Microsoft SQL Server 7.0/2000 DBCC Buffer Overflow Vulnerability
BID:5877
Info
Microsoft SQL Server 7.0/2000 DBCC Buffer Overflow Vulnerability
| Bugtraq ID: | 5877 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2002-1137 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 02 2002 12:00AM |
| Updated: | Jul 11 2009 05:06PM |
| Credit: | Discovery is credited to Martin Rakhmanoff <[email protected]>. |
| Vulnerable: |
Microsoft SQL Server 2000 SP2 Microsoft SQL Server 2000 SP1 Microsoft SQL Server 2000 Microsoft SQL Server 7.0 SP4 Microsoft SQL Server 7.0 SP3 Microsoft SQL Server 7.0 SP2 Microsoft SQL Server 7.0 SP1 Microsoft SQL Server 7.0 Microsoft Data Engine 2000 Microsoft Data Engine (MSDE) 1.0 |
| Not Vulnerable: | |
Discussion
Microsoft SQL Server 7.0/2000 DBCC Buffer Overflow Vulnerability
A buffer overflow was reported in one of the Database Console Commands (DBCCs) that ship with Microsoft SQL Server 7.0/2000.
This issue may be exploited to execute arbitrary code with the privileges of the SQL Server process.
This vulnerability is reported to be a new variant of the issue described in Microsoft Security Bulletin MS02-038 and Bugtraq ID 5307, but may be exploited by any authenticated SQL user.
A buffer overflow was reported in one of the Database Console Commands (DBCCs) that ship with Microsoft SQL Server 7.0/2000.
This issue may be exploited to execute arbitrary code with the privileges of the SQL Server process.
This vulnerability is reported to be a new variant of the issue described in Microsoft Security Bulletin MS02-038 and Bugtraq ID 5307, but may be exploited by any authenticated SQL user.
Exploit / POC
Microsoft SQL Server 7.0/2000 DBCC Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Microsoft SQL Server 7.0/2000 DBCC Buffer Overflow Vulnerability
Solution:
Microsoft has revised Security Bulletin MS02-056. Microsoft recommends that users of SQL 2000 and MSDE 2000 apply the patch from MS02-061 which contains additional security fixes:
Microsoft SQL Server 2000
Microsoft SQL Server 7.0 SP4
Microsoft SQL Server 2000 SP1
Microsoft SQL Server 2000 SP2
Solution:
Microsoft has revised Security Bulletin MS02-056. Microsoft recommends that users of SQL 2000 and MSDE 2000 apply the patch from MS02-061 which contains additional security fixes:
Microsoft SQL Server 2000
-
Microsoft sql2ksp3
http://www.microsoft.com/sql/downloads/2000/sp3.asp?SD=GN&LN=en-us&gss nb=1
Microsoft SQL Server 7.0 SP4
-
Microsoft Q327068
http://support.microsoft.com/default.aspx?scid=kb;en-us;Q327068&sd=tec h
Microsoft SQL Server 2000 SP1
-
Microsoft sql2ksp3
http://www.microsoft.com/sql/downloads/2000/sp3.asp?SD=GN&LN=en-us&gss nb=1
Microsoft SQL Server 2000 SP2
-
Microsoft Q316333
http://support.microsoft.com/default.aspx?scid=kb;en-us;Q316333&sd=tec h -
Microsoft sql2ksp3
http://www.microsoft.com/sql/downloads/2000/sp3.asp?SD=GN&LN=en-us&gss nb=1
References
Microsoft SQL Server 7.0/2000 DBCC Buffer Overflow Vulnerability
References:
References:
- Microsoft Security Bulletin MS02-056 (Microsoft)
- Microsoft Security Bulletin MS02-061 (Microsoft)