VYPR
Unrated severityNVD Advisory· Published Apr 9, 2024· Updated May 3, 2025

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability

CVE-2024-28932

Description

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability

Affected products

16
  • Microsoft/Microsoft ODBC Driver 17 for SQL Server on Linuxv5
    Range: 17.0.0.0
  • Microsoft/Microsoft ODBC Driver 17 for SQL Server on MacOSv5
    Range: 17.0.0.0
  • Microsoft/Microsoft ODBC Driver 17 for SQL Server on Windowsv5
    Range: 17.0.0.0
  • Microsoft/Microsoft ODBC Driver 18 for SQL Server on Linuxv5
    Range: 18.0.0.0
  • Microsoft/Microsoft ODBC Driver 18 for SQL Server on MacOSv5
    Range: 18.0.0.0
  • Microsoft/Microsoft ODBC Driver 18 for SQL Server on Windowsv5
    Range: 18.0.0.0
  • Microsoft/Microsoft SQL Server 2019 (CU 25)v5
    Range: 15.0.0
  • Microsoft/Microsoft SQL Server 2019 (GDR)v5
    Range: 15.0.0
  • Microsoft/Microsoft SQL Server 2022 for (CU 12)v5
    Range: 16.0.0
  • Microsoft/Microsoft SQL Server 2022 (GDR)v5
    Range: 16.0.0
  • Microsoft/Microsoft Visual Studio 2019 version 16.11 (includes 16.0 - 16.10)v5
    Range: 16.11.0
  • Microsoft/Microsoft Visual Studio 2022 version 17.4v5
    Range: 17.4.0
  • Microsoft/Microsoft Visual Studio 2022 version 17.6v5
    Range: 17.6.0
  • Microsoft/Microsoft Visual Studio 2022 version 17.8v5
    Range: 17.8.0
  • Microsoft/Microsoft Visual Studio 2022 version 17.9v5
    Range: 17.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.