Description
Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
Published: 2026-09-08
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

The vulnerability is a heap‑based buffer overflow in Microsoft SQL Server 2025. An authenticated attacker with network access can overflow a buffer and execute arbitrary code. The effect is that the attacker gains full control over the SQL Server instance and potentially the underlying host, which can lead to data theft, tampering, or disruption of services.

Affected Systems

Microsoft SQL Server 2025, including the Cumulative Update 8 rollout and the x64‑based GDR distribution, are affected. The issue is present in the x64 architecture configuration of SQL Server 2025.

Risk and Exploitability

The CVSS score of 8.8 indicates a high severity scenario. EPSS data is unavailable, but the overflow requires only authenticated network access, narrowing the exploitable surface to users who can connect to the database. The vulnerability is not listed in CISA KEV, yet remote code execution remains a critical risk that could be leveraged by adversaries within the trusted / internal network.

Generated by OpenCVE AI on September 8, 2026 at 19:26 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the Microsoft SQL Server 2025 cumulative update CU8 that includes the heap‑overflow fix.
  • Restrict network connectivity to SQL Server to trusted networks or use firewall rules to limit exposure to authenticated users.
  • Enforce strong authentication and least‑privilege for SQL Server accounts to reduce the chance of an attacker gaining the necessary authorized access.

Generated by OpenCVE AI on September 8, 2026 at 19:26 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 09 Sep 2026 22:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 08 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network.
Title Microsoft SQL Server Remote Code Execution Vulnerability
First Time appeared Microsoft
Microsoft sql Server 2025
Weaknesses CWE-122
CPEs cpe:2.3:a:microsoft:sql_server_2025:*:*:*:*:*:*:x64:*
Vendors & Products Microsoft
Microsoft sql Server 2025
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Sql Server 2025
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-25T21:30:36.418Z

Reserved: 2026-07-29T14:57:03.840Z

Link: CVE-2026-67373

cve-icon Vulnrichment

Updated: 2026-09-09T10:04:45.860Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-08T18:18:20.950

Modified: 2026-09-16T12:02:15.647

Link: CVE-2026-67373

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-08T20:00:12Z

Weaknesses
  • CWE-122

    Heap-based Buffer Overflow