Microsoft Security Patches For June 2005
Wednesday, 15 June 2005 by Michel Roth
Critical:
MS05-025: Cumulative Security Update for Internet Explorer (883939)
Vulnerabilities exist in Internet Explorer, the most severe of these could allow an attacker to take complete control of an affected system.

MS05-026: Vulnerability in HTML Help Could Allow Remote Code Execution (896358)
A vulnerability exists in HTML Help that could allow an attacker to take complete control of an affected system.

MS05-027: Vulnerability in SMB Could Allow Remote Code Execution (896422) A vulnerability exists in Windows that could allow an attacker to take complete control of an affected system. An attacker needs to authenticate to be able to exploit this vulnerability.

Important:
MS05-028: Vulnerability in Web Client Service May Allow Remote Code Execution (896426)
A vulnerability exists in the Windows Web Client Service that could allow an attacker to take complete control of an affected system.

MS05-029: Vulnerability in Outlook Web Access for Exchange Server 5.5 Could Allow Cross-Site Scripting Attacks (895179)
A cross-site scripting vulnerability exists in Outlook Web Access for Microsoft Exchange that could allow an attacker to run a malicious script in Outlook Web Access.

MS05-030: Cumulative Security Update for Outlook Express (897715)
A vulnerability exists in Outlook Express that could allow an attacker to take complete control of an affected system.

MS05-031: Vulnerability in Microsoft Windows Interactive Training Could Allow Remote Code Execution (898458)
A vulnerability exists in Windows that could allow an attacker to take complete control of an affected system. Microsoft Windows Interactive Training is not installed by default.

MS05-032: Vulnerability in Microsoft Agent Could Allow Spoofing (890046)
A vulnerability exists in Microsoft Agent that could enable an attacker to spoof trusted Internet content. An attacker first have to persuade a user to visit the attacker’s site to attempt to exploit this vulnerability.

MS05-033: Vulnerability in Telnet Client Could Allow Information Disclosure (896428)
A vulnerability exists in the Windows Telnet Client that could enable an attacker to retrieve unpredictable information from a system.

MS05-034: Cumulative Security Update for ISA Server 2000 (899753)
Vulnerabilities exist in Microsoft ISA Server 2000 that could allow circumvention of a packet filter and enable an attacker to retrieve unpredictable information from an ISA Server’s cache or from a system behind the ISA server .

Related Items:

Microsoft Security Updates For July 2005 (13 July 2005)
Microsoft Security Updates For December 2005 (14 December 2005)
November's Hotfix: Microsoft Security Bulletin MS05-053 (10 November 2005)
Microsoft Security Updates For February (15 February 2006)
Security Updates Summary For May 2006 (9 May 2006)
Microsoft Security Bulletin For February (9 February 2005)
Microsoft Updates For June: Twelve Security Bulletins - Fixes 21 Security Holes (14 June 2006)
Microsoft Updates For April (13 April 2005)
Microsoft October Security Patches (13 October 2005)
Patches For August, Some Exploits Are In the Wild (10 August 2005)
Comments (0)