MS04-007
ASN.1 Vulnerability Could Allow Code Execution (828028)
http://www.microsoft.com/technet/security/Bulletin/MS04-007.asp
--
http://www.sbslinks.com/really.htm

Re: << Security bulletin 04-007 - Critical >>> by Dave

Dave
Tue Feb 10 12:52:35 CST 2004

On track for 62 this year... ;?}
DS

"Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP]" <sbradcpa@pacbell.net>
wrote in message news:eX0uuLA8DHA.3348@TK2MSFTNGP09.phx.gbl...
> MS04-007
> ASN.1 Vulnerability Could Allow Code Execution (828028)
> http://www.microsoft.com/technet/security/Bulletin/MS04-007.asp
> --
> http://www.sbslinks.com/really.htm
>



Re: << Security bulletin 04-007 - Critical >>> by Bill

Bill
Tue Feb 10 13:37:26 CST 2004

How you get these so quick....???

Im signed up for security alerts and recd nothing so far.

Also not on Windows update or hfnetcklt yet



--
www.smallbizserver.net (2000 and 2003)

microsoft.public.backoffice.smallbiz2000 (2000 NG)

microsoft.public.windows.server.sbs (2003 NG)

http://groups.google.com/groups?hl=en&safe=off&group=microsoft.public.backoffice.smallbiz2000

http://groups.google.com/groups?hl=en&lr=lang_en&ie=UTF-8&safe=off&group=microsoft.public.windows.server.sbs

http://www.sbslinks.com/

"Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP]" <sbradcpa@pacbell.net>
wrote in message news:eX0uuLA8DHA.3348@TK2MSFTNGP09.phx.gbl...
> MS04-007
> ASN.1 Vulnerability Could Allow Code Execution (828028)
> http://www.microsoft.com/technet/security/Bulletin/MS04-007.asp
> --
> http://www.sbslinks.com/really.htm
>



Re: << Security bulletin 04-007 - Critical >>> by Susan

Susan
Tue Feb 10 14:09:25 CST 2004

Eric Schultze on PatchManagement.org posted them. Ask him... ;-)

Bill (nee Gizmo) Swan wrote:

> How you get these so quick....???
>
> Im signed up for security alerts and recd nothing so far.
>
> Also not on Windows update or hfnetcklt yet
>
>
>

--
http://www.sbslinks.com/really.htm


Re: << Security bulletin 04-007 - Critical >>> by Jeff

Jeff
Tue Feb 10 19:39:28 CST 2004

THIS IS NOT A HUMOROUS VULNERABILITY.

Role this patch out now!


Wide open, no workarounds, full system execution rights....extensive range
of attack vectors.



CRITICAL ACTION NEEDED FOR SBSers <<<<<How to patch your Network>>>>>> by Susan

Susan
Tue Feb 10 23:35:40 CST 2004

There is a security bulletin 04-007 that just came out. It's a nasty
one. So here's some steps you need to take NOW... SOON.

1. Reboot your server before patching. [okay I'll admit I don't always
do that, so I'll let you slide on that one]
2. Manually go into services and shut off Exchange as a precaution
[start, admin tools, services, anything with Microsoft Exchange, click STOP]
3. Using whatever tool of your choice [PREFERABLY www.shavlik.com
hfnetchkpro limited or MBSA which scans for all sorts of patches but in
this case with 04-007, Windows update will do just fine] scan for
patches and apply them.
4. REBOOT
5. Scan again to ensure that the patch has been applied.

We cannot stress enough how critical it is for all SBSers to reboot.

I've just finished up my SBS2000 network tonight and all is fine and
will be doing my SBS2k3 when I get home.