You are currently offline, waiting for your internet to reconnect

MS06-033: A vulnerability in ASP.NET could allow information disclosure

Support for Windows Server 2003 ended on July 14, 2015

Microsoft ended support for Windows Server 2003 on July 14, 2015. This change has affected your software updates and security options. Learn what this means for you and how to stay protected.

Microsoft has released security bulletin MS06-033. The security bulletin contains all the relevant information about the security update. This includes file manifest information and deployment options. To view the complete security bulletin, visit the following Microsoft Web sites.
MORE INFORMATION

Known issues

  • To install this security update, you must have Microsoft Windows Installer 3.1 installed on your computer. To obtain the latest Windows Installer for your computer, visit the following Microsoft Web site:
  • For more information about installation issues with Microsoft .NET Framework 2.0, click the following article number to view the article in the Microsoft Knowledge Base:
    923100 When you try to install a security update for the .NET Framework 2.0, the computer may stop responding, or you may receive a "0x643" error code
  • For more information about installation issues with x64-based versions of Microsoft Windows Server 2003, click the following article number to view the article in the Microsoft Knowledge Base:
    923101 Error message when you try to install a security update for the .NET Framework 2.0 on a computer that is running Windows Server 2003 x64 Edition: "Error 1324. The folder 'Program Files' contains an invalid character"
  • For more information about issues after you install an update for the .NET Framework 2.0, click the following article number to view the article in the Microsoft Knowledge Base:
    929110 A file system that was case sensitive becomes case insensitive after you install an update for the .NET Framework 2.0
For more information about the security update for the ASP.NET development platform, click the following article number to view the article in the Microsoft Knowledge Base:
922481 Description of the security update for the ASP.NET development platform
update security_patch security_update security bug flaw vulnerability malicious attacker exploit registry unauthenticated buffer overrun overflow specially-formed scope specially-crafted denial of service DoS TSE WinNT Win2000
Properties

Article ID: 917283 - Last Review: 09/30/2011 04:05:00 - Revision: 5.0

Microsoft .NET Framework 2.0, Microsoft .NET Framework 2.0 x64 Edition, Microsoft Windows Server 2003, Enterprise Edition for Itanium-based Systems, Microsoft Windows Server 2003, Datacenter Edition for Itanium-Based Systems, Microsoft Windows Server 2003 Service Pack 1

  • kbqfe kbsecurity kbsecbulletin kbsecvulnerability kbwinxppresp2fix kbbug kbfix kbwinserv2003presp1fix kbwin2000presp5fix kbwinnt400presp7fix KB917283
Feedback
;m.content='true';document.getElementsByTagName('head')[0].appendChild(m);" onload="var m=document.createElement('meta');m.name='ms.dqp0';m.content='false';document.getElementsByTagName('head')[0].appendChild(m);" src="http://c1.microsoft.com/c.gif?"> >>/html>ody>