Date: Wed, 31 Jul 2002 16:28:35 -0300
From: Claudio Ortiz Meinberg <cmeinberg@sistran.com.br.>
To: [email protected]Subject: TZ Advisores - Buffer Overflow in IBM U2 UniVerse ODBC
Systems Affecteds:
All UniVerse versions with UV/ODBC
Explanation:
Trying to make an invalid query the client crashes and make the server slow
with 5sec to 2min lag what could crash the server.
Expoit:
Make a query accessing UV/ODBC (I've used CrystalReports all versions) and
make a valid/invalid link between tables, it will make the server crash, the
line will be locked and the file too.
Resolution:
Just boot the server, it will stop the lag and release the locked line and
file