Microsoft Office Live Communications Server 2003 uses Microsoft SQL Server 2000 Desktop Engine (MSDE) Service Pack 3a (SP3a). Microsoft has released a security update, MS03-031, that fixes
several security issues that were found in MSDE and in Microsoft SQL Server. You must
apply this security update as a post-installation step for Live Communications Server
2003.
Live Communications Server 2003 uses MSDE SP3a internally as a data repository for user information. The security issues that were found in MSDE affect any Live Communications Server 2003 installation that is running Live Communications Server User Services because Live Communications Server User Services installs an MSDE instance. For example, the following types of installations of Live Communications Server 2003 install instances of MSDE:
- A home server
- A front-end server
Note These types of installations do
not include an installation of Live Communications Server 2003 that is configured as a forwarding proxy.
By default, the MSDE instance included with Live Communications Server 2003 is only available to local Windows users on the system that Live Communications Server is installed on.
Microsoft Security Bulletin MS03-031 provides security updates for vulnerabilities in MSDE and SQL Server. Apply this update after you install Live Communications Server.
To view the complete security bulletin that discusses this security update, visit the following Microsoft Web site:
For additional information about this security update, click the following article number to view the article in the Microsoft Knowledge Base:
815495Â
(http://kbalertz.com/Feedback.aspx?kbNumber=815495/
)
MS03-031: Cumulative security patch for SQL Server
To download this security update, visit the
following Web site: