CVE-2023-32027: Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-32027?
CVE-2023-32027 is a vulnerability in the Microsoft ODBC Driver for SQL Server that allows for remote code execution.
How severe is CVE-2023-32027?
CVE-2023-32027 has a severity rating of 7.8, which is considered high.
Which software products are affected by CVE-2023-32027?
The following software products are affected by CVE-2023-32027: Microsoft ODBC Driver 17 for SQL Server on Linux, Microsoft ODBC Driver 17 for SQL Server on MacOS, Microsoft ODBC Driver 18 for SQL Server on Linux, Microsoft ODBC Driver 17 for SQL Server on Windows, Microsoft ODBC Driver 18 for SQL Server on Windows, Microsoft ODBC Driver 18 for SQL Server on MacOS, Microsoft SQL Server 2022 (CU 5), Microsoft SQL Server 2019 (CU 21).
How do I fix CVE-2023-32027 for Microsoft ODBC Driver for SQL Server on Linux?
To fix CVE-2023-32027 for Microsoft ODBC Driver 17 for SQL Server on Linux, you can apply the provided patch. For more information, refer to the vendor's website.
Where can I find more information about CVE-2023-32027?
You can find more information about CVE-2023-32027 on the Microsoft Security Response Center website.