Publisher's Description
From Microsoft:
SQL Server 2000 provides a number of functions that enable database queries to generate text messages. In some cases, the functions create a text message and store it in a variable; in others, the functions directly display the message. A vulnerability has been discovered with these functions.
Use of an invalid format type character may allow SQL Server to overwrite an internal buffer that may overwrite an address in the SQL Server process space with arbitrary data. If SQL Server overwrites an address in the SQL Server process space with arbitrary data, SQL Server may potentially allow you to execute arbitrary code within SQL Server or the SQL Server process may abnormally terminate.
More Popular Database Software downloads
- Oracle Database 10g Express Edition
2,728 downloads
- MySQL Database Server
2,578 downloads
- Navicat Premium Essentials (Multiple Databases GUI)
1,401 downloads
- PL/SQL Developer
1,300 downloads
- Crystal Reports
1,126 downloads
Add Your Review
Submit your reply
E-mail this review
Report offensive content
Previous Versions: