Forums: Buffer Overrun In Mdac Function Could Allow Code E - Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Buffer Overrun In Mdac Function Could Allow Code E

#1 User is offline   maxxis 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 42
  • Joined: 15-August 03

Posted 14 January 2004 - 04:48 AM

http://www.microsoft...in/MS04-003.asp

hmm new vuln ? :>
0

#2 User is offline   predx 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 108
  • Joined: 03-December 03

Posted 14 January 2004 - 07:55 AM

sweet too bad i dont know C
0

#3 User is offline   gsicht 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 91
  • Joined: 09-October 03

Posted 14 January 2004 - 08:36 AM

what is mdac?
0

#4 User is offline   cyrixx 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 128
  • Joined: 29-November 03

Posted 14 January 2004 - 09:26 AM

hhhm, having an mdac-scanner, but the exploit is missing :P
0

#5 User is offline   QuadMedic 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 68
  • Joined: 16-September 03

Posted 14 January 2004 - 11:49 AM

:D looks good..........just need the c code
0

#6 User is offline   brOmstar 

  • Sergeant First Class
  • Icon
  • Group: Members
  • Posts: 353
  • Joined: 12-January 04

Posted 14 January 2004 - 01:34 PM

Mitigating factors:

* For an attack to be successful an attacker would have to simulate a SQL server that is on the same IP subnet as the target system.
* When a client system on a network tries to see a list of computers that are running SQL Server and that reside on the network, it sends a broadcast request to all the devices that are on the network. A target system must initiate such a broadcast request to be vulnerable to an attack. An attacker would have no way of launching this first step but would have to wait for anyone to enumerate computers that are running SQL Server on the same subnet. Also, a system is not vulnerable by having these SQL management tools installed.
* Code executed on the client system would only run under the privileges of the client program that made the broadcast request.
0

#7 User is offline   boshcash 

  • Master Sergeant
  • Icon
  • Group: Specialist
  • Posts: 461
  • Joined: 09-October 03

Posted 16 January 2004 - 01:43 AM

i dont think default computers are vulnerable , maybe it helps with the webservers .. and i hope that a real exploit is released ..
0

#8 User is offline   Yellow_Blue 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 32
  • Joined: 01-December 03

Posted 16 January 2004 - 11:02 PM

tnx dude
0

#9 User is offline   Burner 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 23
  • Joined: 25-August 03

Posted 21 January 2004 - 04:02 AM

well got the one for NT4 but not have seen it for NT5

so hope someone got it

greetz
0

#10 Guest_XtrA_*

  • Group: Guests

Posted 21 January 2004 - 04:45 AM

i hope too
0

#11 User is offline   thatsmej 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 103
  • Joined: 17-August 03

Posted 21 January 2004 - 05:05 AM

gsicht, on Jan 14 2004, 04:36 PM, said:

what is mdac?

read you bitch

Quote

Microsoft Data Access Components

0

#12 User is offline   gsicht 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 91
  • Joined: 09-October 03

Posted 22 January 2004 - 02:46 AM

Quote

read you bitch

:P
0

#13 User is offline   winsoc 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 26
  • Joined: 18-September 03

Posted 22 January 2004 - 03:18 AM

gsicht , you can find all the info you need here: http://msdn.microsof...tentid=28001860

By the way, in my old job there was shitloads problems with mdac if you scroll down to the bottom of that link you will see how often a new version of mdac comes out, shit theres even SP's for MDAC.
There's obviously problems with this Component, which opens loads of doors for vulnerabilities and exploitation.
If anyone here wants to take a closer look at this with me and work together then jus let me know.
0

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users

  • Share



Our Sponsors:


SwiftLayer Affiliate Web Hosting