Used Microsoft Security Bulletin MS03-046 for Windows? Share your experience and help other users.


Download.com has chosen not to provide a direct-download link for this product and offers this page for informational purposes only.

Developer’s Description

Vulnerability in Exchange Server Could Allow Arbitrary Code Execution
In Exchange Server 5.5, a security vulnerability exists in the Internet Mail Service that could allow an unauthenticated attacker to connect to the SMTP port on an Exchange server and issue a specially-crafted extended verb request that could allocate a large amount of memory. This could shut down the Internet Mail Service or could cause the server to stop responding because of a low memory condition.

In Exchange 2000 Server, a security vulnerability exists that could allow an unauthenticated attacker to connect to the SMTP port on an Exchange server and issue a specially-crafted extended verb request. That request could cause a denial of service that is similar to the one that could occur on Exchange 5.5. Additionally, if an attacker issues the request with carefully chosen data, the attacker could cause a buffer overrun that could allow the attacker to run malicious programs of their choice in the security context of the SMTP service.



Explore More


Full Specifications

GENERAL
Release
Latest update
Version
829436
OPERATING SYSTEMS
Platform
Windows
Operating System
  • Windows 10
  • Windows 98
  • Windows XP
  • Windows 2000
Additional Requirements
  • Microsoft Exchange Server 5.5, Service Pack 4
  • Microsoft Exchange 2000 Server, Service Pack 3
POPULARITY
Total Downloads
88
Downloads Last Week
0

Report Software

Program available in other languages


Last Updated


Download.com
Your review for Microsoft Security Bulletin MS03-046