Integer overflow in BI Connector ODBC Driver - CVE-2026-19001
Published: August 18, 2026
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code.
The vulnerability exists due to out-of-bounds write in metadata retrieval functions when handling unusually long catalog, schema, or object names. A remote attacker can supply an oversized catalog, schema, or object name to trigger memory corruption and execute arbitrary code.
Successful exploitation may also cause abnormal termination within the calling application's process.