KB887219: KB 887219: MS05004: MS05-004

Posted By: ensiform

A vulnerability in the ASP.NET path validation Could Allow Unauthorized Access.

This is a re-release of the MS05-004 bulletin. This update was released because it was later found that Itanium-based versions of Windows Server 2003, .NET Framework 1.1 Service Pack 1 for the 64-bit versions of the Microsoft Windows Server 2003, and Windows XP Professional 64-bit Edition are also affected by the aforementioned vulnerability.

For more information, please see the following links:

Home Users

IT Professionals

Update version is dependent on the Microsoft Windows version and .NET Framework version.

Security Update 886906, Microsoft .NET Framework 1.0 Service Pack 3:
  • Microsoft Windows 2000 Service Pack 3 or Windows 2000 Service Pack 4
  • Windows XP Service Pack 1 or Windows XP Service Pack 2
  • Windows Server 2003, Windows Server 2003 Service Pack 1, or Windows Server 2003 Service Pack 2
  • Windows Server 2003 64-bit Edition or Windows Server 2003 64-bit Edition Service Pack 2
  • Windows Server 2003 for Itanium-based Systems, Windows Server 2003 with Service Pack1 for Itanium-based Systems, or Windows Server 2003 with Service Pack 2 for Itanium-based Systems
  • Windows Vista
Security Update 887998, Microsoft .NET Framework 1.0 Service Pack 3:
  • Windows XP Tablet PC Edition
  • Windows XP Media Center Edition
Security Update 886905, Microsoft .NET Framework 1.0 Service Pack 2:
  • Windows 2000 Service Pack 3 or Windows 2000 Service Pack 4
  • Windows XP Service Pack 1 or Windows XP Service Pack 2
  • Windows Server 2003, Windows Server 2003 Service Pack 1, or Windows Server 2003 Service Pack 2
  • Windows Server 2003 64-bit Edition or Windows Server 2003 64-bit Edition Service Pack 2
  • Windows Server 2003 for Itanium-based Systems, Windows Server 2003 with Service Pack 1 for Itanium-based Systems, or Windows Server 2003 with Service Pack 2 for Itanium-based Systems
Security Update 887999, Microsoft .NET Framework 1.0 Service Pack 2:
  • Windows XP Tablet PC Edition
  • Windows XP Media Center Edition
Security Update 886903, Microsoft .NET Framework 1.1 Service Pack 1:
  • Windows 2000 Service Pack 3 or Windows 2000 Service Pack 4
  • Windows XP Service Pack 1 or Windows XP Service Pack 2
  • Windows XP Tablet PC Edition
  • Windows XP Media Center Edition
  • Windows XP Professional 64-bit Edition or Windows XP Professional 64-bit Edition Service Pack 2
  • Windows Server 2003, Windows Server 2003 Service Pack 1, or Windows Server 2003 Service Pack 2
  • Windows Server 2003 64-bit Edition or Windows Server 2003 64-bit Edition Service Pack 2
  • Windows Server 2003 for Itanium-based Systems, Windows Server 2003 with Service Pack 1 for Itanium-based Systems, or Windows Server 2003 with Service Pack 2 for Itanium-based Systems
Security Update 886904, Microsoft .NET Framework 1.1:
  • Windows 2000 Service Pack 3 or Windows 2000 Service Pack 4
  • Windows XP Service Pack 1 or Windows XP Service Pack 2
  • Windows XP Tablet PC Edition
  • Windows XP Media Center Edition
  • Windows Server 2003, Windows Server 2003 Service Pack 1, or Windows Server 2003 Service Pack 2
  • Windows Server 2003 64-bit Edition or Windows Server 2003 64-bit Edition Service Pack 2
  • Windows Server 2003 for Itanium-based Systems, Windows Server 2003 with Service Pack 1 for Itanium-based Systems, or Windows Server 2003 with Service Pack 2 for Itanium-based Systems

The following .NET Framework versions are affected by this vulnerability:

  • Microsoft .NET Framework 1.0 Service Pack 2
  • Microsoft .NET Framework 1.0 Service Pack 3
  • Microsoft .NET Framework 1.1
  • Microsoft .NET Framework 1.1 Service Pack 1

Keywords: kbfix kbbug kbsecvulnerability kbsecurity kbsecbulletin KB887219 KB 887219 MS05004 MS05-004

Original Microsoft Support Article:
http://support.microsoft.com/kb/887219/en-us

Comment:

Valid XHTML 1.0 Transitional

Valid CSS!

eXTReMe Tracker