CVE-2023-29349: Microsoft Odbc Driver For SQL Server

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Microsoft ODBC and OLE DB Remote Code Execution Vulnerability

Affected products

  • Microsoft Odbc Driver For SQL Server: from 17.0.1.1, before 17.10.4.1 (fixed in 17.10.4.1); from 18.0.1.1, before 18.2.1.1 (fixed in 18.2.1.1)
  • Microsoft Ole DB Driver For SQL Server: from 18.0.2, before 18.6.0006.0 (fixed in 18.6.0006.0); from 19.0.0, before 19.3.0001.0 (fixed in 19.3.0001.0)
  • Microsoft SQL Server: version 2019 only; version 2022 only

Published 2023-06-16. Last modified 2026-06-17.