Latest Builds of SQL Server 2014 – SQLPerformance.com
This security update addresses an escalation of privilege vulnerability described in CVE-2021-1636 . It is also being pushed via Windows Update, so you may get this sooner than you expect it.
From the CVE: “An authenticated attacker could exploit the vulnerability by executing a specially crafted query using $ partition against a table with a Column Store index.”
This security update addresses an escalation of privilege vulnerability described in CVE-2021-1636 . It is also being pushed via Windows Update, so you may get this sooner than you expect it.
From the CVE: “An authenticated attacker could exploit the vulnerability by executing a specially crafted query using $ partition against a table with a Column Store index.”
RTM – Out of Support
Label
Build #
KB Article
Date
Fixes
(public)
RTM Cumulative Update #13
12.0.2568
KB #3144517
2016-04-18
30 (30)
RTM Cumulative Update #12
12.0.2564
KB #3130923
2016-02-22
7 (7)
RTM Cumulative Update #11
12.0.2560
KB #3106659
2015-12-22
19 (19)
RTM Cumulative Update #10
12.0.2556
KB #3094220
2015-10-19
33 (30)
RTM Cumulative Update #9
12.0.2553
KB #3075949
2015-08-17
31 (30)
This QFE update patches a vulnerability which could allow remote code execution. More details in KB #3065718.
RTM Cumulative Update #8
12.0.2546
KB #3067836
2015-06-22
40 (38)
This hotfix addresses availability groups reporting as NOT SYNCHRONIZING, an issue caused by CU #5 below. That issue is documented in KB #3033492 and explained further in this SQL Server blog post.
This hotfix helps alleviate RESOURCE_SEMAPHORE_QUERY_COMPILE waits during concurrent compilation of large queries. A trace flag is also required (-T6498).
Cumulative Update #5 introduced a known issue with Availability Groups reporting as NOT SYNCHRONIZING.
A denial of service / privilege escalation vulnerability was identified and patched August 12, 2014. It is described in Security Bulletin MS14-044 and KB #2984340.
RTM GDR builds below – for non-CU path
Includes TLS 1.2 support (see KB #3135244 and the Release Services blog for more details).
This GDR update patches a vulnerability which could allow remote code execution. More details in Security Bulletin MS15-058 and KB #3065718.
A denial of service / privilege escalation vulnerability was identified and patched August 12, 2014. It is described in Security Bulletin MS14-044 and KB #2984340
RTM
12.0.2000
2014-04-01