Views
13

Your rating
Rate update installation process

Log in to rate this update.
Login

Risk factor
No ratings yet. Be the first to rate this update.

Smooth installs 0%
Minor issues 0%
Major issues 0%

AI enhanced content

Update Summary

KB5084819 is a security update for SQL Server 2017 GDR that fixes elevation-of-privilege vulnerabilities, including CVE-2026-32167 and CVE-2026-32176. It updates SQL Server 2017 to build 14.0.2105.1 and includes linked server and SQL Agent security fixes.

Update Details

Security

  • Fixes CVE-2026-32167, an elevation of privilege vulnerability in SQL Server linked servers that could let a low-privileged user gain sysadmin permissions.
  • Fixes CVE-2026-32176, a SQL injection issue in SQL Server Agent that could allow an authorized attacker to elevate privileges over the network.

Bug Fixes

  • Updates SQL Server 2017 components to product version 14.0.2105.1 / file version 2017.140.2105.1.

Known Issues

  • Linked server queries that use MSDASQL and specify a provider string (@provstr) can fail with error 7416 because stricter connection validation may reject some linked server configurations.

Hints

  • Prerequisite: SQL Server 2017 or any SQL Server 2017 GDR release through this GDR must already be installed.
  • If you install a language pack after applying this update, you must reinstall the update.
  • The update is available through Windows Update, Microsoft Update Catalog, and Microsoft Download Center.
  • Installing this security update is optional for computers that do not host Microsoft SQL Server Reporting Services.

Links

Product Information

Vendor: Microsoft

Product: SQL Server

Product type: Software

Variant: SQL Server 2017

Version: 14.0.2105.1

Vendor release date: Apr 14, 2026

Original release notes: View on vendor site

Published on updatealert.io: Aug 16, 2026