Vendor/3rd party problems with SQL/MSDE Patches

From: Russ (Russ.Cooper@RC.ON.CA)
Date: 01/28/03

  • Next message: Jeff Moss: "Black Hat Announcements"
    Date:         Mon, 27 Jan 2003 18:26:37 -0500
    From: Russ <Russ.Cooper@RC.ON.CA>
    To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM
    
    

    Folks,

    I've been getting reports from individuals claiming they're vendors are
    saying they won't support SQL SP3, or, some patch or another related to
    Slammer.

    I'd like to get these out into the open so they can be dealt with.

    Would you please drop me a note informing me of the Vendor and Product
    (including version, and platform its running on) if you have encountered
    this problem already.

    Cheers,
    Russ - NTBugtraq Editor

    oooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo
    Delivery co-sponsored by TruSecure Corporation
    oooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo
    TICSA - Anniversary Special - Limited Time

    Become TICSA certified for just $221.25 US when you register before 3/31/03
    with PROMO "TS0103" at www.2test.com. NO membership fees, certification
    good for 2 years. Price for international delivery just $296.25 US, with
    this offer. Offer cannot be combined with any other special and expires
    3/31/03. Visit www.trusecure.com/ticsa for full details.

    oooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooo



    Relevant Pages

    • RE: [Full-disclosure] Our Industry Is Seriously Ethics Impaired
      ... to get the patch done in a reasonable time frame? ... >The company is planning to reward security researchers who reveal ... >information on newly discovered vulnerabilities. ... >3Com will notify affected vendors of security flaws so they can ...
      (Full-Disclosure)
    • Re: Hogwash
      ... Be ready on Monday morning for a small patch, ... >>> contacts with various projects and vendors know no more than what was ... >> If you fail to immunize your users, then the best you can do is tell ... then the bug will be public. ...
      (FreeBSD-Security)
    • RE: [fw-wiz] terminal services
      ... > people didn't patch their machines. ... Yes, but if you look at all the patches and DLL versions, it's a twisty ... > No doubt, but the holes are secondary to what I believe the root problem is, ... > which is laziness on the part of users, admins and vendors to apply patches ...
      (Firewall-Wizards)
    • Re: IO-APIC on nforce2 [PATCH] + [PATCH] for nmi_debug=1 + [PATCH] for idle=C1halt, 2.6.5
      ... I cannot see anyone using your above patch without an integrated ... I'm not clued-in on the nmi_watchdog and 8259 ack issues. ... any support from the vendors. ... send the line "unsubscribe linux-kernel" in ...
      (Linux-Kernel)
    • RE: [fw-wiz] terminal services
      ... > pointing out the danger of opening extra holes in your firewall. ... people didn't patch their machines. ... Vendors need to stop sticking their ...
      (Firewall-Wizards)