OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: c c (cesarc56yahoo.com)
Date: Thu Mar 07 2002 - 16:35:38 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Hoops...

    Sql Server 2000 all service packs is affected too.

    Try:

    exec xp_dirtree N'XXX...'--> 260 exactly X's

    The overflow will ocurr only if the parameter is
    passed as unicode and the string lenght must be
    exactly 260 in lenght.

    Especial Thanks to Aaron C. Newman (Application
    Security, Inc.) to point me that Sql 2000 is affected
    too and for his colaboration in tests.

    Cesar Cerrudo.
    Argentina.

    __________________________________________________
    Do You Yahoo!?
    Try FREE Yahoo! Mail - the world's greatest free email!
    http://mail.yahoo.com/