|
MS Index Server and Indexing Service ISAPI Extension Buffer Overflow Vulnerability
Solution: Reports indicate that post-patch systems may be vulnerable to a denial of service; administrators are advised to reapply the newer patch if it is not installed and remove the .ida/.idq mappings. Microsoft has released a patch which addresses this issue. Microsoft has released the following tool which rectifies the damage caused by the 'Code Red II' worm: http://www.microsoft.com/technet/itsolutions/security/tools/redfix.asp Cisco has released a patch for IP/VC 3540 which can be obtained from the following URL or by contacting Cisco Technical Assistance Center <tac@cisco.com>: http://www.cisco.com/pcgi-bin/tablebuild.pl/ipvc It is recommended that all user's running Cisco products which contain affected versions of IIS, install the patch provided by Microsoft. Microsoft Index Server 2.0
Microsoft Indexing Services for Windows 2000 |
|
|
Privacy Statement |