IIS5 Malformed URL Service Failure Vulnerability Patch for Windows
Key Details of IIS5 Malformed URL Service Failure Vulnerability Patch
- Fix a vulnerability cause a memory allocation error that would result in the failure of the IIS service.
- Last updated on 2/8/2017
- There have been 9 updates
- Virus scan status:
Clean (it's extremely likely that this software program is clean)
Developer's Description
Exchange 2000 is affected by the same vulnerability. To support Web-based mail clients, it introduces the ability to address items on the store via URLs. This is done in part by using IIS 5.0, and in part via code that is specific to Exchange 2000. Both pieces of code contain the flaw, but the effect of exploiting the vulnerability via either would be the same--it could be used to cause the IIS service to fail, but could not be used to attack the Exchange service itself. That is, successfully attacking an Exchange server via this vulnerability would disrupt Web-based mail clients' use of the server, but not that of MAPI-based mail clients like Outlook.
Because the flaw occurs in two different code modules, one of which installs as part of IIS 5.0 and both of which install as part of Exchange 2000, it is important for Exchange 2000 administrators to install both this IIS patch, as well as the Exchange patch.
Explore More
Forefront Unified Access Gateway (UAG) 2010
Trial versionVPNetMon
FreeSecureNTFS
PaidCheckQuota Professional
Trial versionMicrosoft IIS4 Session ID Cookie Marking Vulnerability Patch
FreeProxyList Grabber
Trial versionNetResident
Trial versionWinShield for Windows
Trial versionMs-DOS Lock
Trial versionPassX
FreeProxEasy Desktop Client
Trial versionCryptomax CleanUSB
Trial version