Buffer Overrun in Microsoft Data Access Components Could Lead to Code Execution

Affected software and operating systems:

OS:
Microsoft Windows 2000 Advanced Server
Microsoft Windows 2000 Professional
Microsoft Windows 2000 Server
Microsoft Windows 95
Microsoft Windows 98
Microsoft Windows 98 Second Edition
Microsoft Windows Millenium
Microsoft Windows NT 4.0 Server
Microsoft Windows NT 4.0 Server, Terminal Server Edition
Microsoft Windows NT 4.0 Workstation


Software:
Microsoft Internet Explorer 5.01
Microsoft Internet Explorer 5.5
Microsoft Internet Explorer 6
Microsoft Internet Information Server 4.0
Microsoft Internet Information Server 5.x
Microsoft Outlook 2000
Microsoft Outlook 2002
Microsoft Outlook 97
Microsoft Outlook 98
Microsoft Outlook Express 5
Microsoft Outlook Express 5.5
Microsoft Outlook Express 6


This security alert from Microsoft is regarded as extremely serious and all users are strongly urged to install the necessary patch. Only users of WinXP are exempt as it ships with MDAC version 2.7 which isn't vulnerable even if using IE6.0.

For more information and patch availability Q329414