Oval Definition:oval:org.mitre.oval:def:121
Revision Date:2014-06-23Version:3
Title:Microsoft SQL Server Extended Stored Procedure Buffer Overflow
Description:Buffer overflows in extended stored procedures for Microsoft SQL Server 7.0 and 2000 allow remote attackers to cause a denial of service or execute arbitrary code via a database query with certain long arguments.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2002-0154
Platform(s):Microsoft Windows 2000
Product(s):Microsoft SQL Server 2000
Definition Synopsis
  • SQL Server 2000 is installed
  • AND the version of sqlservr.exe is less than 2000.80.608.0
  • AND the version of odsole70.dll is less than 2000.80.606.0
  • AND the version of xpqueue.dll is less than 2000.80.606.0
  • AND the version of xprepl.dll is less than 2000.80.606.0
  • AND the version of xplog70.dll is less than 2000.80.606.0
  • AND the version of xpweb70.dll is less than 2000.80.606.0
  • AND the version of xpstar.dll is less than 2000.80.628.0
  • BACK