Description
Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.
Published: 2026-09-08
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Information Disclosure
Action: Apply Patch
AI Analysis

Impact

Buffer over-read in Microsoft SQL Server enables an authorized attacker to read memory beyond the intended buffer boundaries over a network interface, resulting in the disclosure of sensitive data. This information disclosure flaw can reveal confidential data or internal state of the database environment. The weakness is classified as a buffer over-read (CWE-126).

Affected Systems

Products impacted include Microsoft SQL Server 2019 CU 32 and GDR, SQL Server 2022 CU 26 and GDR, and SQL Server 2025 CU8 and GDR, all on x64-based systems. The issue applies to all instances of these versions that have not applied the latest cumulative update referenced by Microsoft.

Risk and Exploitability

With a CVSS score of 6.5 the vulnerability is considered medium severity. The EPSS score is not available, and it has not been listed in the CISA KEV catalog. The exploit requires an attacker to have authorized credentials against the SQL Server instance. Because the attacker must already be authenticated, the risk is limited to the scope of the database host or network segment where the instance resides. The impact is confined to the protected data, and there is no evidence of additional privilege escalation or lateral movement beyond the database context.

Generated by OpenCVE AI on September 9, 2026 at 01:56 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Install the latest cumulative update or patch for Microsoft SQL Server 2019 CU 32, GDR, SQL Server 2022 CU 26, GDR, or SQL Server 2025 CU8, GDR as provided on the Microsoft Security Advisory page.
  • Restrict the exposure of the SQL Server instance to trusted networks and enforce strict access controls; apply least‑privilege authentication for database connections.
  • Monitor SQL Server audit logs and network traffic for anomalous read operations that could indicate exploitation attempts.

Generated by OpenCVE AI on September 9, 2026 at 01:56 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 09 Sep 2026 23:00:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft microsoft Sql Server 2019 (gdr)
Microsoft microsoft Sql Server 2022 (gdr)
Microsoft microsoft Sql Server 2025 For X64-based Systems (gdr)
Vendors & Products Microsoft microsoft Sql Server 2019 (gdr)
Microsoft microsoft Sql Server 2022 (gdr)
Microsoft microsoft Sql Server 2025 For X64-based Systems (gdr)

Tue, 08 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 08 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description Buffer over-read in SQL Server allows an authorized attacker to disclose information over a network.
Title Microsoft SQL Server Information Disclosure Vulnerability
First Time appeared Microsoft
Microsoft sql Server 2019
Microsoft sql Server 2022
Microsoft sql Server 2025
Weaknesses CWE-126
CPEs cpe:2.3:a:microsoft:sql_server_2019:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2022:*:*:*:*:*:*:x64:*
cpe:2.3:a:microsoft:sql_server_2025:*:*:*:*:*:*:x64:*
Vendors & Products Microsoft
Microsoft sql Server 2019
Microsoft sql Server 2022
Microsoft sql Server 2025
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Microsoft Sql Server 2019 (gdr) Microsoft Sql Server 2022 (gdr) Microsoft Sql Server 2025 For X64-based Systems (gdr) Sql Server 2019 Sql Server 2022 Sql Server 2025
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-25T21:33:45.117Z

Reserved: 2026-08-10T18:43:43.201Z

Link: CVE-2026-73029

cve-icon Vulnrichment

Updated: 2026-09-08T20:19:15.709Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-08T18:20:32.987

Modified: 2026-09-15T16:11:20.427

Link: CVE-2026-73029

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-09T22:45:06Z

Weaknesses