5.5

CVE-2023-36728

Microsoft SQL Server Denial of Service Vulnerability

Microsoft SQL Server Denial of Service Vulnerability
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Odbc Driver For Sql Server SwPlatform linux Version >= 17.0 < 17.10.5.1
Microsoft ≫ Odbc Driver For Sql Server SwPlatform macos Version >= 17.0 < 17.10.5.1
Microsoft ≫ Odbc Driver For Sql Server SwPlatform windows Version >= 17.0 < 17.10.5.1
Microsoft ≫ Odbc Driver For Sql Server SwPlatform linux Version >= 18.0 < 18.3.2.1
Microsoft ≫ Odbc Driver For Sql Server SwPlatform macos Version >= 18.0 < 18.3.2.1
Microsoft ≫ Odbc Driver For Sql Server SwPlatform windows Version >= 18.0 < 18.3.2.1
Microsoft ≫ Ole Db Driver For Sql Server Version >= 18.0 < 18.6.0007.0
Microsoft ≫ Ole Db Driver For Sql Server Version >= 19.0 < 19.3.0002.0
Microsoft ≫ Sql Server Version 2014 Update sp3
Microsoft ≫ Sql Server Version 2016 Update sp3 HwPlatform x64
Microsoft ≫ Sql Server Version 2017 HwPlatform x64
Microsoft ≫ Sql Server Version 2019 HwPlatform x64
Microsoft ≫ Sql Server Version 2022 HwPlatform x64
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.85% 0.534
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Microsoft 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36728
Patch
Vendor Advisory