Description
Heap-based buffer overflow in SQL Server allows an authorized attacker to elevate privileges over a network.
Published: 2026-09-08
Score: 8.8 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a heap‑based buffer overflow located in SQL Server code that permits an attacker who already has some form of authorized access to gain higher privileges on the database server. Successful exploitation can lead to unauthorized control over database objects or escalation to administrative rights, compromising confidentiality, integrity, and availability of the system.

Affected Systems

Affected versions include Microsoft SQL Server 2017 CU31, SQL Server 2017 GDR, SQL Server 2019 CU32, SQL Server 2019 GDR, SQL Server 2022 CU26, SQL Server 2022 GDR, SQL Server 2025 CU8, and SQL Server 2025 for x64‑based Systems GDR. The issue applies to all 64‑bit editions of these releases.

Risk and Exploitability

With a CVSS score of 8.8 the vulnerability is considered high severity. EPSS data is not available and the vulnerability is not listed in the CISA KEV catalog, suggesting that no widespread public exploit has been documented yet. The likely attack vector is a network‑based exploit performed by an authorized user or compromised account, taking advantage of direct access to the SQL Server instance or a privileged role that can trigger the vulnerable routine. No public exploit code is currently known to be publicly available.

Generated by OpenCVE AI on September 8, 2026 at 19:15 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest cumulative update or GDR for the affected SQL Server release as listed on Microsoft’s advisory.
  • Restrict network access to the SQL Server instance to trusted hosts and enforce least‑privilege authentication for users connecting to the database.
  • Enable ASLR and DEP on the SQL Server host to reduce the likelihood that a buffer overflow can be successfully exploited if a patch is not yet applied.

Generated by OpenCVE AI on September 8, 2026 at 19:15 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 08 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft microsoft Sql Server 2017 (cu 31)
Microsoft microsoft Sql Server 2017 (gdr)
Microsoft microsoft Sql Server 2019 (cu 32)
Microsoft microsoft Sql Server 2019 (gdr)
Microsoft microsoft Sql Server 2022 (cu 26)
Microsoft microsoft Sql Server 2022 (gdr)
Microsoft microsoft Sql Server 2025 (cu8)
Microsoft microsoft Sql Server 2025 For X64-based Systems (gdr)
Vendors & Products Microsoft microsoft Sql Server 2017 (cu 31)
Microsoft microsoft Sql Server 2017 (gdr)
Microsoft microsoft Sql Server 2019 (cu 32)
Microsoft microsoft Sql Server 2019 (gdr)
Microsoft microsoft Sql Server 2022 (cu 26)
Microsoft microsoft Sql Server 2022 (gdr)
Microsoft microsoft Sql Server 2025 (cu8)
Microsoft microsoft Sql Server 2025 For X64-based Systems (gdr)

Tue, 08 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description Heap-based buffer overflow in SQL Server allows an authorized attacker to elevate privileges over a network.
Title Microsoft SQL Server Elevation of Privilege Vulnerability
First Time appeared Microsoft
Microsoft sql Server 2017
Microsoft sql Server 2019
Microsoft sql Server 2022
Microsoft sql Server 2025
Weaknesses CWE-122
CPEs cpe:2.3:a:microsoft:sql_server_2017:*:-:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2019:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2022:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2025:*:*:*:*:*:*:x64:*
Vendors & Products Microsoft
Microsoft sql Server 2017
Microsoft sql Server 2019
Microsoft sql Server 2022
Microsoft sql Server 2025
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Microsoft Sql Server 2017 (cu 31) Microsoft Sql Server 2017 (gdr) Microsoft Sql Server 2019 (cu 32) Microsoft Sql Server 2019 (gdr) Microsoft Sql Server 2022 (cu 26) Microsoft Sql Server 2022 (gdr) Microsoft Sql Server 2025 (cu8) Microsoft Sql Server 2025 For X64-based Systems (gdr) Sql Server 2017 Sql Server 2019 Sql Server 2022 Sql Server 2025
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-08T18:34:38.303Z

Reserved: 2026-07-29T14:57:03.841Z

Link: CVE-2026-67381

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-08T18:18:21.603

Modified: 2026-09-08T18:38:46.007

Link: CVE-2026-67381

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-08T20:34:31Z

Weaknesses
  • CWE-122

    Heap-based Buffer Overflow