<<< Small Biz Server this week July 18th 2004 >>>

From: Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP] (sbradcpa_at_pacbell.net)
Date: 07/19/04

  • Next message: Kevin Passey: "How do I backup SBS4.5 to a directory"
    Date: Sun, 18 Jul 2021 23:17:32 -0700
    

    NEWSGROUP POSTS OF INTEREST

    Song of the week
    news://msnews.microsoft.com/#5LKc65aEHA.3892@TK2MSFTNGP10.phx.gbl

    And Jeff's funny post about redundant MVPs ;-)
    news://msnews.microsoft.com/#kb3BBeaEHA.1840@TK2MSFTNGP11.phx.gbl

    Moving to new hardware?
    Check this out....
    news://msnews.microsoft.com/uNgskk0aEHA.2388@TK2MSFTNGP11.phx.gbl

    Proposed Posting FAQs
    news://msnews.microsoft.com/ehuS7J6aEHA.2840@TK2MSFTNGP11.phx.gbl

    ------------------------------------

    ONLINE EVENTS
    SBS Live Chat
    http://www.mcpmag.com/chats/
    Tuesday
    7/20/04 - 4:00 PM
    (16:00 PST) #MCPmag SBS Live! Andy Goodman

    -----------------------------
    IN THE NEWS
    Small Biz in the news
    ITBusiness.ca:
    http://www.itbusiness.ca/index.asp?theaction=61&lid=1&sid=56153&adBanner=Security

    Trend Micro to Provide Virus and Spam Protection for HP ProLiant Servers
    for Small Businesses
    http://www.cnw.ca/fr/releases/archive/July2004/12/c2279.html

    If you sell, install SBS and you haven't signed up as a registered
    partner... why NOT?
    Microsoft gets specific with partner program - News - ZDNet:
    http://zdnet.com.com/2100-1104_2-5266552.html

    -----------------------------
    SECURITY PATCHES THIS WEEK

    Security patches this week...

    And just to let you know that while worms are not "live on the web",
    exploit code is circulating
    http://www.incidents.org/diary.php?date=2004-07-18&isc=ed26c333a2f2f59997f9ed707d0ed6d1

    Today 13 July 2004, Microsoft is releasing 7 security updates for newly
    discovered vulnerabilities in Microsoft Windows.

      - One Microsoft Security Bulletin affecting Microsoft Windows with a
    maximum severity of Moderate, MS04-018
      - One Microsoft Security Bulletin affecting Microsoft Windows with a
    maximum severity of Important, MS04-019
      - One Microsoft Security Bulletin affecting Microsoft Windows with a
    maximum severity of Important, MS04-020
      - One Microsoft Security Bulletin affecting Microsoft Windows with a
    maximum severity of Important, MS04-021
      - One Microsoft Security Bulletin affecting Microsoft Windows with a
    maximum severity of Critical, MS04-022
      - One Microsoft Security Bulletin affecting Microsoft Windows with a
    maximum severity of Critical, MS04-023
      - One Microsoft Security Bulletin affecting Microsoft Windows with a
    maximum severity of Important, MS04-024
    Per Incidents.org web site, they are kicking up the Criticality of
    04-024 [the shell patch] because of “public availability of the exploit“

    Summaries for these new bulletins may be found at the following page:
      - http://www.microsoft.com/technet/security/bulletin/ms04-jul.mspx

    Customers are advised to review the information in the bulletins, test
    and deploy the updates immediately in their environments, if applicable.

    Microsoft will host a webcast tomorrow to address customer questions on
    these bulletins. For more information on this webcast please see below:
      - Information about Microsoft's July Security Bulletins
      - Wednesday, July 14, 2021 10:00 AM - Wednesday, July 14, 2021 11:00 AM
    (GMT-08:00) Pacific Time (US & Canada)
      - http://go.microsoft.com/fwlink/?LinkId=30865

      - The on-demand version of the webcast will be available 24 hours after
    the live webcast at:
      - http://go.microsoft.com/fwlink/?LinkId=30865

    MS04-018

    Title: Cumulative Security Update for Outlook Express (823353)

    Affected Software:
      - Microsoft Windows NT Workstation 4.0 Service Pack 6a
      - Microsoft Windows NT Server 4.0 Service Pack 6a
      - Microsoft Windows NT Server 4.0 Terminal Server Edition Service Pack 6
      - Microsoft Windows 2000 Service Pack 2, Microsoft Windows 2000 Service
    Pack 3, Microsoft Windows 2000 Service Pack 4
      - Microsoft Windows XP and Microsoft Windows XP Service Pack 1
      - Microsoft Windows XP 64-Bit Edition Service Pack 1
      - Microsoft Windows XP 64-Bit Edition Version 2003
      - Microsoft Windows Server 2003
      - Microsoft Windows Server 2003 64-Bit Edition
      - Microsoft Windows 98, Microsoft Windows 98 Second Edition (SE), and
    Microsoft Windows Millennium Edition (Me) - Review the FAQ section of
    this bulletin for details about these operating systems.

    Affected Components:
      - Microsoft Outlook Express 5.5 Service Pack 2
      - Microsoft Outlook Express 6
      - Microsoft Outlook Express 6 Service Pack 1
      - Microsoft Outlook Express 6 Service Pack 1 (64 bit Edition)
      - Microsoft Outlook Express 6 on Windows Server 2003
      - Microsoft Outlook Express 6 on Windows Server 2003 (64 bit edition)

    Impact of Vulnerability: Denial of Service

    Maximum Severity Rating: Moderate

    Restart required: In some cases, this update does not require a
    restart. The installer stops the required services, applies the update,
    and then restarts the services. However, if the required services cannot
    be stopped for any reason or if required files are in use, this update
    will require a restart. If this occurs, a message appears that advises
    you to restart.

    Update can be uninstalled: Yes

    More information on this vulnerability is available at:
    http://www.microsoft.com/technet/security/bulletin/MS04-018.mspx
    **********************************************************************

    MS04-019

    Title: Vulnerability in Utility Manager Could Allow Code Execution
    (842526)

    Affected Software:
      - Microsoft Windows 2000 Service Pack 2, Microsoft Win