Security update for SQL Server 2019 CU25

David D. Lengar 0 Reputation points


I would like to clear up some confusion regarding security updates for SQL Server 2019. If Security update for SQL Server 2019 CU 25 KB5036335 is pushed out by our System Engineers team to a server, does that mean it includes the Cumulative Update 25 (CU25), Cumulative Update 24 (CU24) and CU 23 and so on?

Currently, our process is to uninstall the security update for CU 25 first and install the latest Cumulative Update such as Cumulative Update (CU20) and would like to know if that is necessary to do. Does installing the latest Security Update for Sever 2019 CU 25 give you those previous CUs.

Please let me know

SQL Server
SQL Server
A family of Microsoft relational database management and analysis systems for e-commerce, line-of-business, and data warehousing solutions.
12,933 questions
Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,320 questions
0 comments No comments
{count} votes

4 answers

Sort by: Most helpful
  1. Azar 20,665 Reputation points

    Hi there David D. Lengar

    I get where the confusion might come from. The thing is, when you install a security update like KB5036335 for SQL Server 2019, it's primarily focused on fixing specific security vulnerabilities within the software. It doesn't necessarily bundle all the improvements and fixes from previous cumulative updates (CUs).

    Cumulative updates (CUs), on the other hand, are more comprehensive. They not only include security fixes but also other enhancements, bug fixes, and improvements to the SQL Server product.

    So, if your System Engineers team pushes out a security update like KB5036335, it's essential to understand that it's primarily about security, not about rolling up all the updates from previous CUs.

    Hope this helps clarify things for you!

    If this helps kindly accept the answer thanks much.

  2. Olaf Helper 41,571 Reputation points

    You can take "cumulative updates" by it's name: They are cumulative and include all previous CU, you only need to install only the latest CU.

  3. Erland Sommarskog 102.4K Reputation points

    The most recent Cumulative Update for SQL 2019 is CU26, so I would suggestion that you install that version. It includes the security fix.

    0 comments No comments

  4. Hania Lian 8,726 Reputation points Microsoft Vendor


    KB5036335 is the cumulative update to SQL Server 2019 that includes previous updates and will make improvements to them.

    So, you don't need to install CU20. You just need to install the latest cumulative update.

    You can download updates from this link:

    Best Regards,

    Hania Lian


    If the Answer is helpful, please click "Accept Answer" and upvote it.