5.5

CVE-2023-36728

Microsoft SQL Server Denial of Service Vulnerability

Microsoft SQL Server Denial of Service Vulnerability
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MicrosoftOdbc Driver For Sql Server SwPlatformlinux Version >= 17.0 < 17.10.5.1
MicrosoftOdbc Driver For Sql Server SwPlatformmacos Version >= 17.0 < 17.10.5.1
MicrosoftOdbc Driver For Sql Server SwPlatformwindows Version >= 17.0 < 17.10.5.1
MicrosoftOdbc Driver For Sql Server SwPlatformlinux Version >= 18.0 < 18.3.2.1
MicrosoftOdbc Driver For Sql Server SwPlatformmacos Version >= 18.0 < 18.3.2.1
MicrosoftOdbc Driver For Sql Server SwPlatformwindows Version >= 18.0 < 18.3.2.1
MicrosoftOle Db Driver For Sql Server Version >= 18.0 < 18.6.0007.0
MicrosoftOle Db Driver For Sql Server Version >= 19.0 < 19.3.0002.0
MicrosoftSql Server Version2014 Updatesp3
MicrosoftSql Server Version2016 Updatesp3 HwPlatformx64
MicrosoftSql Server Version2017 HwPlatformx64
MicrosoftSql Server Version2019 HwPlatformx64
MicrosoftSql Server Version2022 HwPlatformx64
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.08% 0.242
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
secure@microsoft.com 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.