MS06-019: Vulnerability in Microsoft Exchange Server could allow remote code execution (916803)



The information in this article applies to:

  • Microsoft Exchange Server 2003 Service Pack 2, when used with:
    • Microsoft Exchange Server 2003 Standard Edition
    • Microsoft Exchange Server 2003 Enterprise Edition
  • Microsoft Exchange Server 2003 Enterprise Edition, Service Pack 1 (SP-1)
  • Microsoft Exchange Server 2003 Standard Edition, Service Pack 1 (SP1)
  • Microsoft Exchange 2000 Server SP3

SUMMARY

Microsoft has released security bulletin MS06-019. The security bulletin contains all the relevant information about the security update for Microsoft Exchange Server 2003 and for Microsoft Exchange 2000 Server Service Pack 3 (SP3). This includes file manifest information and deployment options. To view the security bulletin, visit the following Microsoft Web site:

MORE INFORMATION

If you are using Microsoft Exchange Server 2003 Service Pack 1 (SP1) and you install this security update, Microsoft Entourage and third-party services such as Blackberry or GoodLink may be affected. Access to shared mailboxes may also be affected. If you are using Microsoft Exchange Server 2003 Service Pack 2 (SP2) or Microsoft Exchange 2000 Server and you install this security update, these issues do not apply. If you are using Microsoft Exchange Server 2003 Service Pack 1 (SP1), review Microsoft Knowledge Base article 912918 before you install this security update.

912918 Users cannot send e-mail messages from a mobile device or from a shared mailbox in Exchange 2000 Server and in Exchange Server 2003


The third-party products that this article discusses are manufactured by companies that are independent of Microsoft. Microsoft makes no warranty, implied or otherwise, regarding the performance or reliability of these products.

Modification Type:MinorLast Reviewed:7/26/2006
Keywords:kbQFE kbSecurity KbSECBulletin KbSECVulnerability kbWinXPpreSP2fix kbBug kbfix kbWinServ2003preSP1fix kbWin2000preSP5fix kbWinNT400PreSP7Fix kbpubtypekc KB916803 kbAudITPRO