CVE-2023-21797: Microsoft ODBC Driver Remote Code Execution Vulnerability
Microsoft ODBC Driver Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.26366Patch KB5022874 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.20821Patch KB5022894 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.24116Patch KB5022895 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.5717Patch KB5022838 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.21915Patch KB5022893 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.19747Patch KB5022858 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.2604Patch KB5022834 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22621.1265Patch KB5022845 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22621.1574Patch KB5022836 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.2604Patch KB5022834 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19042.2604Patch KB5022834 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.4010Patch KB5022840 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.1547Fixed in 10.0.20348.1540Patch KB5022921
Event History
Frequently Asked Questions
What is the severity of CVE-2023-21797?
CVE-2023-21797 has been rated as a critical vulnerability due to the risk of remote code execution.
How do I fix CVE-2023-21797?
To fix CVE-2023-21797, apply the latest patches provided by Microsoft for the affected software versions.
Which products are affected by CVE-2023-21797?
CVE-2023-21797 affects several versions of Microsoft Windows, including Server 2022, Server 2019, Windows 10, and Windows 11.
What types of vulnerabilities does CVE-2023-21797 represent?
CVE-2023-21797 represents a remote code execution vulnerability in the Microsoft ODBC Driver.
How can I determine if I'm impacted by CVE-2023-21797?
You can determine if you are impacted by CVE-2023-21797 by checking if you are using an affected version of Microsoft Windows or the ODBC Driver.