The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft Security Bulletin MS02-039: Buffer Overruns in SQL Server 2000 Resolution Service Could Enable Code Execution (Q323875)
Time: 00:00 EST/05:00 GMT | News Source: ActiveWin.com | Posted By: Robert Stein

SQL Server 2000 introduces the ability to host multiple instances of SQL Server on a single physical machine. Each instance operates for all intents and purposes as though it was a separate server. However, the multiple instances cannot all use the standard SQL Server session port (TCP 1433). While the default instance listens on TCP port 1433, named instances listen on any port assigned to them. The SQL Server Resolution Service, which operates on UDP port 1434, provides a way for clients to query for the appropriate network endpoints to use for a particular SQL Server instance. There are three security vulnerabilities here. The first two are buffer overruns. By sending a carefully crafted packet to the Resolution Service, an attacker could cause portions of system memory (the heap in one case, the stack in the other) to be overwritten. Overwriting it with random data would likely result in the failure of the SQL Server service; overwriting it with carefully selected data could allow the attacker to run code in the security context of the SQL Server service.

The third vulnerability is a denial of service vulnerability. SQL uses a keep-alive mechanism to distinguish between active and passive instances. It is possible to create a keep-alive packet that, when sent to the Resolution Service, will cause SQL Server 2000 to respond with the same information. An attacker who created such a packet, spoofed the source address so that it appeared to come from a one SQL Server 2000 system, and sent it to a neighboring SQL Server 2000 system could cause the two systems to enter a never-ending cycle of keep-alive packet exchanges. This would consume resources on both systems, slowing performance considerably.

Write Comment
Return to News

  Displaying 276 through 290 of 290
Prev | First
  The time now is 11:00:49 AM ET.
Any comment problems? E-mail us
#276 By 4240821 (45.88.102.114) at 11/18/2024 12:03:13 AM
https://justpaste.me/Bpwi
https://justpaste.me/CRlY2
https://justpaste.me/Cewo3
https://justpaste.me/Bupa3
https://justpaste.me/Bsk51
https://justpaste.me/C8lF1
https://justpaste.me/C1qz1
https://justpaste.me/CEYL2
https://justpaste.me/CeBb2
https://justpaste.me/CGJa1

#277 By 4240821 (80.73.244.53) at 11/18/2024 8:48:03 PM
https://justpaste.me/BlRN2
https://justpaste.me/CTWh1
https://justpaste.me/C1UY3
https://justpaste.me/BgJZ3
https://justpaste.me/BzHE2
https://justpaste.me/CVtq5
https://justpaste.me/Ceke2
https://justpaste.me/CH1M3
https://justpaste.me/CQXv2
https://justpaste.me/BagV6

#278 By 4240821 (77.83.4.69) at 11/19/2024 8:45:29 PM
https://www.google.dz/amp/s/nsfw.su/get/a295/a295mtvbzkwrebcgzfr.php
https://www.google.dj/amp/s/sluts.su/get/a101/a101slrfpkmhzkfwkmr.php
https://www.google.cz/amp/s/sexonly.su/get/a153/a153tpmnhfvekrmlmiu.php
https://www.google.fi/amp/s/sexonly.top/get/a159/a159qpnrfsnqqwsbeqt.php
https://www.google.ee/amp/s/sexonly.top/get/a181/a181cbmckwcytqqepga.php
https://www.google.fi/amp/s/nsfw.su/get/a1/a1fwjmvvgclpefjng.php
https://www.google.es/amp/s/lustful.su/get/a145/a145offmbqgpuylktfr.php
https://www.google.dj/amp/s/lustful.su/get/a51/a51vjkmnucepvzzfoo.php
https://www.google.dk/amp/s/nsfw.su/get/a142/a142jxjktdvktklpqrw.php
https://www.google.dm/amp/s/sluts.su/get/a295/a295ppykslxbaqryyhu.php

#279 By 4240821 (77.246.244.253) at 11/19/2024 9:48:49 PM
https://justpaste.me/CNJE5
https://justpaste.me/CCmG2
https://justpaste.me/CZ2L
https://justpaste.me/Bd9u4
https://justpaste.me/Bz6A4
https://justpaste.me/BwQp2
https://justpaste.me/CWcJ2
https://justpaste.me/C01A
https://justpaste.me/C2wh3
https://justpaste.me/CPUL1

