Win 95/98/ME/NT/2000/XP
Microsoft Security Bulletin Center - 2003
Subscribe to the Microsoft Security Notification Service
Microsoft Security Bulletin MS03-001
Unchecked Buffer in Locator Service Could Lead to Code Execution (810833)
Affected Software:
MS Windows XP
MS Windows 2000
MS Windows NT 4.0
MS Windows NT 4.0, Terminal Server Edition
Microsoft Security Bulletin MS03-002
Cumulative Patch for Microsoft Content Management Server (810487)
Affected Software:
Microsoft Content Management Server 2001
Microsoft Security Bulletin MS03-003
Flaw in how Outlook 2002 handles V1 Exchange Server Security Certificates could lead to Information Disclosure (812262)
Affected Software:
Microsoft Outlook 2002
Microsoft Security Bulletin MS03-004
Cumulative Patch for Internet Explorer (810847)
Affected Software:
MS Internet Explorer 5.01
MS Internet Explorer 5.5
MS Internet Explorer 6.0
Microsoft Security Bulletin MS03-005
Unchecked Buffer in Windows Redirector Could Allow Privilege Elevation (810577)
Affected Software:
Microsoft Windows XP
Microsoft Security Bulletin MS03-006
Flaw in Windows Me Help and Support Center Could Enable Code Execution (812709)
Affected Software:
Microsoft Windows Me
Microsoft Security Bulletin MS03-007
Unchecked Buffer In Windows Component Could Cause Web Server Compromise (815021)
Affected Software:
Microsoft Windows 2000
Microsoft Security Bulletin MS03-008
Flaw in Windows Script Engine Could Allow Code Execution (814078)
Affected Software:
MS Windows 98
MS Windows 98 Second Edition
MS Windows Me MS Windows NT 4.0
MS Windows NT 4.0, Terminal Server Edition
MS Windows 2000
MS Windows XP
Microsoft Security Bulletin MS03-009
Flaw In ISA Server DNS Intrusion Detection Filter Can Cause Denial Of Service (331065)
Affected Software:
Microsoft ISA Server
Microsoft Security Bulletin MS03-010
Flaw in RPC Endpoint Mapper Could Allow Denial of Service Attacks (331953)
Affected Software:
Microsoft Windows NT 4
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Security Bulletin MS03-011
Flaw in Microsoft VM Could Enable System Compromise (816093)
Affected Software:
All builds of the Microsoft VM up to and including build 5.0.3809
Microsoft Security Bulletin MS03-012
Flaw In Winsock Proxy Service And ISA Firewall Service Can Cause Denial Of Service (331066)
Affected Software:
Microsoft Proxy Server 2.0
Microsoft ISA Server
Microsoft Security Bulletin MS03-013
Buffer Overrun in Windows Kernel Message Handling could Lead to Elevated Privileges (811493)
Affected Software:
MS Windows NT 4.0
MS Windows NT 4.0 Server, Terminal Server Edition
MS Windows 2000
MS Windows XP
Microsoft Security Bulletin MS03-014
Cumulative Patch for Outlook Express (330994)
Affected Software:
Microsoft Outlook Express 5.5
Microsoft Outlook Express 6.0
Microsoft Security Bulletin MS03-015
Cumulative Patch for Internet Explorer (813489)
Affected Software:
Microsoft Internet Explorer 5.01
Microsoft Internet Explorer 5.5
Microsoft Internet Explorer 6.0
Microsoft Security Bulletin MS03-016
Cumulative Patch for BizTalk Server (815206)
Affected Software:
Microsoft BizTalk Server 2000
Microsoft BizTalk Server 2002
Microsoft Security Bulletin MS03-017
Flaw in Windows Media Player Skins Downloading could allow Code Execution (817787)
Affected Software:
MS Windows Media Player 7.1
