Help and Support
 

powered byLive Search

MS02-023: Patch Available for Variants of the Content Disposition Vulnerability

Article ID:322927
Last Review:February 1, 2007
Revision:4.9
This article was previously published under Q322927
On This Page

SYMPTOMS

These vulnerabilities have basically the same scope as the previous variants, although they are two separate flaws. This vulnerability can permit an attacker to run code on the user's computer. That code can then take any action on the computer that the user can take. For additional information about the previous vulnerability, click the article number below to view the article in the Microsoft Knowledge Base:
313675 (http://support.microsoft.com/kb/313675/EN-US/) MS01-058: File Vulnerability Patch for Internet Explorer 5.5 and Internet Explorer 6

Back to the top

RESOLUTION

Internet Explorer 6

To resolve this problem, obtain the latest service pack for Internet Explorer 6. For additional information, click the following article number to view the article in the Microsoft Knowledge Base:
328548 (http://support.microsoft.com/kb/328548/EN-US/) How to Obtain the Latest Internet Explorer 6 Service Pack
The update for this problem is included in the "May 15, 2002, Cumulative Patch for Internet Explorer." For additional information about how to obtain this patch, click the article number below to view the article in the Microsoft Knowledge Base:
321232 (http://support.microsoft.com/kb/321232/EN-US/) MS02-023: May 15, 2002, Cumulative Patch for Internet Explorer

Back to the top

Internet Explorer 5.5 Service Pack 2

The update for this problem is included in the "May 15, 2002, Cumulative Patch for Internet Explorer." For additional information about how to obtain this patch, click the article number below to view the article in the Microsoft Knowledge Base:
321232 (http://support.microsoft.com/kb/321232/EN-US/) MS02-023: May 15, 2002, Cumulative Patch for Internet Explorer

Back to the top

Internet Explorer 5.5 Service Pack 1

The update for this problem is included in the "May 15, 2002, Cumulative Patch for Internet Explorer." For additional information about how to obtain this patch, click the article number below to view the article in the Microsoft Knowledge Base:
321232 (http://support.microsoft.com/kb/321232/EN-US/) MS02-023: May 15, 2002, Cumulative Patch for Internet Explorer

Back to the top

Internet Explorer 5.01 Service Pack 2 (on Microsoft Windows 2000 and Microsoft Windows NT 4.0 only)

This update is only for customers running Internet Explorer 5.01 Service Pack 2 (http://support.microsoft.com/kb/267954) on Windows 2000 Service Pack 2 (http://support.microsoft.com/kb/260910) or Windows NT 4.0 Service Pack 6a (http://support.microsoft.com/kb/152734). If you are running Internet Explorer 5.01 on any other version of Windows, upgrade to Internet Explorer 5.5 Service Pack 2 (http://support.microsoft.com/kb/276369) or later (http://www.microsoft.com/windows/ie/default.asp), and then apply this update.

The update for this problem is included in the "May 15, 2002, Cumulative Patch for Internet Explorer." For additional information about how to obtain this patch, click the article number below to view the article in the Microsoft Knowledge Base:
321232 (http://support.microsoft.com/kb/321232/EN-US/) MS02-023: May 15, 2002, Cumulative Patch for Internet Explorer

Back to the top

STATUS

Internet Explorer 6

Microsoft has confirmed that this problem may cause a degree of security vulnerability in Microsoft Internet Explorer 6. This problem was first corrected in Internet Explorer 6 Service Pack 1.

Back to the top

Internet Explorer 5.5

Microsoft has confirmed that this problem may cause a degree of security vulnerability in Microsoft Internet Explorer 5.5.

Back to the top

Internet Explorer 5.01

Microsoft has confirmed that this problem may cause a degree of security vulnerability in Microsoft Internet Explorer 5.01.

Back to the top

MORE INFORMATION

For more information about this vulnerability, visit the following Microsoft Web site:
http://www.microsoft.com/technet/security/bulletin/MS02-023.mspx (http://www.microsoft.com/technet/security/bulletin/MS02-023.mspx)

Back to the top


APPLIES TO
Microsoft Internet Explorer 5.5 Service Pack 1
Microsoft Internet Explorer 5.5 Service Pack 2
Microsoft Internet Explorer 5.01
Microsoft Internet Explorer 5.5
Microsoft Internet Explorer 6.0, when used with:
  Microsoft Windows XP Home Edition
  Microsoft Windows XP Professional
  Microsoft Windows XP Media Center Edition
  Microsoft Windows XP Tablet PC Edition
  Microsoft Windows 2000 Advanced Server
  Microsoft Windows 2000 Datacenter Server
  Microsoft Windows 2000 Professional Edition
  Microsoft Windows 2000 Server
  Microsoft Windows NT Server 4.0 Standard Edition
  Microsoft Windows NT Server 4.0, Terminal Server Edition
  Microsoft Windows NT Workstation 4.0 Developer Edition
  Microsoft Windows Millennium Edition
  Microsoft Windows 98 Second Edition
  Microsoft Windows 98 Standard Edition

Back to the top

Keywords: 
kbbug kbfix kbie501presp3fix kbsecvulnerability kbie600presp1fix kbsecurity kbie600sp1fix kbie550presp3fix kbsecbulletin kbsechack KB322927

Back to the top

Article Translations

 

Related Support Centers

Other Support Options

  • Need More Help?
    Contact a Support professional by Email, Online or Phone.
  • Customer Service
    For non-technical assistance with product purchases, subscriptions, online services, events, training courses, corporate sales, piracy issues, and more.
  • Newsgroups
    Pose a question to other users. Discussion groups and Forums about specific Microsoft products, technologies, and services.