CVE-2022-23276: SQL Server for Linux Containers Elevation of Privilege Vulnerability
Published Feb 8, 2022
·Updated
SQL Server for Linux Containers Elevation of Privilege Vulnerability
Affected Software
3 affected componentsFixes available
Microsoft SQL Server=2019
Linux Linux kernel
Microsoft SQL Server 2019 for Linux Containers
Event History
Feb 8, 2022
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
Feb 9, 2022
CVE Published
via MITRE·04:37 PM
Data Sourced
via MITRE·04:37 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2022-23276?
CVE-2022-23276 is a vulnerability in SQL Server for Linux Containers that allows an attacker to elevate their privileges.
2
What is the severity of CVE-2022-23276?
CVE-2022-23276 has a severity rating of 7.8 (high).
3
How does CVE-2022-23276 affect Microsoft SQL Server 2019 for Linux Containers?
CVE-2022-23276 affects Microsoft SQL Server 2019 for Linux Containers by allowing an attacker to elevate their privileges.
4
Is Linux Linux Kernel vulnerable to CVE-2022-23276?
No, Linux Linux Kernel is not vulnerable to CVE-2022-23276.
5
How can I fix CVE-2022-23276?
To fix CVE-2022-23276, update your SQL Server for Linux Containers using the provided patches and follow the remediation steps provided by Microsoft.