MS Windows Media Player for Windows XP (Version 8.0)
Microsoft Security Bulletin MS03-018
Cumulative Patch for Internet Information Service (811114)
Affected Software:
Microsoft Internet Information Server 4.0
Microsoft Internet Information Services 5.0 and 5.1
Microsoft Security Bulletin MS03-019
Flaw in ISAPI Extension for Windows Media Services Could Cause Denial of Service (817772)
Affected Software:
Microsoft Windows NT 4.0
Microsoft Windows 2000
Microsoft Security Bulletin MS03-020
Cumulative Patch for Internet Explorer (818529)
Affected Software:
MS Internet Explorer 5.01
MS Internet Explorer 5.5
MS Internet Explorer 6.0
MS Internet Explorer 6.0 for Windows Server 2003
Microsoft Security Bulletin MS03-021
Flaw In Windows Media Player May Allow Media Library Access (819639)
Affected Software:
Microsoft Windows Media Player 9 Series
Microsoft Security Bulletin MS03-022
Flaw in ISAPI Extension for Windows Media Services Could Cause Code Execution (822343)
Affected Software:
Microsoft Windows 2000
Microsoft Security Bulletin MS03-023
Buffer Overrun In HTML Converter Could Allow Code Execution (823559)
Affected Software:
MS Win 98
MS Win 98 SE
MS Win Me
MS Win NT 4.0 Server
MS Win NT 4.0 Terminal Server Edition
MS Win 2000
MS Win XP
MS Win Server 2003
Microsoft Security Bulletin MS03-024
Buffer Overrun in Windows Could Lead to Data Corruption (817606)
Affected Software:
MS Win NT Server 4.0
MS Win NT Server 4.0 Terminal Server Edition
MS Win 2000 SP3
Windows XP Pro
Microsoft Security Bulletin MS03-025
Flaw in Windows Message Handling through Utility Manager Could Enable Privilege Elevation (822679)
Affected Software:
Microsoft Windows 2000 SP3
Microsoft Security Bulletin MS03-026
Buffer Overrun In RPC Interface Could Allow Code Execution (823980)
Affected Software:
MS Win NT® 4.0
MS Win NT 4.0 Terminal Services Edition
MS Win 2000
MS Win XP
MS Win Server™ 2003
Microsoft Security Bulletin MS03-027
Unchecked Buffer in Windows Shell Could Enable System Compromise (821557)
Affected Software:
Microsoft Windows XP
Microsoft Security Bulletin MS03-028
Flaw in ISA Server Error Pages Could Allow Cross-Site Scripting Attack (816456)
Affected Software:
Microsoft Internet Security and Acceleration (ISA) Server 2000
Microsoft Security Bulletin MS03-029
Flaw in Windows Function Could Allow Denial of Service (823803)
Affected Software:
Microsoft Windows NT 4.0 Server
Microsoft Windows NT 4.0 Terminal Server Edition
Microsoft Security Bulletin MS03-030
Unchecked Buffer in DirectX Could Enable System Compromise (819696)
Affected Software:
Microsoft DirectX® 5.2 on Windows 98
Microsoft DirectX 6.1 on Windows 98 SE
Microsoft DirectX 7.0a on Windows Millennium Edition
Microsoft DirectX 7.0 on Windows 2000
Microsoft DirectX 8.1 on Windows XP
Microsoft DirectX 8.1 on Windows Server 2003
Microsoft DirectX 9.0a when installed on Windows Millennium Edition
Microsoft DirectX 9.0a when installed on Windows 2000
Microsoft DirectX 9.0a when installed on Windows XP
Microsoft DirectX 9.0a when installed on Windows Server 2003
Microsoft Windows NT 4.0 with either Windows Media Player 6.4 or Internet Explorer 6 Service Pack 1 installed.
Microsoft Windows NT 4.0, Terminal Server Edition with either Windows Media Player 6.4 or Internet Explorer 6 Service Pack 1 installed.
Microsoft Security Bulletin MS03-031
Cumulative Patch for Microsoft SQL Server (815495)
Affected Software:
Microsoft SQL Server 7.0
Microsoft Data Engine (MSDE) 1.0
Microsoft SQL Server 2000
Microsoft SQL Server 2000 Desktop Engine (MSDE 2000)
Microsoft SQL Server 2000 Desktop Engine (Windows)
Microsoft Security Bulletin MS03-032
Cumulative Patch for Internet Explorer (822925)
Affected Software:
Microsoft Internet Explorer 5.01
Microsoft Internet Explorer 5.5
Microsoft Internet Explorer 6.0
Microsoft Internet Explorer 6.0 for Windows Server 2003
Microsoft Security Bulletin MS03-033
Unchecked Buffer in MDAC Function Could Enable System Compromise (823718)
Affected Software:
Microsoft Data Access Components 2.5
Microsoft Data Access Components 2.6
Microsoft Data Access Components 2.7
Microsoft Security Bulletin MS03-034
Flaw in NetBIOS Could Lead to Information Disclosure (824105)
Affected Software:
Microsoft Windows NT 4.0® Server
Microsoft Windows NT 4.0, Terminal Server Edition
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Server™ 2003
Microsoft Security Bulletin MS03-035
Flaw in Microsoft Word Could Enable Macros to Run Automatically (827653)
Affected Software:
Microsoft Word 97
Microsoft Word 98 (J)
Microsoft Word 2000
Microsoft Word 2002
Microsoft Works Suite 2001
Microsoft Works Suite 2002
Microsoft Works Suite 2003
Microsoft Security Bulletin MS03-036
Buffer Overrun in WordPerfect Converter Could Allow Code Execution (827103)
Affected Software:
Microsoft Office 97
Microsoft Office 2000
Microsoft Office XP
Microsoft Word 98 (J)
Microsoft FrontPage 2000
Microsoft FrontPage 2002
Microsoft Publisher 2000
Microsoft Publisher 2002
Microsoft Works Suite 2001
Microsoft Works Suite 2002
Microsoft Works Suite 2003
Microsoft Security Bulletin MS03-037
Flaw in Visual Basic for Applications Could Allow Arbitrary Code Execution (822715)
Affected Software:
Microsoft Visual Basic for Applications SDK 5.0
Microsoft Visual Basic for Applications SDK 6.0
Microsoft Visual Basic for Applications SDK 6.2
Microsoft Visual Basic for Applications SDK 6.3
Products which Include the Affected Software:
Microsoft Access 97
Microsoft Access 2000
Microsoft Access 2002
Microsoft Excel 97
Microsoft Excel 2000
Microsoft Excel 2002
Microsoft PowerPoint 97
Microsoft PowerPoint 2000
Microsoft PowerPoint 2002
Microsoft Project 2000
Microsoft Project 2002
Microsoft Publisher 2002
Microsoft Visio 2000
Microsoft Visio 2002
Microsoft Word 97
Microsoft Word 98(J)
Microsoft Word 2000
Microsoft Word 2002
Microsoft Works Suite 2001
Microsoft Works Suite 2002
Microsoft Works Suite 2003
Microsoft Business Solutions Great Plains 7.5
Microsoft Business Solutions Dynamics 6.0
Microsoft Business Solutions Dynamics 7.0
Microsoft Business Solutions eEnterprise 6.0
Microsoft Business Solutions eEnterprise 7.0
Microsoft Business Solutions Solomon 4.5
Microsoft Business Solutions Solomon 5.0
Microsoft Business Solutions Solomon 5.5
Microsoft Security Bulletin MS03-038
Unchecked buffer in Microsoft Access Snapshot Viewer Could Allow Code Execution (827104)
Affected Software:
Microsoft Access 97
Microsoft Access 2000
Microsoft Access 2002
Microsoft Security Bulletin MS03-039
Buffer Overrun In RPCSS Service Could Allow Code Execution (824146)
Affected Software:
Microsoft Windows NT Workstation 4.0
