Open Vulnerability and Assessment Language (OVAL)
Offical Language Release Repository Downloads News — November 5, 2009 Search
link to OVAL home page

View Definition

Definition Id: oval:org.mitre.oval:def:83 Date: 2005-09-26
Title: Microsoft SQL Server 3-Function Buffer Overflow
Description: Buffer overflows in Microsoft SQL Server 7.0 and 2000 allow attackers with access to SQL Server to execute arbitrary code through the functions (1) raiserror, (2) formatmessage, or (3) xp_sprintf. NOTE: the C runtime format string vulnerability reported in MS01-060 is identified by CVE-2001-0879.
Version: 2 Class: vulnerability
Status: ACCEPTED Reference(s): CVE-2001-0542
Family: windows
Platform(s): Microsoft Windows 2000 Product(s): MicrosoftSQL Server
Definition Synopsis: