SP2 and SP3
 Excel 2003 Gold and SP1
 PowerPoint 2002 SP2 and SP3
 PowerPoint 2003 Gold and SP1
 Project 2002 SP2 and SP3
 FrontPage 2002 SP2 and SP3
 FrontPage 2003 Gold and SP1
 Publisher 2002 SP2 and SP3
 Publisher 2003 Gold and SP1
 Access 2002 SP2, and SP3
 Access 2003 Gold and SP1
 Office 2003 Gold and SP1
 InfoPath 2003 Gold and SP1
 OneNote 2003 Gold, and SP1
 Windows SharePoint Services SP1 and Team Services 2002 Gold
 Visio 2002 SP2 and SP3
 Works 2002 Gold, Works 2003 Gold, Works 2004 Gold
 Microsoft.Net Framework 1.0 SP2, 1.0 SP3, 1.1 Gold, and 1.1 SP1
Category:  ALERT
Severity:  HIGH
Attention:  Windows System Administrators, Desktop Support Personnel

Summary:  On February 8, Microsoft sent notice of its monthly security bulletin release. This monthly release includes a total of 8 bulletins listed as "critical", 3 as "important" and 1 as "moderate". The bulletins (listed as MS05-004 through MS05-015) address a variety of vulnerabilities across multiple Operating Systems and applications.

Recommended Actions:  The large volume of information released by Microsoft for this month's set of bulletin releases makes it impossible to provide an easy-to-read summary in this alert. It is recommended that you read the "current" Security bulletin page and/or the February summary page for an overview of the vulnerabilities and affected systems/software (all relevant links are provided below). The "current" Security Bulletin page provides the best quick reference for determining if your system(s) require updating. Please read any bulletins that pertain to your managed systems (including all associated caveats, Knowledge base articles and FAQs) and (if appropriate) apply the patch(es) immediately as per the instructions detailed in the bulletin(s).

ITS Actions:  At this time, ITS is taking no specific additional actions to address these updates.

Resources:
"Current" Security bulletin page (useful listing of affected systems and software):
Security bulletin for February 2005 Jump Page:
Microsoft Security Bulletin MS05-004:
Microsoft Security Bulletin MS05-005:
Microsoft Security Bulletin MS05-006:
Microsoft Security Bulletin MS05-007:
Microsoft Security Bulletin MS05-008:
Microsoft Security Bulletin MS05-009:
Microsoft Security Bulletin MS05-010:
Microsoft Security Bulletin MS05-011:
Microsoft Security Bulletin MS05-012:
Microsoft Security Bulletin MS05-013:
Microsoft Security Bulletin MS05-014:
Microsoft Security Bulletin MS05-015:

University at Albany homepage