Unrated severityNVD Advisory· Published Apr 9, 2024· Updated May 3, 2025
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
CVE-2024-28938
Description
Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability
Affected products
16- Microsoft/Microsoft ODBC Driver 17 for SQL Server on Linuxv5Range: 17.0.0.0
- Microsoft/Microsoft ODBC Driver 17 for SQL Server on MacOSv5Range: 17.0.0.0
- Microsoft/Microsoft ODBC Driver 17 for SQL Server on Windowsv5Range: 17.0.0.0
- Microsoft/Microsoft ODBC Driver 18 for SQL Server on Linuxv5Range: 18.0.0.0
- Microsoft/Microsoft ODBC Driver 18 for SQL Server on MacOSv5Range: 18.0.0.0
- Microsoft/Microsoft ODBC Driver 18 for SQL Server on Windowsv5Range: 18.0.0.0
- Microsoft/Microsoft SQL Server 2019 (CU 25)v5Range: 15.0.0
- Microsoft/Microsoft SQL Server 2019 (GDR)v5Range: 15.0.0
- Microsoft/Microsoft SQL Server 2022 for (CU 12)v5Range: 16.0.0
- Microsoft/Microsoft SQL Server 2022 (GDR)v5Range: 16.0.0
- Microsoft/Microsoft Visual Studio 2019 version 16.11 (includes 16.0 - 16.10)v5Range: 16.11.0
- Microsoft/Microsoft Visual Studio 2022 version 17.4v5Range: 17.4.0
- Microsoft/Microsoft Visual Studio 2022 version 17.6v5Range: 17.6.0
- Microsoft/Microsoft Visual Studio 2022 version 17.8v5Range: 17.8.0
- Microsoft/Microsoft Visual Studio 2022 version 17.9v5Range: 17.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- msrc.microsoft.com/update-guide/vulnerability/CVE-2024-28938mitrevendor-advisory
News mentions
0No linked articles in our index yet.