SQL Server worm "Slammer" is no risk for SwyxWare (kb2318)

The information in this article applies to:

  • Microsoft Database Engine 2000
  • Microsoft Database Engine 1.0
  • Microsoft SQL Server 2000
  • Microsoft SQL Server 7.0
  • SwyxWare all versions

[ Summary | Information | Links ]


Last week the SQL Server worm Slammer filled the topics of all news. This articles describes the worm and why it is no risk for the SwyxWare.


The SQL Server worm "Slammer"

"Slammer" uses a security gap within Microsofts SQL Server 2000. This gap has been addressed by Micrososft by a security update in October 2002. The worm generates a huge data load via UDP port 1434 which slows down an SQL Server machine and produce high costs for data transfer. The worm searches and infects other SQL Servers and spreads therefore quite fast.

The worm gains control over the SQL Server by creating a Buffer Overflow. Microsoft SQL Server 2000 installations with Service Pack 3 installed are immune against "Slammer". "Slammer" itself has a size of 376 bytes.

SwyxWare and "Slammer"

SwyxWare uses the Microsoft Database Engine (MSDE) Version 7.0 which is an MS SQL Server 7.0 without administrative tools to store configuration and user settings. "Slammer" only infects MS SQL Server 2000 machines and is therefore no harm for a standard SwyxWare installation.

If SwyxWare is being used with an MS SQL Server 2000, which is of course possible, Swyx assumes the database administrator to install all Security Updates and Service Packs as they become available from Microsoft.

MS SQL Server 7.0 Service Pack 4

The Service Pack 4 can be found on the SwyxWare CD, the Swyx FTP Server or directly on the Microsoft Webpages. Swyx recommends the installation of the Service Pack allthough it is not necessary for the usage of SwyxWare.


As far as software supplied or used by us, includes open source elements the additional terms under apply in addition. An overview which products from the Swyx portfolio include open source elements and which open source license is relevant can be found under

The third-party contact information included in this article is provided to help you find the technical support you need. This contact information is subject to change without notice. Swyx in no way guarantees the accuracy of this third-party contact information nor is responsible for it's content.


Comment on this article

If we have any follow-up questions, where can we contact you?

E-Mail Address (optional)


This feedback form can't be used for support requests. Those requests must be directed to your Swyx reseller or distributor.