CVE-2023-36728: Microsoft Odbc Driver For SQL Server

Medium severity, CVSS 5.5. EPSS: 0.9% chance of exploitation in the next 30 days.

Microsoft SQL Server Denial of Service Vulnerability

Affected products

  • Microsoft Odbc Driver For SQL Server: from 17.0, before 17.10.5.1 (fixed in 17.10.5.1); from 18.0, before 18.3.2.1 (fixed in 18.3.2.1)
  • Microsoft Ole DB Driver For SQL Server: from 18.0, before 18.6.0007.0 (fixed in 18.6.0007.0); from 19.0, before 19.3.0002.0 (fixed in 19.3.0002.0)
  • Microsoft SQL Server: version 2014 only; version 2016 only; version 2017 only; version 2019 only; version 2022 only

Published 2023-10-10. Last modified 2026-06-17.