Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

MS Index Server and Indexing Service ISAPI Extension Buffer Overflow Vulnerability

Solution:
Reports indicate that post-patch systems may be vulnerable to a denial of service; administrators are advised to reapply the newer patch if it is not installed and remove the .ida/.idq mappings.

Microsoft has released a patch which addresses this issue.

Microsoft has released the following tool which rectifies the damage caused by the 'Code Red II' worm:

http://www.microsoft.com/technet/itsolutions/security/tools/redfix.asp

Cisco has released a patch for IP/VC 3540 which can be obtained from the following URL or by contacting Cisco Technical Assistance Center <tac@cisco.com>:

http://www.cisco.com/pcgi-bin/tablebuild.pl/ipvc

It is recommended that all user's running Cisco products which contain affected versions of IIS, install the patch provided by Microsoft.


Microsoft Index Server 2.0

Microsoft Indexing Services for Windows 2000







 

Privacy Statement
Copyright 2008, SecurityFocus