CVE-2024-43519: Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.25118Patch KB5044342 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.22221Patch KB5044343 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.27366Patch KB5044321 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.22918Patch KB5044306 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.7428Patch KB5044293 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.20796Patch KB5044286 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.2033Patch KB5044284 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22631.4317Patch KB5044285 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.5011Patch KB5044273 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.25398.1189Patch KB5044288 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22000.3260Patch KB5044280 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.5011Patch KB5044273 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22621.4317Patch KB5044285 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.2762Patch KB5044281 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.6414Patch KB5044277
Event History
Frequently Asked Questions
What is the severity of CVE-2024-43519?
CVE-2024-43519 is classified as a critical remote code execution vulnerability in Microsoft WDAC OLE DB provider for SQL Server.
How do I fix CVE-2024-43519?
To fix CVE-2024-43519, apply the security patches provided by Microsoft for your affected version of Windows.
Which versions of Windows are impacted by CVE-2024-43519?
CVE-2024-43519 affects various versions, including Windows Server 2016, Windows 10, and Windows 11 across multiple builds.
What are the potential consequences of exploiting CVE-2024-43519?
Exploiting CVE-2024-43519 could allow an attacker to execute arbitrary code on the affected system, leading to system compromise.
Is there a workaround for CVE-2024-43519?
Currently, the recommended approach for CVE-2024-43519 is to apply the latest security updates, as no official workaround has been provided.