CVE Vulnerabilities

CVE-2023-21718

Integer Underflow (Wrap or Wraparound)

Published: Feb 14, 2023 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Microsoft ODBC Driver for SQL Server Remote Code Execution Vulnerability

Weakness

The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.

Affected Software

Name Vendor Start Version End Version
Sql_server Microsoft 2008-sp4 (including) 2008-sp4 (including)
Sql_server Microsoft 2008_r2-sp3 (including) 2008_r2-sp3 (including)
Sql_server Microsoft 2012-sp4 (including) 2012-sp4 (including)
Sql_server Microsoft 2014-sp3 (including) 2014-sp3 (including)
Sql_server Microsoft 2016-sp3 (including) 2016-sp3 (including)
Sql_server Microsoft 2017 (including) 2017 (including)
Sql_server Microsoft 2019 (including) 2019 (including)
Sql_server Microsoft 2022 (including) 2022 (including)

References