CVE-2012-1891: Buffer Overflow
Heap-based buffer overflow in Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2 and Windows Data Access Components (WDAC) 6.0 allows remote attackers to execute arbitrary code via crafted XML data that triggers access to an uninitialized object in memory, aka "ADO Cachesize Heap Overflow RCE Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1891?
CVE-2012-1891 has a critical severity rating, as it allows remote attackers to execute arbitrary code.
How do I fix CVE-2012-1891?
To fix CVE-2012-1891, update Microsoft Data Access Components to the latest version recommended by Microsoft.
What systems are affected by CVE-2012-1891?
CVE-2012-1891 affects Microsoft Data Access Components 2.8 SP1, 2.8 SP2, and Windows Data Access Components 6.0.
Can CVE-2012-1891 be exploited remotely?
Yes, CVE-2012-1891 can be exploited remotely through crafted XML data.
What is the nature of the vulnerability in CVE-2012-1891?
CVE-2012-1891 is a heap-based buffer overflow vulnerability that can lead to remote code execution.