KLA11661
ACE vulnerability in Microsoft SQL Server
Обновлено: 13/03/2020
Дата обнаружения
11/02/2020
Уровень угрозы
High
Описание

Unspecified vulnerability was found in Microsoft SQL Server. Malicious users can exploit this vulnerability to execute arbitrary code.

Пораженные продукты

Microsoft SQL Server 2014 Service Pack 3 for x64-based Systems (GDR)
Microsoft SQL Server 2014 Service Pack 3 for 32-bit Systems (GDR)
Microsoft SQL Server 2014 Service Pack 3 for 32-bit Systems (CU)
Microsoft SQL Server 2016 for x64-based Systems Service Pack 2 (CU)
Microsoft SQL Server 2014 Service Pack 3 for x64-based Systems (CU)
Microsoft SQL Server 2012 for x64-based Systems Service Pack 4 (QFE)
Microsoft SQL Server 2016 for x64-based Systems Service Pack 2 (GDR)
Microsoft SQL Server 2012 for 32-bit Systems Service Pack 4 (QFE)

Решение

Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)

Первичный источник обнаружения
CVE-2020-0618
Оказываемое влияние
?
ACE 
[?]
Связанные продукты
Microsoft SQL Server
CVE-IDS
CVE-2020-06180.0Unknown
KB list

4532097
4535706
4532098
4535288
4532095

Microsoft official advisories
Microsoft Security Update Guide