Home Page | Skip to Navigation | Skip to Content | Skip to Search | Skip to Footer

Microsoft Security Bulletins for

= Check Point has provided a protection to this bulletin

Microsoft Security Bulletin MS08-040:
Vulnerabilities in Microsoft SQL Server Could Allow Elevation of Privilege (941203)

Severity: High

CVE-2008-0085: Memory Page Reuse Vulnerability

An information disclosure vulnerability exists in the way that SQL Server manages memory page reuse. An attacker with database operator access who successfully exploited this vulnerability could access customer data.

CVE-2008-0086: Convert Buffer Overrun

A vulnerability exists in the convert function in SQL Server that could allow an authenticated attacker to gain elevation of privilege. An attacker who successfully exploited this vulnerability could run code and take complete control of the system.

CVE-2008-0107: SQL Server Memory Corruption Vulnerability

A vulnerability exists in SQL Server that could allow an authenticated attacker to gain elevation of privilege. An attacker who successfully exploited this vulnerability could run code and take complete control of the system.

CVE-2008-0106: SQL Server Buffer Overrun Vulnerability

A vulnerability exists in SQL Server that could allow an authenticated attacker to gain elevation of privilege. An attacker who successfully exploited this vulnerability could run code and take complete control of the system.

Microsoft Security Bulletin MS08-039:
Vulnerabilities in Outlook Web Access for Exchange Server Could Allow Elevation of Privilege (953747)

Severity: High

CVE-2008-2247: Outlook Web Access for Exchange Server Data Validation Cross-Site Scripting Vulnerability

This is a cross-site scripting vulnerability in the affected versions of Outlook Web Access (OWA) for Exchange Server. Exploitation of the vulnerability could lead to elevation of privilege on individual OWA clients connecting to Outlook Web Access for Exchange Server. To exploit the vulnerability, an attacker would have to convince a user to open a specially crafted e-mail that would run malicious script from within an individual OWA client. If the malicious script is executed, the script would run in the security context of the user’s OWA session and could perform any action the user could perform such as reading, sending, and deleting e-mail as the logged-on user.

CVE-2008-2248: Outlook Web Access for Exchange Server HTML Parsing Cross-Site Scripting Vulnerability

This is a cross-site scripting vulnerability in the affected versions of Outlook Web Access (OWA) for Exchange Server. Exploitation of the vulnerability could lead to elevation of privilege on individual OWA clients connecting to Outlook Web Access for Exchange Server. To exploit the vulnerability an attacker would have to convince a user to open a specially crafted e-mail that would run malicious script from within an individual OWA client. The script would run in the security context of the user’s OWA session and could perform any action the user could perform, such as reading, sending, and deleting e-mail as the logged-on user.

Microsoft Security Bulletin MS08-038:
Vulnerability in Windows Explorer Could Allow Remote Code Execution (950582)

Severity: High

CVE-2008-1435: Windows Saved Search Vulnerability

A remote code execution vulnerability exists when saving a specially crafted search file within Windows Explorer. This operation causes Windows Explorer to exit and restart in an exploitable manner.

Microsoft Security Bulletin MS08-037:
Vulnerabilities in DNS Could Allow Spoofing (953230)

Severity: High

CVE-2008-1447: DNS Insufficient Socket Entropy Vulnerability

A spoofing vulnerability exists in Windows DNS client and Windows DNS server. This vulnerability could allow a remote unauthenticated attacker to quickly and reliably spoof responses and insert records into the DNS server or client cache, thereby redirecting Internet traffic.

CVE-2008-1454: DNS Cache Poisoning Vulnerability

A cache poisoning vulnerability exists in Windows DNS Server. The vulnerability could allow an unauthenticated remote attacker to send specially crafted responses to DNS requests made by vulnerable systems, thereby poisoning the DNS cache and redirecting Internet traffic from legitimate locations.