#280 By 4240821 (80.73.244.53) at 11/20/2024 1:53:28 AM
https://www.google.cat/amp/s/sexonly.top/get/a136/a136yehcigzqhlfubvo.php
https://www.google.ci/amp/s/sexonly.top/get/a165/a165dgmhxiiaaebmiaw.php
https://www.google.cat/amp/s/sexonly.su/get/a149/a149qvpgqtsvqasuptp.php
https://www.google.cv/amp/s/nsfw.su/get/a191/a191qncuccttquypdhd.php
https://www.google.cf/amp/s/sexonly.top/get/a276/a276pifpvfaximchkpf.php
https://www.google.cf/amp/s/lustful.su/get/a51/a51yhbcqasqliebitw.php
https://www.google.ch/amp/s/sexonly.su/get/a5/a5exmhmcpptqqewfh.php
https://www.google.cm/amp/s/sluts.su/get/a162/a162rgjvztiznkbyyui.php
https://www.google.ch/amp/s/sexonly.su/get/a270/a270hkptkespxlcbucz.php
https://www.google.cd/amp/s/nsfw.su/get/a100/a100dnqyoljcdtoclxu.php

#281 By 4240821 (77.246.244.253) at 11/21/2024 5:03:54 AM
https://justpaste.me/CBZ0
https://justpaste.me/CNJE5
https://justpaste.me/CVOU
https://justpaste.me/CYhy
https://justpaste.me/C7G9
https://justpaste.me/Cf71
https://justpaste.me/Cd7R3
https://justpaste.me/CAgW2
https://justpaste.me/BgJZ3
https://justpaste.me/CNrb3

#282 By 4240821 (77.246.244.253) at 11/21/2024 6:28:51 AM
https://justpaste.me/ByYR3
https://justpaste.me/Botf1
https://justpaste.me/CMjs2
https://justpaste.me/C0lh
https://justpaste.me/CM47
https://justpaste.me/C1qz1
https://justpaste.me/CY1d2
https://justpaste.me/Ce0g1
https://justpaste.me/C8EX1
https://justpaste.me/C3VC2

#283 By 4240821 (77.246.244.253) at 11/21/2024 1:47:45 PM
https://www.google.ee/amp/s/nsfw.su/get/a154/a154hwgpcnivscztqyl.php
https://www.google.dz/amp/s/nsfw.su/get/a102/a102vokjlhoqrqmqnpo.php
https://www.google.de/amp/s/nsfw.su/get/a60/a60cktjfyqcvqocvyj.php
https://www.google.cz/amp/s/sluts.su/get/a238/a238rqdtyojwlgsqsho.php
https://www.google.dj/amp/s/sluts.su/get/a133/a133vozjcufeuzbymju.php
https://www.google.ec/amp/s/sexonly.su/get/a81/a81lzuospvynmnslqd.php
https://www.google.dk/amp/s/sexonly.su/get/a92/a92kmkqgidzxfccjjx.php
https://www.google.cz/amp/s/nsfw.su/get/a131/a131efqydvwsywcmpkt.php
https://www.google.ec/amp/s/nsfw.su/get/a134/a134zcizqrcgvyauudo.php
https://www.google.ee/amp/s/sluts.su/get/a157/a157dqnifxvewtqfpcm.php

#284 By 4240821 (80.73.244.53) at 11/22/2024 6:30:23 AM
https://www.google.cf/amp/s/sexonly.su/get/a67/a67wlhotebrpbkaadd.php
https://www.google.cc/amp/s/nsfw.su/get/a203/a203duxckcemvlzpqff.php
https://www.google.cm/amp/s/lustful.su/get/a143/a143wbivrrxbqlmvijc.php
https://www.google.cg/amp/s/sexonly.su/get/a183/a183uvgbzgzborryhkz.php
https://www.google.cf/amp/s/sexonly.su/get/a161/a161rdbhvayegxydohj.php
https://www.google.cd/amp/s/sexonly.top/get/a265/a265iwuieeowlmcmffu.php
https://www.google.cd/amp/s/sluts.su/get/a7/a7getztlzgtmyeels.php
https://www.google.cd/amp/s/lustful.su/get/a43/a43xwitrhjsitxczmc.php
https://www.google.cd/amp/s/lustful.su/get/a239/a239hgdwtgeybtfkjbp.php
https://www.google.cc/amp/s/lustful.su/get/a214/a214dzrovqljytrlkgu.php

#285 By 4240821 (45.88.102.114) at 11/22/2024 3:53:59 PM
https://justpaste.me/BhC03
https://justpaste.me/Bpwi
https://justpaste.me/Bhri1
https://justpaste.me/BfQa2
https://justpaste.me/CCmG2
https://justpaste.me/CHty
https://justpaste.me/BtXW2
https://justpaste.me/CZN8
https://justpaste.me/Cazg1
https://justpaste.me/BqoU

