Home

Description

Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability

PUBLISHED Reserved 2024-03-22 | Published 2024-04-09 | Updated 2025-05-03 | Assigner microsoft




HIGH: 8.8CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C

Problem types

CWE-122: Heap-based Buffer Overflow

Product status

15.0.0 before 15.0.4360.2
affected

16.0.0 before 16.0.4120.1
affected

15.0.0 before 15.0.2110.4
affected

16.0.0 before 16.0.1115.1
affected

19.0.0 before 19.3.0003.0
affected

18.0.0 before 18.7.0002.0
affected

References

msrc.microsoft.com/update-guide/vulnerability/CVE-2024-29982 (Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability) vendor-advisory

cve.org (CVE-2024-29982)

nvd.nist.gov (CVE-2024-29982)

Download JSON