Network Management
SolarWinds Products and Microsoft SQL ODBC Driver Vulnerabilities
This article addresses vulnerabilities in Microsoft SQL ODBC Driver as described in CVE-2023-36785, CVE-2023-36417, CVE-2023-36420, and CVE-2023-36730.
First published date
Last published date
Overview
The following security bulletins were released to address vulnerabilities in Microsoft SQL ODBC Driver:
-
A Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
-
A Microsoft SQL OLE DB Remote Code Execution Vulnerability
-
A Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
-
A Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
The vulnerabilities described in these CVEs impact numerous software companies.
Product section
Cause
Microsoft ODBC Driver and SQL OLE DB Remote Code Execution vulnerabilities
Resolution
These vulnerabilities apply to Microsoft SQL deployments. To address the security issues, apply the corresponding hotfix package. See Update: Hotfixes released for ODBC and OLE DB drivers for SQL Server.