Article ID: 968075 - Last Review: April 22, 2009 - Revision: 2.0

MS09-016: Description of the Forefront Threat Management Gateway MBE hotfix package: April 14, 2009

On This Page

Expand all | Collapse all

INTRODUCTION

Microsoft has released security bulletin MS09-016. To view the complete security bulletin, visit one of the following Microsoft Web sites:

How to obtain help and support for this security update

For home users, no-charge support is available by calling 1-866-PCSAFETY in the United States and Canada or by contacting your local Microsoft subsidiary. For more information about how to contact your local Microsoft subsidiary for support issues with security updates, visit the Microsoft International Support Web site:
http://support.microsoft.com/common/international.aspx?rdpath=4 (http://support.microsoft.com/common/international.aspx?rdpath=4)
North American customers can also obtain instant access to unlimited no-charge e-mail support or to unlimited individual chat support by visiting the following Microsoft Web site:
http://support.microsoft.com/oas/default.aspx?&prid=7552 (http://support.microsoft.com/oas/default.aspx?&prid=7552)
For enterprise customers, support for security updates is available through your usual support contacts.

MORE INFORMATION

This security update fixes the following issues:
  • 961831  (http://support.microsoft.com/kb/961831/ ) You encounter a Web listener TCP State vulnerability in Forefront Threat Management Gateway MBE
  • 968076  (http://support.microsoft.com/kb/968076/ ) A cross-site scripting vulnerability in Forefront Threat Management Gateway MBE allows for redirection to malicious sites
This security update also resolves a problem in which Forefront Threat Management Gateway Medium Business Edition (MBE) may shut down unexpectedly with the following error:
DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1) Arguments: Arg1: 0000000000000040, memory referenced Arg2: 0000000000000002, IRQL Arg3: 0000000000000000, value 0 = read operation, 1 = write operation Arg4: fffffa6000a0a9e5, address which referenced memory
For more information about this issue, click the following article number to view the article in the Microsoft Knowledge Base:
962006  (http://support.microsoft.com/kb/962006/ ) Forefront Threat Management Gateway MBE crashes with the following Bug Check error: "DRIVER_IRQL_NOT_LESS_OR_EQUAL (d1)"

FILE INFORMATION

The English (United States) version of this security update has the file attributes (or later file attributes) that are listed in the following table. The dates and times for these files are listed in Coordinated Universal Time (UTC). When you view the file information, it is converted to local time. To find the difference between UTC and local time, use the Time Zone tab in the Date and Time item in Control Panel.
Collapse this tableExpand this table
File nameFile versionFile sizeDateTimePlatform
Cookieauthfilter.dll6.0.6417.153476,59210-Mar-200901:04x86
msphlpr.dll6.0.6417.153894,40010-Mar-200901:04x86
wspsrv.exe6.0.6417.1531,439,15210-Mar-200901:04x86
Fweng.sys6.0.6417.153755,12019-Feb-200902:09x86
Fweng64.sys6.0.6417.153853,93619-Feb-200902:09x64
Fweng64100.sys6.0.6417.100857,18418-Feb-200921:52x64
Msfpcpatch.dll6.0.6417.153161,72810-Mar-200901:03x86

Prerequisites

You must have Microsoft Forefront Threat Management Gateway MBE installed to apply this hotfix.

Restart requirement

You must restart the computer after you apply this hotfix.

REFERENCES

For more information about software update terminology, click the following article number to view the article in the Microsoft Knowledge Base:
824684  (http://support.microsoft.com/kb/824684/ ) Description of the standard terminology that is used to describe Microsoft software updates

APPLIES TO
  • Microsoft Forefront Threat Management Gateway, Medium Business Edition
  • Windows Essential Business Server 2008 Standard
Keywords: 
kbsecvulnerability kbsecbulletin kbsecurity kbexpertiseinter kbsurveynew KB968075
 

Article Translations