First published: Tue Sep 10 2024(Updated: )
Microsoft SQL Server Information Disclosure Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft SQL Server 2019 | ||
Microsoft SQL Server 2017 (CU 31) | ||
Microsoft SQL Server 2017 | ||
Microsoft SQL Server 2017 | >=14.0.1000.169<14.0.2060.1 | |
Microsoft SQL Server 2017 | >=14.0.3006.16<14.0.3475.1 | |
Microsoft SQL Server 2019 | >=15.0.2000.5<15.0.2120.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43474 is categorized as a medium severity information disclosure vulnerability.
To fix CVE-2024-43474, apply the latest security updates provided by Microsoft for the affected SQL Server versions.
CVE-2024-43474 affects Microsoft SQL Server 2017 and 2019.
CVE-2024-43474 is an information disclosure vulnerability that may allow attackers to access sensitive data.
Yes, Microsoft has released patches for the affected versions of SQL Server to mitigate CVE-2024-43474.