The Mudcat Café TM
Thread #48060   Message #719509
Posted By: Amos
29-May-02 - 11:16 AM
Thread Name: Tech: Worm Alert -- SQL
Subject: Technical: Worm Alert -- SQL
SQL Server Administrators - MS SQL Worm

Network security has identified a rapidly propagating worm (a.k.a. SQLsnake Worm) that exploits Microsoft SQL servers. A lightweight version of MS SQL, Microsoft SQLServer Desktop Edition (MSDE), may also be exploitable when it is installed on Windows Servers or Workstations. It is reported that MSDE may be available as a separate installation with the following packages:

- MS Access 2000

- Visio Enterprise Network Tools

- Microsoft Project Central

- Visual Studio

See MS KB Article #Q313418 for more info:

http://support.microsoft.com/default.aspx?scid=kb;en-us;Q322336

The extent of the damage caused by the SQLsnake worm has not been fully quantified / reported at this time but it is known to capture and redistribute captured account / password data to the Far East.


The above alert was received today from the network support department at our labs and is presumed reliable.

A