#286 By 4240821 (166.1.149.158) at 11/22/2024 4:20:41 PM
https://www.google.gp/amp/s/sexonly.su/get/a250/a250vhrngayzywhlhgx.php
https://www.google.gy/amp/s/nsfw.su/get/a141/a141nwlzxuxyihdrlje.php
https://www.google.fm/amp/s/sluts.su/get/a127/a127ssocfjimrrpwszk.php
https://www.google.gp/amp/s/sexonly.top/get/a230/a230jupeqnqcjvlldtg.php
https://www.google.gr/amp/s/lustful.su/get/a249/a249gbkasesabjggqsb.php
https://www.google.fm/amp/s/lustful.su/get/a82/a82rumukbkpbxldkim.php
https://www.google.gl/amp/s/sexonly.top/get/a47/a47gedkxmrxxuylpmr.php
https://www.google.ge/amp/s/sexonly.top/get/a245/a245yciidbqtdulagfb.php
https://www.google.gg/amp/s/nsfw.su/get/a50/a50avvefhmocmotjtj.php
https://www.google.ga/amp/s/lustful.su/get/a289/a289hxkrdjfwghhmbqo.php

#287 By 4240821 (166.1.149.158) at 11/23/2024 1:46:11 PM
https://www.google.je/amp/s/sexonly.su/get/a25/a25rtdroddmiwwhtlt.php
https://www.google.la/amp/s/sluts.su/get/a114/a114rryfbrubzamtqso.php
https://www.google.kg/amp/s/lustful.su/get/a291/a291zityzvakdrsnvku.php
https://www.google.lt/amp/s/sluts.su/get/a158/a158vscfexxjkeplnln.php
https://www.google.jp/amp/s/sexonly.su/get/a55/a55xzdvqiaylwypwyj.php
https://www.google.la/amp/s/nsfw.su/get/a260/a260wckcvlpctljnfyw.php
https://www.google.lk/amp/s/nsfw.su/get/a129/a129delckqhvvdfxctw.php
https://www.google.kz/amp/s/lustful.su/get/a139/a139novefqjduwgnbqx.php
https://www.google.li/amp/s/sluts.su/get/a201/a201ilpyqbjrwyjrbqm.php
https://www.google.je/amp/s/sluts.su/get/a110/a110dsdmquwavjnaarb.php

#288 By 4240821 (62.76.153.72) at 11/23/2024 7:44:21 PM
https://justpaste.me/Bcd7
https://justpaste.me/BoCH1
https://justpaste.me/CDJJ4
https://justpaste.me/Bd9u4
https://justpaste.me/CDJJ4
https://justpaste.me/CQMj2
https://justpaste.me/C3VC2
https://justpaste.me/BhWs3
https://justpaste.me/BnAV1
https://justpaste.me/CO1t1

#289 By 4240821 (62.76.153.72) at 11/24/2024 1:12:39 AM
https://justpaste.me/Be1j1
https://justpaste.me/Bruf1
https://justpaste.me/CAVg3
https://justpaste.me/BhC03
https://justpaste.me/CPqk
https://justpaste.me/CAKV2
https://justpaste.me/C83w1
https://justpaste.me/CF6X1
https://justpaste.me/C5fl
https://justpaste.me/CMOK1

#290 By 4240821 (212.193.138.162) at 11/24/2024 8:38:55 AM
https://www.google.mw/amp/s/sluts.su/get/a175/a175hxcjlqbmrnvcbte.php
https://www.google.mv/amp/s/nsfw.su/get/a52/a52rqerhpgnexzosrs.php
https://www.google.pk/amp/s/sexonly.top/get/a147/a147hpadeedjkcyktnf.php
https://www.google.nr/amp/s/nsfw.su/get/a296/a296jfqpzzbbmaowjqm.php
https://www.google.no/amp/s/lustful.su/get/a70/a70bgjxnhmntrfcoiy.php
https://www.google.no/amp/s/sluts.su/get/a152/a152haceewzetvqzhsf.php
https://www.google.nu/amp/s/sexonly.su/get/a71/a71wqdasctdyixltre.php
https://www.google.nl/amp/s/sexonly.su/get/a41/a41hixdhnlodfpyqut.php
https://www.google.nl/amp/s/lustful.su/get/a138/a138deqzgnygsspuzjq.php
https://www.google.nr/amp/s/sexonly.su/get/a68/a68wnquarjkygmzpbo.php

Write Comment
Return to News
  Displaying 276 through 290 of 290
Prev | First
  The time now is 11:00:49 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *