CVE-2024-49043
published 2024-11-12CVE-2024-49043: Microsoft.SqlServer.XEvent.Configuration.dll Remote Code Execution Vulnerability
PriorityP340high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
0.59%
44.2th percentile
Microsoft.SqlServer.XEvent.Configuration.dll Remote Code Execution Vulnerability
Affected
30 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | microsoft_sql_server_2016_service_pack_3 | >= 13.0.0 < 13.0.6455.2 | 13.0.6455.2 |
| microsoft | microsoft_sql_server_2016_service_pack_3_azure_connect_feature_pack | >= 13.0.0 < 13.0.7050.2 | 13.0.7050.2 |
| microsoft | microsoft_sql_server_2017 | >= 14.0.0 < 14.0.2070.1 | 14.0.2070.1 |
| microsoft | microsoft_sql_server_2017 | >= 14.0.0 < 14.0.3485.1 | 14.0.3485.1 |
| microsoft | microsoft_sql_server_2019 | >= 15.0.0 < 15.0.2130.3 | 15.0.2130.3 |
| microsoft | microsoft_sql_server_2019 | >= 15.0.0 < 15.0.4410.1 | 15.0.4410.1 |
| microsoft | microsoft_sql_server_2022 | >= 16.0.0 < 16.0.1135.2 | 16.0.1135.2 |
| microsoft | microsoft_sql_server_2022_for | >= 16.0.0 < 16.0.4155.4 | 16.0.4155.4 |
| microsoft | sql_server_2016 | >= 13.0.6300.2 < 13.0.6455.2 | 13.0.6455.2 |
| microsoft | sql_server_2016 | >= 13.0.7000.253 < 13.0.7050.2 | 13.0.7050.2 |
| microsoft | sql_server_2017 | >= 14.0.1000.169 < 14.0.2070.1 | 14.0.2070.1 |
| microsoft | sql_server_2017 | >= 14.0.3006.16 < 14.0.3485.1 | 14.0.3485.1 |
| microsoft | sql_server_2019 | >= 15.0.2000.5 < 15.0.2130.3 | 15.0.2130.3 |
| microsoft | sql_server_2019 | >= 15.0.4003.23 < 15.0.4410.1 | 15.0.4410.1 |
| microsoft | sql_server_2022 | >= 16.0.1000.6 < 16.0.1135.2 | 16.0.1135.2 |
| microsoft | sql_server_2022 | >= 16.0.4003.1 < 16.0.4155.4 | 16.0.4155.4 |
| msrc | microsoft_sql_server_2016_for_x64-based_systems_service_pack_3 | — | — |
| msrc | microsoft_sql_server_2016_for_x64-based_systems_service_pack_3_azure_connect_fea | — | — |
| msrc | microsoft_sql_server_2017_for_x64-based_systems | — | — |
| msrc | microsoft_sql_server_2019_for_x64-based_systems | — | — |
| msrc | microsoft_sql_server_2022_for_x64-based_systems | — | — |
| xmlsoft | libxml2 | >= 0 < 2.9.10+dfsg-5ubuntu0.20.04.9 | 2.9.10+dfsg-5ubuntu0.20.04.9 |
| xmlsoft | libxml2 | >= 0 < 2.9.10+dfsg-5ubuntu0.20.04.8 | 2.9.10+dfsg-5ubuntu0.20.04.8 |
| xmlsoft | libxml2 | >= 0 < 2.9.13+dfsg-1ubuntu0.6 | 2.9.13+dfsg-1ubuntu0.6 |
| xmlsoft | libxml2 | >= 0 < 2.9.13+dfsg-1ubuntu0.5 | 2.9.13+dfsg-1ubuntu0.5 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_msrc7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Microsoft
Microsoft.SqlServer.XEvent.Configuration.dll Remote Code Execution Vulnerability
vendor_msrc·2024-11-12·CVSS 7.8
CVE-2024-49043 [HIGH] CWE-426 Microsoft.SqlServer.XEvent.Configuration.dll Remote Code Execution Vulnerability
Microsoft.SqlServer.XEvent.Configuration.dll Remote Code Execution Vulnerability
FAQ: According to the CVSS metric, the attack vector is local (AV:L). Why does the CVE title indicate that this is a remote code execution?
The word Remote in the title refers to the location of the attacker. This type of exploit is sometimes referred to as Arbitrary Code Execution (ACE). The attack itself is carried out locally.
For example, when the score indicates that the Attack Vector is Local and User Interaction is Required, this could describe an exploit in which an attacker, through social engineering, convinces a victim to download and open a specially crafted file from a website which leads to a local attack on their computer.
FAQ: I am running SQL Server on my system. What action do I need to tak
OSV
libxml2 vulnerabilities
osv·2025-02-25·CVSS 7.8
CVE-2022-49043 libxml2 vulnerabilities
libxml2 vulnerabilities
It was discovered that libxml2 incorrectly handled certain memory
operations. A remote attacker could use this issue to cause libxml2 to
crash, resulting in a denial of service, or possibly execute arbitrary
code. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and
Ubuntu 18.04 LTS. (CVE-2022-49043)
It was discovered that the libxml2 xmllint tool incorrectly handled
certain memory operations. If a user or automated system were tricked into
running xmllint on a specially crafted xml file, a remote attacker could
cause xmllint to crash, resulting in a denial of service. This issue only
affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 18.04 LTS.
(CVE-2024-34459)
It was discovered that libxml2 did not properly manage memory. An attacker
could poss
OSV
libxml2 vulnerabilities
osv·2025-01-29·CVSS 7.8
CVE-2022-49043 libxml2 vulnerabilities
libxml2 vulnerabilities
It was discovered that libxml2 incorrectly handled certain memory
operations. A remote attacker could use this issue to cause libxml2 to
crash, resulting in a denial of service, or possibly execute arbitrary
code. (CVE-2022-49043)
It was discovered that the libxml2 xmllint tool incorrectly handled
certain memory operations. If a user or automated system were tricked into
running xmllint on a specially crafted xml file, a remote attacker could
cause xmllint to crash, resulting in a denial of service. (CVE-2024-34459)
GHSA
GHSA-p3qp-q8pw-qf3p: Microsoft
ghsa_unreviewed·2024-11-12
CVE-2024-49043 [HIGH] CWE-426 GHSA-p3qp-q8pw-qf3p: Microsoft
Microsoft.SqlServer.XEvent.Configuration.dll Remote Code Execution Vulnerability
No detection rules found.
No public exploits indexed.
2024-11-12
Published