MS_SQL xp_enumresultset possible buffer overflow

 

Code: p581

Severity: Warning

 

Description: This event is generated when an attempt is made to overflow a buffer in the Microsoft SQL Server and Data Engine.

Impact: Serious. A Denial of Service condition or execution of arbitrary code is possible.

Corrective: Apply the appropriate vendor supplied patches. Disallow direct access to the SQL server from sources external to the protected network. Ensure that this event was not generated by a legitimate session then investigate the server for signs of compromise Look for other events generated by the same IP addresses.