Microsoft Windows NT Server® 4.0
Microsoft Windows NT Server 4.0, Terminal Server Edition
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Server 2003
Not Affected Software:
Microsoft Windows Millennium Edition
Microsoft Security Bulletin MS03-040
Cumulative Patch for Internet Explorer (828750)
Affected Software:
Internet Explorer 5.01
Internet Explorer 5.5
Internet Explorer 6.0
Internet Explorer 6.0 for Windows Server 2003
Microsoft Security Bulletin MS03-041
Vulnerability in Authenticode Verification Could Allow Remote Code Execution (823182)
Affected Software:
Microsoft Windows NT Workstation 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Terminal Server Edition, Service Pack 6
Microsoft Windows 2000, Service Pack 2
Microsoft Windows 2000, Service Pack 3
Microsoft Windows 2000, Service Pack 4
Microsoft Windows XP Gold, Service Pack 1
Microsoft Windows XP 64-bit Edition
Microsoft Windows XP 64-bit Edition Version 2003
Microsoft Windows Server 2003
Microsoft Windows Server 2003 64-bit Edition
Non Affected Software:
Microsoft Windows Millennium Edition
Microsoft Security Bulletin MS03-042
Buffer Overflow in Windows Troubleshooter ActiveX Control Could Allow Code Execution (826232)
Affected Software:
Microsoft Windows 2000, Service Pack 2
Microsoft Windows 2000, Service Pack 3
Microsoft Windows 2000, Service Pack 4
Non Affected Software:
Microsoft Windows NT 4.0
Microsoft Windows NT Server 4.0, Terminal Server Edition
Microsoft Windows Millennium Edition
Microsoft Windows XP
Microsoft Windows Server 2003
Microsoft Security Bulletin MS03-043
Buffer Overrun in Messenger Service Could Allow Code Execution (828035)
Affected Software:
Microsoft Windows NT Workstation 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Terminal Server Edition, Service Pack 6
Microsoft Windows 2000, Service Pack 2
Microsoft Windows 2000, Service Pack 3
Microsoft Windows 2000, Service Pack 4
Microsoft Windows XP Gold, Service Pack 1
Microsoft Windows XP 64-bit Edition
Microsoft Windows XP 64-bit Edition Version 2003
Microsoft Windows Server 2003
Microsoft Windows Server 2003 64-bit Edition
Non Affected Software:
Microsoft Windows Millennium Edition
Microsoft Security Bulletin MS03-044
Buffer Overrun in Windows Help and Support Center Could Lead to System Compromise (825119)
Affected Software:
Microsoft Windows Millennium Edition
Microsoft Windows NT Workstation 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Terminal Server Edition, Service Pack 6
Microsoft Windows 2000, Service Pack 2
Microsoft Windows 2000, Service Pack 3
Microsoft Windows 2000, Service Pack 4
Microsoft Windows XP Gold, Service Pack 1
Microsoft Windows XP 64-bit Edition
Microsoft Windows XP 64-bit Edition Version 2003
Microsoft Windows Server 2003
Microsoft Windows Server 2003 64-bit Edition
Microsoft Security Bulletin MS03-045
Buffer Overrun in the ListBox and in the ComboBox Control Could Allow Code Execution (824141)
Affected Software:
Microsoft Windows NT Workstation 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Terminal Server Edition, Service Pack 6
Microsoft Windows 2000, Service Pack 2
Microsoft Windows 2000, Service Pack 3
Microsoft Windows 2000, Service Pack 4
Microsoft Windows XP Gold, Service Pack 1
Microsoft Windows XP 64 bit Edition
Microsoft Windows XP 64 bit Edition Version 2003
