CVE-2021-34485: .NET Core and Visual Studio Information Disclosure Vulnerability
.NET Core and Visual Studio Information Disclosure Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 5.0.9 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.10.5 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 2.1.30 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 3.1.18 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 7.0.7 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.9.10 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.7.18 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 7.1.4 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.4.25 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.9.38
Event History
Frequently Asked Questions
What is CVE-2021-34485?
CVE-2021-34485 is a vulnerability in .NET Core and Visual Studio that allows for information disclosure.
How severe is CVE-2021-34485?
CVE-2021-34485 has a severity rating of medium (5.5).
Which software is affected by CVE-2021-34485?
CVE-2021-34485 affects Microsoft .NET, Microsoft .NET Core, Microsoft PowerShell Core, Microsoft Visual Studio 2017, and Microsoft Visual Studio 2019.
How can I fix CVE-2021-34485?
To fix CVE-2021-34485, it is recommended to update to the latest version of the affected software.
Where can I find more information about CVE-2021-34485?
You can find more information about CVE-2021-34485 on the Microsoft Security Guidance Advisory page: [link](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-34485)