Vulnerability Details CVE-2014-4061
Microsoft SQL Server 2008 SP3, 2008 R2 SP2, and 2012 SP1 does not properly control use of stack memory for processing of T-SQL batch commands, which allows remote authenticated users to cause a denial of service (daemon hang) via a crafted T-SQL statement, aka "Microsoft SQL Server Stack Overrun Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.333
EPSS Ranking 96.6%
CVSS Severity
CVSS v2 Score 6.8
Products affected by CVE-2014-4061
-
cpe:2.3:a:microsoft:sql_server:2008
-
cpe:2.3:a:microsoft:sql_server:2012