Oval Definition:
oval:org.mitre.oval:def:6954
Revision Date
:
2010-06-14
Version
:
44
Title
:
Buffer overflow vulnerability in MDAC Function
Description
:
Buffer overflow in a component of SQL-DMO for Microsoft Data Access Components (MDAC) 2.5 through 2.7 allows remote attackers to execute arbitrary code via a long response to a broadcast request to UDP port 1434.
Family
:
windows
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2003-0353
Platform(s)
:
Microsoft Windows 2000
Microsoft Windows XP
Product(s)
:
Microsoft Data Access Components 2.5
Microsoft Data Access Components 2.6
Microsoft Data Access Components 2.7
Definition Synopsis
Microsoft Data Access Components 2.5 on Microsoft Windows 2000
Microsoft Windows 2000 is installed
AND
Microsoft Data Access Components 2.5 is installed
AND
File %windir%\System32\odbcbcp.dll is less than 3.70.11.40
OR
Microsoft Data Access Components 2.6 on Microsoft Windows 2000
Microsoft Windows 2000 is installed
AND
Microsoft Data Access Components 2.6 is installed
AND
File %windir%\System32\odbcbcp.dll is less than 2000.80.746.0
OR
Microsoft Data Access Components 2.7 on Microsoft Windows 2000
Microsoft Windows 2000 is installed
AND
Microsoft Data Access Components 2.7 is installed
AND
File %windir%\System32\odbcbcp.dll is less than 2000.81.9041.40
OR
Microsoft Data Access Components 2.7 on Microsoft Windows XP
Microsoft Windows XP is installed
AND
Microsoft Data Access Components 2.7 is installed
AND
File %windir%\System32\odbcbcp.dll is less than 2000.81.9041.40
BACK