CVE-2023-21704: Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.1050.5Patch KB5021522 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 12.0.6174.8Patch KB5021045 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 14.0.2047.8Patch KB5021127 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.0.2101.7Patch KB5021125 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 14.0.3460.9Patch KB5021126 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 12.0.6444.4Patch KB5021037 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.0.4280.7Patch KB5021124 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 13.0.7024.30Patch KB5021128 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 13.0.6430.49Patch KB5021129
Event History
Frequently Asked Questions
What is CVE-2023-21704?
CVE-2023-21704 is a remote code execution vulnerability in the Microsoft ODBC Driver for SQL Server.
Which software versions are affected by CVE-2023-21704?
CVE-2023-21704 affects Microsoft SQL Server versions 2014, 2016, 2017, 2019, and 2022.
What is the severity of CVE-2023-21704?
CVE-2023-21704 has a severity rating of 7.8, which is considered high.
How can I fix CVE-2023-21704?
You can fix CVE-2023-21704 by applying the appropriate patches and updates provided by Microsoft.
Where can I find more information about CVE-2023-21704?
You can find more information about CVE-2023-21704 on the Microsoft Security Response Center website.