CVE-2020-1455: Microsoft SQL Server Management Studio Denial of Service Vulnerability
A denial of service vulnerability exists when Microsoft SQL Server Management Studio (SSMS) improperly handles files, aka 'Microsoft SQL Server Management Studio Denial of Service Vulnerability'.
Other sources
A denial of service vulnerability exists when Microsoft SQL Server Management Studio (SSMS) improperly handles files. An attacker could exploit the vulnerability to trigger a denial of service. To exploit the vulnerability, an attacker would first require execution on the victim system. The security update addresses the vulnerability by ensuring Microsoft SQL Server Management Studio properly handles files.
— NVD
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-1455?
CVE-2020-1455 is classified as a denial of service vulnerability in Microsoft SQL Server Management Studio.
How do I fix CVE-2020-1455?
To mitigate CVE-2020-1455, update Microsoft SQL Server Management Studio to version 18.6 or later.
Which versions of SQL Server Management Studio are affected by CVE-2020-1455?
CVE-2020-1455 affects all versions of Microsoft SQL Server Management Studio up to version 18.6.
What are the potential impacts of CVE-2020-1455?
The potential impact of CVE-2020-1455 is a denial of service that can disrupt services within Microsoft SQL Server Management Studio.
Is there a workaround for CVE-2020-1455?
There are no official workarounds for CVE-2020-1455; the best course of action is to upgrade to a fixed version.