{"id":2017,"date":"2009-01-20T23:15:47","date_gmt":"2009-01-20T22:15:47","guid":{"rendered":"http:\/\/www.glorf.it\/blog\/?p=2017"},"modified":"2009-01-21T08:45:39","modified_gmt":"2009-01-21T07:45:39","slug":"security-hotfixes-fuer-den-sql-server","status":"publish","type":"post","link":"http:\/\/www.glorf.it\/blog\/2009\/01\/20\/sql-talk\/sql-server\/security-hotfixes-fuer-den-sql-server","title":{"rendered":"Security-Hotfixes f&#252;r den SQL-Server"},"content":{"rendered":"<p>Ich habe jetzt mal rumgesucht, welche Security-Hotfixes zum SQL-Server (also nicht zu MDAC, Windows oder IE) so kamen. Ist die Liste vollst&#228;ndig?<\/p>\n<ul>\n<li>2002 Juli &#8211; <a href=\"http:\/\/www.microsoft.com\/technet\/security\/bulletin\/ms02-035.mspx\">MS02-035<\/a> &#8211; SA-Passwort steht in Datei &quot;setup.iss&quot;<\/li>\n<li>2002 Juli &#8211; <a href=\"http:\/\/www.microsoft.com\/technet\/security\/bulletin\/ms02-039.mspx\">MS02-039<\/a> &#8211; Fix zum SQL-Slammer<\/li>\n<li>2002 Oktober &#8211; <a href=\"http:\/\/www.microsoft.com\/technet\/security\/bulletin\/ms02-061.mspx\">MS02-061<\/a> &#8211; Stored-Procedure erlaubte &quot;escalation of rights&quot;<\/li>\n<li>2003 Oktober &#8211; <a href=\"http:\/\/www.microsoft.com\/technet\/security\/bulletin\/ms03-031.mspx\">MS03-031<\/a> &#8211; Named Pipe Denial of Service<\/li>\n<li>2008 Juli &#8211; <a href=\"http:\/\/www.microsoft.com\/technet\/security\/bulletin\/ms08-040.mspx\">MS08-040<\/a> (CU7) &#8211; verschiedene Fixes, inkl. &quot;escalation of rights&quot;<\/li>\n<li>2008 September &#8211; <a href=\"http:\/\/www.microsoft.com\/austria\/technet\/bulletin\/ms08-052.mspx\">MS08-052<\/a> (CU9) &#8211; GDI+ erm&#246;glicht Remotecodeausf&#252;hrung<\/li>\n<li>2008 Dezember &#8211; <a href=\"http:\/\/www.microsoft.com\/technet\/security\/advisory\/961040.mspx\">Security Advisory 961040<\/a> (SP3) &#8211; Vulnerability in SQL Server Could Allow Remote Code Execution<\/li>\n<\/ul>\n<p>Ob der Trend anh&#228;lt? Dann sollte in den kommenden Monaten wieder ein Fix kommen und dann ein paar Jahre nichts mehr&#8230; <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Ich habe jetzt mal rumgesucht, welche Security-Hotfixes zum SQL-Server (also nicht zu MDAC, Windows oder IE) so kamen. Ist die Liste vollst&#228;ndig? 2002 Juli &#8211; MS02-035 &#8211; SA-Passwort steht in Datei &quot;setup.iss&quot; 2002 Juli &#8211; MS02-039 &#8211; Fix zum SQL-Slammer 2002 Oktober &#8211; MS02-061 &#8211; Stored-Procedure erlaubte &quot;escalation of rights&quot; 2003 Oktober &#8211; MS03-031 &#8211; [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[16],"tags":[383],"_links":{"self":[{"href":"http:\/\/www.glorf.it\/blog\/wp-json\/wp\/v2\/posts\/2017"}],"collection":[{"href":"http:\/\/www.glorf.it\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.glorf.it\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.glorf.it\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/www.glorf.it\/blog\/wp-json\/wp\/v2\/comments?post=2017"}],"version-history":[{"count":7,"href":"http:\/\/www.glorf.it\/blog\/wp-json\/wp\/v2\/posts\/2017\/revisions"}],"predecessor-version":[{"id":2024,"href":"http:\/\/www.glorf.it\/blog\/wp-json\/wp\/v2\/posts\/2017\/revisions\/2024"}],"wp:attachment":[{"href":"http:\/\/www.glorf.it\/blog\/wp-json\/wp\/v2\/media?parent=2017"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.glorf.it\/blog\/wp-json\/wp\/v2\/categories?post=2017"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.glorf.it\/blog\/wp-json\/wp\/v2\/tags?post=2017"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}