| Patch Name : |
WindowsXP-KB896428-SP2-x86-ENU.exe |
| Patch Description : |
Security Update for Windows XP (KB896428) |
| Bulletin Id : |
MS05-033 |
| Bulletin Title : |
Vulnerability in Telnet Client Could Allow Information Disclosure (896428) |
| KnowledgeBase : | 896428 |
| Severity : |
Moderate |
| Location Path : | WindowsXP-KB896428-SP2-x86-ENU.exe |
| Bulletin Summary: |
This update resolves a newly-discovered, privately-reported vulnerability. An attacker who successfully exploited this information disclosure vulnerability could remotely read the session variables for users who have open connections to a malicious telnet server. The vulnerability is documented in the "Vulnerability Details" section of this bulletin.
We recommend that customers consider applying the security update. |
| Superceding Bulletin Id : |
None |
| Patch Release Date : |
Jun 14, 2005 |
| CVE Id : | CAN-2005-1205 |
| Affected Product Information |
|
| Product Name |
Service Pack Name |
| Windows XP Professional | Windows XP Service Pack 2 |
|
| File changes |
|
| File Path |
Version |
| %windir%\system32\Telnet.exe | 5.1.2600.2674 |
|
| Registry changes |
|
| Registry Path |
Key Name |
Key Value |
| HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Updates\Windows XP\SP3\KB896428 | | -2 |
|