-
Two
buffer overrun vulnerabilities on the SQL Server Resolution Service running
on port 1434. By sending a carefully crafted packet to the Resolution
Service, an attacker could cause portions of system memory (the heap in one
case, the stack in the other) to be overwritten, resulting in a buffer
overrun.
-
A
Denial of Service (DoS) vulnerability to the same service. This
vulnerability involves sending spoofed source keep-alive packets to port
1434 from one SQL server to another, which could result in a never-ending
keep-alive packet exchange from one server to the other and greatly
diminished performance.