|
|||||||
| Other Tech News The latest community based technology news from across the globe. (If you aren't a community newsposter then use the "Submit News" section.) |
![]() |
|
|
Thread Tools |
|
|
#1 |
|
Banned
Join Date: May 2002
Location: Atlanta
Posts: 959
Rep Power: 0 ![]() |
The vulnerability is in the "pwdencrypt" hashing function, which is included with SQL. A buffer overrun flaw in this function enables an attacker to overwrite a portion of the heap memory, which could either result in the SQL Server application crashing or the attacker being able to execute code on the machine
http://www.eweek.com/article/0,3658,...a=28159,00.asp Makes Linux/unix looking beter everyday
|
|
|
|
![]() |
| Bookmarks |
| Thread Tools | |
|
|