MS08-015: Vulnerability in Microsoft Outlook could allow remote code execution

Support for Office 2003 has ended

Microsoft ended support for Office 2003 on April 8, 2014. This change has affected your software updates and security options. Learn what this means for you and how to stay protected.

This article has been archived. It is offered "as is" and will no longer be updated.
INTRODUCTION
Microsoft has released security bulletin MS08-015. This security bulletin contains all the relevant information about the security update. This includes file manifest information and deployment options. To view the complete security bulletin, visit one of the following Microsoft Web sites:

How to obtain help and support for this security update

Help installing updates: Support for Microsoft Update

Security solutions for IT professionals: TechNet Security Troubleshooting and Support

Help protect your computer that is running Windows from viruses and malware:Virus Solution and Security Center

Local support according to your country: International Support

More information about this security update
For more information about this security update and for information about any known issues with specific releases of this software, click the following article numbers to view the articles in the Microsoft Knowledge Base:
946986 MS08-015: Description of the security update for Outlook 2000: March 11, 2008
946985 MS08-015: Description of the security update for Outlook 2002: March 11, 2008
945432 MS08-015: Description of the security update for Outlook 2003: March 11, 2008
946983 MS08-015: Description of the security update for Outlook 2007: March 11, 2008

Known issues with this security update

After you install this security update on a computer that has Microsoft Office Outlook 2003 Service Pack 2 (SP2) installed, external content is always blocked for attached e-mail messages. To resolve this issue, install hotfix 975123. For more information, click the following article number to view the article in the Microsoft Knowledge Base:
975123Description of the Outlook 2003 hotfix package (Outlooknminus1.msp): September 23, 2009
update security_patch security_update security bug flaw vulnerability malicious attacker exploit registry unauthenticated buffer overrun overflow specially-formed scope specially-crafted denial of service DoS TSE WinNT Win2000
Properties

Article ID: 949031 - Last Review: 01/16/2015 10:06:23 - Revision: 7.0

Microsoft Office Outlook 2007, Microsoft Office 2003 Service Pack 2, Microsoft Office 2003 Service Pack 3

  • kbnosurvey kbarchive kbexpertisebeginner kbqfe kbsecurity kbsecbulletin kbsecvulnerability kbbug kbfix KB949031
Feedback