Microsoft Windows Server 2003
Microsoft Windows Server 2003 64 bit Edition
Non Affected Software:
Microsoft Windows Millennium Edition
Microsoft Security Bulletin MS03-046
Vulnerability in Exchange Server Could Allow Arbitrary Code Execution (829436)
Affected Software:
Microsoft Exchange Server 5.5, Service Pack 4
Microsoft Exchange 2000 Server, Service Pack 3
Non Affected Software:
Microsoft Exchange Server 2003
Microsoft Security Bulletin MS03-047
Vulnerability in Exchange Server 5.5 Outlook Web Access Could Allow Cross-Site Scripting Attack (828489)
Affected Software:
Microsoft Exchange Server 5.5, Service Pack 4
Non Affected Software:
Microsoft Exchange 2000 Server
Microsoft Exchange Server 2003
Microsoft Security Bulletin MS03-048
Cumulative Security Update for Internet Explorer (824145)
Affected Software:
Microsoft Windows 98
Microsoft Windows 98 Second Edition
Microsoft Windows Millennium Edition
Microsoft Windows NT® Workstation 4.0 Service Pack 6a
Microsoft Windows NT Server 4.0 Service Pack 6a
Microsoft Windows NT Server 4.0 Terminal Server Edition, Service Pack 6
Microsoft Windows 2000 Service Pack 2, Service Pack 3, Service Pack 4
Microsoft Windows XP, Microsoft Windows XP Service Pack 1
Microsoft Windows XP 64-Bit Edition
Microsoft Windows XP 64-Bit Edition Version 2003
Microsoft Windows Server® 2003
Microsoft Windows Server 2003, 64-Bit Edition
Microsoft Security Bulletin MS03-049
Buffer Overrun in the Workstation Service Could Allow Code Execution (828749)
Affected Software:
Microsoft Windows 2000 Service Pack 2, Service Pack 3, Service Pack 4
Microsoft Windows XP, Microsoft Windows XP Service Pack 1
Microsoft Windows XP 64-Bit Edition
Microsoft Security Bulletin MS03-050
Vulnerability in Exchange Server Could Allow Arbitrary Code Execution (829436)
Affected Software:
Microsoft Excel 97
Microsoft Excel 2000
Microsoft Excel 2002
Microsoft Word 97
Microsoft Word 98(J)
Microsoft Word 2000
Microsoft Word 2002
Microsoft Works Suite 2001
Microsoft Works Suite 2002
Microsoft Works Suite 2003
Microsoft Works Suite 2004
Non Affected Software:
Microsoft Office Word 2003
Microsoft Office Excel 2003
Microsoft Security Bulletin MS03-051
Buffer Overrun in Microsoft FrontPage Server Extensions Could Allow Code Execution (813360)
Affected Software:
Microsoft Windows 2000 Service Pack 2, Service Pack 3
Microsoft Windows XP, Microsoft Windows XP Service Pack 1
Microsoft Office XP, Microsoft Office XP Service Release 1
Non Affected Software:
Microsoft Windows Millennium Edition
Microsoft Windows NT Workstation 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Service Pack 6a
Microsoft Windows NT Server 4.0, Terminal Server Edition, Service Pack 6
Microsoft Windows 2000 Service Pack 4
Microsoft Windows XP 64-Bit Edition Version 2003
Microsoft Windows Server 2003 (Windows SharePoint Services)
Microsoft Windows Server 2003 64-Bit Edition (Windows SharePoint Services)
Microsoft Office System 2003
GOTO: Microsoft Security Bulletin Center - 2000
GOTO: Microsoft Security Bulletin Center - 2001
GOTO: Microsoft Security Bulletin Center - 2002
GOTO: Microsoft Security Bulletin Center - 2004
GOTO: Microsoft Security Bulletin Center - 2005
GOTO: Microsoft Security Bulletin Center - 2006
GOTO: Microsoft Security Bulletin Center - 2007
GOTO: Microsoft Security Bulletin Center - 2008