|
A remote overflow exists in SQL Server. The SQL Server fails to properly check the length specifier in the xp_sprintf() function resulting in a menory overflow. With a specially crafted request, an attacker can cause execution of arbitrary code resulting in a loss of confidentiality and/or integrity.
|