|| Hotline : 800 2378 ||  To contact CERT-MU send e-mail on --> info[at]cert-mu.gov.mu ||  To report incident e-mail on --> incident[at]cert-mu.gov.mu || To report Vulnerabilities send e-mail on --> Vulnerability[at]cert-mu.gov.mu ||
    Constituency
    Authority
    Vol. 2, Feb 2012
    Vol. 1, Oct 2011
    World CERTs
    Email Abuse
 
 
Authorized to use CERT(TM) - CERT is a mark owned by Carnegie Mellon University
 
 
 
 
 
 
 
 
 
 
 
 


   
 

CERT-MU AD-2009-2

Multiple Vulnerabilities in Microsoft Exchange Server, SQL Server, Internet Explorer and Office Visio

Original issue date: 11 February, 2009

Overview

Multiple vulnerabilities have been reported in various Microsoft products and components such as Microsoft Exchange Server, SQL Server, Internet Explorer and Office Visio.

Description

The vulnerability notes released by CERT-In with reference to Microsoft Security Bulletins are given below:

Microsoft Security Bulletin

Severity

CERT-In Vulnerability Notes

MS09-02: Cumulative Security Update for Internet Explorer

High

CIVN-2009-23: Microsoft Internet Explorer Memory corruption Vulnerabilities

MS09-03: Vulnerabilities in Microsoft Exchange Could Allow Remote Code Execution

High

CIVN-2009-24: Multiple Vulnerabilities in Microsoft Exchange

MS09-04: Vulnerability in Microsoft SQL Server Could Allow Remote Code Execution

Medium

CIVN-2008-192
Updated:February 11, 2009
Microsoft SQL Server sp_replwritetovarbin limited memory overwrite vulnerability

MS09-05: Vulnerabilities in Microsoft Office Visio Could Allow Remote Code Execution

High

CIVN-2009-25: Multiple vulnerabilities in Microsoft Office Visio

Affected systems 

• Microsoft Exchange Server
• Microsoft SQL Server
• Microsoft Internet Explorer
• Microsoft Office Visio

Impact

Severity Rating: High

Solution

Apply appropriate patches as mentioned in Microsoft Security Bulletin February 2009
http://www.microsoft.com/technet/security/bulletin/ms09-feb.mspx

Disclaimer

The information provided herein is on "as is" basis, without warranty of any kind.

Vendor Information

Microsoft Corporation
http://www.microsoft.com/technet/security/bulletin/ms09-feb.mspx

Links

MS09-02

MS09-03

MS09-04

MS09-05

CIVN-2009-23

CIVN-2009-24

CIVN-2008-192

CIVN-2009-25

 
 
News & Events
Safer Internet Day 2012
Computer Security Day 2011
Workshop on Cloud Security
Workshop on Mobile Security
Certificate Award Ceremony for Trainings in Information Security Management

  more...
 
Virus Alerts
RSS Feed
 
 
 

Last Updated 20-Jul-2011
Disclaimer Maintained & Hosted by NCB
This site is best viewed in 1024 x 768 resolution. Internet Explorer 6.0 +

09-Jul-2011