- Quick specs
- Price: Update
- Operating system: Windows 2003, Windows XP, Windows 2000
- Date added: January 12, 2004
- Total Downloads: 132
- Downloads last week: 1
- See full specifications
- Average user rating: Be the first to rate this product!
Publisher's description
From Microsoft :Microsoft Data Access Components (MDAC) is a collection of components that provides the underlying functionality for a number of database operations, such as connecting to remote databases and returning data to a client. When a client system on a network tries to see a list of computers that are running SQL Server and that reside on the network, it sends a broadcast request to all the devices that are on the network. Because of a vulnerability in a specific MDAC component, an attacker could respond to this request with a specially-crafted packet that could cause a buffer overflow.
An attacker who successfully exploited this vulnerability could gain the same level of privileges over the system as the program that initiated the broadcast request. The actions an attacker could carry out would be dependent on the permissions under which the program using MDAC ran. If the program ran with limited privileges, an attacker would be limited accordingly; however, if the program ran under the local system context, the attacker would have the same level of permissions.
Since the original version of MDAC on your system may have changed from updates available on the Microsoft Web site, we recommend using the following tool to determine the version of MDAC you have on your system: Microsoft Knowledge Base article 301202 "HOW TO: Check for MDAC Version" discusses this tool and explains how to use it. Also, Microsoft Knowledge Base article 231943 discusses the release history of the different versions of MDAC.
Mitigating factors:
- For an attack to be successful an attacker would have to simulate a SQL server that is on the same IP subnet as the target system.
- When a client system on a network tries to see a list of computers that are running SQL Server and that reside on the network, it sends a broadcast request to all the devices that are on the network. A target system must initiate such a broadcast request to be vulnerable to an attack. An attacker would have no way of launching this first step but would have to wait for anyone to enumerate computers that are running SQL Server on the same subnet. Also, a system is not vulnerable by having these SQL management tools installed.
- Code executed on the client system would only run under the privileges of the client program that made the broadcast request.
More popular Encryption Software downloads
- 43,858 downloads 1. RoboForm
- 29,802 downloads 2. Hotspot Shield
- 26,710 downloads 3. Computer Use Reporter
- 9,031 downloads 4. Easy File Encryption
- 8,103 downloads 5. Easy Private Disk
- See all Encryption Software downloads
User reviews
Write your own review Be the first one to review Buffer Overrun in MDAC Function Could Allow Code Execution (832483) 1.0 and share your experience with the CNET community!
Submit your review
- See more CNET content tagged:
- Microsoft Data Access Components,
- Microsoft SQL Server,
- attacker,
- client system,
- request


