Microsoft fixes IIS FTP security bug

Microsoft has released a patch that eliminates a vulnerability in itsInternet Information Server (IIS) FTP service. This vulnerability could allow a denial of service attack against the IIS server or could allow arbitrary code to be executed

Paul Thurrott

February 2, 1999

1 Min Read
ITPro Today logo

Microsoft has released a patch that eliminates a vulnerability in itsInternet Information Server (IIS) FTP service. This vulnerability could allow a denial of service attack against the IIS server or could allow arbitrary code to be executed directly on the server.

Microsoft recommends that customers who are using the FTP service in IIS 3.0 or 4.0 apply the patch.

For more information about this security bug, please refer to the MicrosoftKnowledge Base (KB) article Q188348, "Specially-Malformed FTP Requests CanCreate Denial of Service," on the Microsoft Web site

About the Author(s)

Paul Thurrott

Paul Thurrott is senior technical analyst for Windows IT Pro. He writes the SuperSite for Windows, a weekly editorial for Windows IT Pro UPDATE, and a daily Windows news and information newsletter called WinInfo Daily UPDATE.

Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like