MS02-034: Cumulative patch for Structured Query Language Server. (Microsoft: security alerts and advisories issued).(Microsoft Server 2000)(Brief Article)(Product Announcement)

Information Systems Auditor, September, 2002

Issue

A cumulative patch that includes the functionality of all previously released patches for Structured Query Language (SQL) Server 2000. In addition, it eliminates three newly discovered vulnerabilities affecting SQL Server 2000 and MSDE 2000 (but not any previous versions of SQL Server or MSDE):

* a buffer overrun vulnerability in a procedure used to encrypt SQL Server credential information. Attackers who were able to successfully exploit this vulnerability could gain significant control over the database and possibly the server itself depending on the account SQL server runs as;

* a buffer overrun vulnerability in a procedure that relates to the bulk inserting of data in SQL Server tables. Attackers who were able to successfully...

Premium Content Partnership | HighBeam Research provides an in-depth online archive library of reference works. HighBeam Research

 

BNET TalkbackShare your ideas and expertise on this topic

Please add your comment:

  1. You are currently: a Guest |
  2.  

Basic HTML tags that work in comments are: bold (<b></b>), italic (<i></i>), underline (<u></u>), and hyperlink (<a href></a)

advertisement
advertisement
  • Click Here
  • Click Here
  • Click Here
advertisement