On Sat, Jan 25, 2003 at 09:09:14AM -0600, Rich Adamson wrote:
> All...
>
> Below not just posted on another list...
>
> Current serious vulnerability... best be blocking the port real soon!
> Might read http://www.nextgenss.com/advisories/mssql-udp.txt for some
> tech detail.
I just released a Nessus plugin (#11214) which will probe for the
vulnerability used by the worm. In addition to this, it will also have
the side effect of disabling the remote SQL server, which - given the
infection rate - is not necessarily a stupid thing to do.
-- Renaud