SQL slammer, i have it, awww geez now what?

From: Birdy (anonymous_at_discussions.microsoft.com)
Date: 07/23/04


Date: Fri, 23 Jul 2004 00:05:56 -0700

the tool removal and bulletins say it's for MSDE, but
mine is installed thru an application (no vendor does not
have fix) and mine says MSDA and JET 4.0 and is OLEDB
Provider for ODBC drivers (MSDTC) I shut down ports
1433 and 1434 and 26101 and 35894 (last two are
backdoors). but i am clueless on what to do about
patches. i really don't use SQL except thru how my
application calls on it to do it's job. i am getting
buffer overflow and DoS. ouch.



Relevant Pages

  • Re: SBCL just turned 1.0!
    ... KT> fairy has left the building, we eagerly await your patch. ... trace the problem to the vendor, make a bug report, and the vendor ... magical support contract, so I filed a support request and included ... of code with the bug and fix it! ...
    (comp.lang.lisp)
  • Re: Complicated Disclosure Scenario
    ... either A) they put you on pay roll and you fix all ... Initially the bug presented itself as a way to ... > before they began creating an advisory or even working on a patch. ... > I informed this vendor, who is by no means short on resources, that I ...
    (Vuln-Dev)
  • Re: [Full-Disclosure] Microsoft Cries Wolf ( again )
    ... profitiable to allow sloppy code and a simple fix later (behind the scenes ... vendor notification, rather than public notification. ... > You don't fix code by extensive testing. ...
    (Full-Disclosure)
  • Re: What version of SQL is on SBS R2 Standard and can I use it?
    ... Found a doc that steps me thru a typical install but have a couple specific ... one was the authentication but my vendor already specified using ... sql authentication and the document kind of leans towards that. ... Last does this replace/upgrades the MSDE on SBS 2003 STD or is it a parallel ...
    (microsoft.public.windows.server.sbs)
  • Re: What version of SQL is on SBS R2 Standard and can I use it?
    ... 4GB database vs. MSDE which only supports 2GB. ... install SQL2005 Express on an existing SBS 2003 Standard server? ... OK I'm a bit light on the SQL training, OK a lot; I use the paint by number ... If the application vendor supports MSDE, ...
    (microsoft.public.windows.server.sbs)