Name:
MSSQL.TDS.NULL.DoS
Released Date:
Sep 11 2006
Severity:
low

FortiGuard Center > Vulnerability Encyclopedia


In-Depth Analysis

Description

It indicates a Denial-of-Service (DoS) vulnerability in Microsoft SQL Server.


There exists a vulnerability with the processing of Tabular Data Stream (TDS) headers in Microsoft SQL Server 7.0. Due to inadequate input validation, a remote attacker can crash a target server by passing it a malformed TDS packet.

 
Impact
Attackers can cause DoS on the victim server.
 
Affected Products
Any unprotected SQL Server 7.0 is vulnerable to the attack.
Aliases
MS.SQL.Server.TDS.NULL.Data.DoS
References
N/A
Recommended Actions

Apply appropriate patches from Microsoft at http://www.microsoft.com/technet/security/bulletin/ms99-059.mspx or upgrade the server to the latest non-vulnerable version.

 
 
SITE MAP  |  LEGAL NOTICES

      © 2003 FORTINET INC. ALL RIGHTS RESERVED