SQLServerUpdates.com
  • Home – Most Recent Updates
    • SQL Server 2022 Updates
    • SQL Server 2019 Updates
    • SQL Server 2017 Updates
    • SQL Server 2016 Updates
    • SQL Server 2014 Updates
    • SQL Server 2012 Updates
    • SQL Server 2008 R2 Updates
    • SQL Server 2008 Updates
  • Download SQL Server
  • Subscribe to Updates
  • Contact Us
    • Frequently Asked Questions

A Bunch of Security Updates for 2016-2022 Just Dropped.

5 months ago
Brent Ozar
SQL Server 2016, SQL Server 2017, SQL Server 2019, SQL Server 2022, Updates
1 Comment

Microsoft just published security update CVE-2025-49719, which includes links to new patches for all SQL Server versions going back to 2016. (SQL Server 2014 & earlier are no longer under extended support, so it’s not clear whether they were unaffected, or just won’t be patched.)

The security update says that “Improper input validation in SQL Server allows an unauthorized attacker to disclose information over a network,” but that’s it for technical details. The attack complexity is described as low, but it doesn’t look like there’s been an exploit in the wild.

We’ve updated the SQLServerUpdates.com list of current builds. Happy patching!

Brent Ozarhttps://sqlserverupdates.com
I make Microsoft SQL Server faster and more reliable. I love teaching, travel, and laughing.
Previous Post
New Security Patches for SQL Server 2022, 2019, 2017, and 2016
Next Post
New Security Updates to Fix SQL Injection Vulnerabilities

1 Comment. Leave new

  • Shawn Oden
    July 10, 2025 1:40 pm

    And it looks like Microsoft also released a CU20 (KB5059390) for SQL 2022 today (10 July 2025). Gotta love it when they release back to back patches like this. 🙂

    Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Fill out this field
Fill out this field
Please enter a valid email address.

Subscribe

Want to get an email when Microsoft publishes a new SP or CU for SQL Server? Subscribe here.

Recent Updates

  • New Security Updates to Fix SQL Injection Vulnerabilities August 13, 2025
  • A Bunch of Security Updates for 2016-2022 Just Dropped. July 9, 2025
  • New Security Patches for SQL Server 2022, 2019, 2017, and 2016 October 8, 2024
  • Announcing SQL Server 2022 CU14 July 23, 2024
  • Security Update to Avoid Remote Code Execution July 10, 2024

© Brent Ozar Unlimited®. All Rights Reserved. Privacy Policy