Kumulatives Sicherheitsupdate für den Outlook Express (823353)
This update resolves a public vulnerability. A denial of service vulnerability exists in Outlook Express because of a lack of robust verification for malformed e-mail headers. The vulnerability is documented in the Vulnerability Details section of this bulletin. This update also changes the default security settings for Outlook Express 5.5 Service Pack 2 (SP2). This change is documented in the Frequently Asked Questions related to this security update section of this bulletin.
Microsoft Security Bulletin MS04-018
Sicherheitslücke im Utility Manager ermöglicht das Ausführung von Code (842526)
This update resolves a newly-discovered, privately reported vulnerability. A privilege elevation vulnerability exists in the way that Utility Manager launches applications. A logged-on user could force Utility Manager to start an application with system privileges and could take complete control of the system. The vulnerability is documented in the Vulnerability Details section of this bulletin.
Microsoft Security Bulletin MS04-019
Sicherheitslücke in POSIX kann zur Ausführung von Code benutzt werden (841872)
This update resolves a newly-discovered, privately reported vulnerability. A privilege elevation vulnerability exists in the POSIX operating system component (subsystem). The vulnerability is documented in the Vulnerability Details section of this bulletin.
Microsoft Security Bulletin MS04-020
Sicherheitsupdate für IIS 4.0 (841373)
This update resolves a newly-discovered, privately reported vulnerability.
Microsoft Security Bulletin MS04-021
Sicherheitslücke im Task Planer kann zur Ausführung von Code benutzt werden (841873)
This update resolves a newly-discovered, privately reported vulnerability. A remote code execution vulnerability exists in the Task Scheduler because of an unchecked buffer. The vulnerability is documented in the Vulnerability Details section of this bulletin.
Microsoft Security Bulletin MS04-022
Sicherheitslücke in der HTML Hilfe ermöglicht das Ausführung von Code
This update resolves two newly-discovered vulnerabilities. The HTML Help vulnerability was privately reported and the showHelp vulnerability is public. Each vulnerability is documented in this bulletin in its own Vulnerability Details section.
Microsoft Security Bulletin MS04-023
Sicherheitslücke in der Windows Shell ermöglicht das Ausführung von Code
This update resolves a newly-discovered, publicly reported vulnerability. A remote code execution vulnerability exists in the way that the Windows Shell launches applications.
Microsoft Security Bulletin MS04-024