First published: Tue Apr 09 2019(Updated: )
A remote code execution vulnerability exists when the Visual Studio C++ Redistributable Installer improperly validates input before loading dynamic link library (DLL) files, aka 'Visual Studio Remote Code Execution Vulnerability'.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Visual Studio Professional 2017 | =15.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-0809 is classified as a critical severity vulnerability due to its potential to allow remote code execution.
To fix CVE-2019-0809, you should update the Visual Studio C++ Redistributable Installer to the latest version provided by Microsoft.
CVE-2019-0809 affects Microsoft Visual Studio 2017 version 15.9.
If exploited, CVE-2019-0809 allows an attacker to execute arbitrary code on the affected system.
There are no known workarounds for CVE-2019-0809, so updating the software is the recommended action.