Microsoft on Monday warned customers that attack code has been released targeting a critical vulnerability in older versions of its widely used SQL Server database software, and urged users to apply a temporary workaround.
The bug was first reported to Microsoft last April by an Austrian security consulting company, SEC Consult. But the firm apparently grew tired of waiting for Microsoft to decide when or whether it would release a patch, disclosed the flaw two weeks ago and published proof-of-concept exploit code.
|