Upgrade Microsoft OLE DB Driver for SQL Server to Avoid Remote Code Execution Vulnerability CVE-2023-38169
    • 15 Jul 2024
    • 1 Minute to read
    • Contributors
    • PDF

    Upgrade Microsoft OLE DB Driver for SQL Server to Avoid Remote Code Execution Vulnerability CVE-2023-38169

    • PDF

    Article summary

    The Lasernet Server and Lasernet Meta installers install Microsoft OLE DB Driver for SQL Server. However, Lasernet 9.15.5 (and earlier) and Lasernet 10.5.2 (and earlier) install a version of the driver (18.3.0) that has the following vulnerability: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-38169

    This vulnerability is resolved in Microsoft OLE DB Driver for SQL Server 18.6.7.

    To ensure that this vulnerability is not present on Lasernet servers (Server app) or clients (Meta app), use one of the following methods to upgrade the installed driver to version 18.6.7:


    Do not install version 19 of Microsoft OLE DB Driver for SQL Server.

    Changing your password will log you out immediately. Use the new password to log back in.
    First name must have atleast 2 characters. Numbers and special characters are not allowed.
    Last name must have atleast 1 characters. Numbers and special characters are not allowed.
    Enter a valid email
    Enter a valid password
    Your profile has been successfully updated.