First published: Tue Apr 11 2023(Updated: )
Microsoft ODBC and OLE DB Remote Code Execution Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft OLE DB Driver 18 for SQL Server | ||
Microsoft OLE DB Driver 19 for SQL Server | ||
Microsoft ODBC Driver 18 for SQL Server | ||
Microsoft ODBC Driver 17 for SQL Server | ||
Microsoft ODBC Driver 18 for SQL Server | ||
Microsoft OLE DB Driver 18 for SQL Server | ||
Microsoft Odbc | >=17.0<17.10.3.1 | |
Microsoft Odbc | >=18.0<18.2.1.1 | |
Microsoft Ole Db | >=18.0<18.6.5 | |
Microsoft Ole Db | >=19.1.0<19.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-28304 is a Microsoft ODBC and OLE DB Remote Code Execution Vulnerability.
CVE-2023-28304 has a severity rating of 7.8 (high).
The software affected by CVE-2023-28304 includes Microsoft OLE DB Driver 18 for SQL Server, Microsoft OLE DB Driver 19 for SQL Server, Microsoft ODBC Driver 18 for SQL Server, and Microsoft ODBC Driver 17 for SQL Server.
To fix CVE-2023-28304, you should download and apply the patches provided by Microsoft for the affected software.
You can find more information about CVE-2023-28304 on the Microsoft Security Response Center website.