Trace Id is missing

Copilot is your AI companion

Always by your side, ready to support you whenever and wherever you need it.
A picture of a dog with a pop up bubble saying Talk to Copilot and asking What celeb does my dog look like?

Security Update for SQL Server 2016 SP2 CU (KB4458621)

This update refreshes Microsoft SQL Server 2016 SP2 CU.

Important! Selecting a language below will dynamically change the complete page content to that language.

Download
  • Version:

    13.0.5201.2

    Date Published:

    8/20/2018

    File Name:

    SQLServer2016-KB4458621-x64.exe

    File Size:

    672.5 MB

    Executing a specially crafted query involving calculating difference between values of different date types and aggregation of the results, could lead to stack corruption, if the query runs in batch mode. Depending on particular values processed by such query, this could lead to terminating the SQL Server process, or a possibility of remote code execution. More information about the vulnerability can be found here: SQL Server 2016 SP2 CU

    The original update for this security vulnerability, KB4293807 released on August 14, 2018, exposed certain testing Trace Flags that were not intended for public release. These trace flags are usually off by default. For this reason, the update has been replaced. If you have previously applied KB4293807, it is recommended that you install KB4458621 as soon as possible. KB4293807 has been superseded and replaced with KB4458621. Please see KB4458621 to download this security update. For other impacted SQL Server releases, please see:

    Security Update for SQL Server 2016 SP1 CU(CU10+GDR)*
    Security Update for SQL Server 2016 SP1 GDR
    Security Update for SQL Server 2016 SP2 CU (CU2+GDR)*
    Security Update for SQL Server 2016 SP2 GDR
    Security Update for SQL Server 2017 RTM CU (CU9+GDR)*
    Security Update for SQL Server 2017 RTM GDR
    * These security updates are for SQL Server instances that have applied a Cumulative Update.

    For a complete listing of the issues resolved in this update, see the associated Microsoft Knowledge Base article.
  • Supported Operating Systems

    Windows 10, Windows 8, Windows 8.1, Windows Server 2012, Windows Server 2012 R2, Windows Server 2016

    This update is applicable to SQL Server 2016 SP2 CU instances installed on supported Windows Operating System.
  • This update refreshes Microsoft SQL Server 2016 SP2 CU that have had a Cumulative Update applied (versions 13.0.5149.0(CU1)-13.0.5161.0(CU2-GDR).
    For Microsoft SQL Server 2016 SP2 instances that have not had any Cumulative Update applied (version 13.0.5026.0-13.0.5081.1), please see 2016 SP2 GDR. After you install this update, you may have to restart your computer.

Follow Microsoft