Release date:
Updated on:
Affected Systems:
Sybase Enterprise Application Server 6.x
Sybase Adaptive Server Enterprise 15.x
Sybase ECDA 15.x
Sybase MFC/DC 15.x
Sybase OpenSwitch 15.x
Sybase Replication Server 15.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 48934
Sybase is an American enterprise software and service company.
The Sybase product has multiple implementation vulnerabilities, which can be exploited by malicious users to execute arbitrary code and control the affected systems.
1) An unknown error exists in the Open Server component when processing the TDS packets.
2) when processing some login packets, the Open Server Component has an unknown error.
<* Source: Luigi Auriemma (aluigi@pivx.com)
Link: http://www.sybase.com/detail? Id = 1094235
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Sybase
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.sybase.com/home