Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
How could an attacker exploit this vulnerability? An authenticated attacker could exploit this vulnerability by connecting to an affected SQL Server and submitting a specially crafted query or request that triggers a memory corruption condition, allowing the attacker to execute code on the server. Authentication is required; user interaction is not required.
0ccbbf129444eb66344ccafb92b00df4, Microsoft Red Team, Pwnforr777, pwnky, 3072