Microsoft SQL Server 2000 Remote Data Source Function Contains Unchecked Buffers Q316333
Microsoft SQL Server 2000 Remote Data Source Function Contains Unchecked Buffers Q316333 Ranking & Summary
Microsoft SQL Server 2000 Remote Data Source Function Contains Unchecked Buffers Q316333 description
Microsoft SQL Server 2000 Remote Data Source Function Contains Unchecked Buffers Q316333 is a professional and smart program which can connect to remote data sources.
One capability of this feature is the ability to use ad hoc connections to connect to remote data sources without setting up a linked server for less-often used data-sources. This is made possible through the use of OLE DB providers, which are low-level data source providers. This capability is made possible by invoking the OLE DB provider directly by name in a query to connect to the remote data source.
An unchecked buffer exists in the handling of OLE DB provider names in ad hoc connections. A buffer overrun could occur as a result and could be used to either cause the SQL Server service to fail, or to cause code to run in the security context of the SQL Server. SQL Server can be configured to run in various security contexts, and by default runs as a domain user. The precise privileges the attacker could gain would depend on the specific security context that the service runs in.
An attacker could exploit this vulnerability in one of two ways. They could attempt to load and execute a database query that calls one of the affected functions. Conversely, if a web-site or other database front-end were configured to access and process arbitrary queries, it could be possible for an attacker to provide inputs that would cause the query to call one of the functions in question with the appropriate malformed parameters.
Microsoft SQL Server 2000 Remote Data Source Function Contains Unchecked Buffers Q316333 Screenshot
Microsoft SQL Server 2000 Remote Data Source Function Contains Unchecked Buffers Q316333 Keywords
Bookmark Microsoft SQL Server 2000 Remote Data Source Function Contains Unchecked Buffers Q316333
Microsoft SQL Server 2000 Remote Data Source Function Contains Unchecked Buffers Q316333 Copyright
Want to place your software product here?
Please contact us for consideration.
Contact WareSeeker.com
- Microsoft Data Access Components (MDAC) 2.8 SP1
- EMS MS SQL Manager (Single License) 1.6.0.1
- DB SQL Assist 1.04
- CSBuilder 1.0
- AdoLib 1.0
- Microsoft SQL Server 7.0 Service Pack Password patch 6-8-2000
- Microsoft SQL Server 2000 (including MS SQL Server Desktop Engine 2000) Security Patch: Extended Stored Procedure Param 12-1-00
- SIBPROvider Interbase OLE DB Provider 1.0
- Microsoft SQL Server 2000 Service Pack 1 Analysis Services Components 1.0
- Microsoft Access 2000 and SQL Server 2000 Readiness Update 12-21-00
- SQL Spy 6
- Remote Restart 2.0
- Excel Function Dictionary 2.0
- Microsoft Data Access Components RTM 2.5
- Microsoft SQL Server 2000 Patch: Malformed RPC Req
- SQL Server Backup 7.8.6.6412