First published: Tue Feb 08 2022(Updated: )
.NET Denial of Service Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft .NET 6.0 | ||
Microsoft Visual Studio 2019 | =16.9 | |
Microsoft Visual Studio 2019 | =16.11 | |
Microsoft Visual Studio 2019 | =8.10 | |
Visual Studio Professional 2022 | =17.0 | |
Microsoft .NET 5.0 | ||
Microsoft .NET Framework | >=5.0<5.0.14 | |
Microsoft .NET Framework | >=6.0.0<6.0.2 | |
Microsoft Visual Studio 2019 for Mac | >=8.10<8.10.18 | |
Visual Studio Professional 2019 | >=16.0<=16.11 | |
Visual Studio Professional 2022 | >=17.0<17.0.6 | |
Fedora | =34 | |
Fedora | =35 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-21986 is a .NET Denial of Service vulnerability that affects multiple Microsoft products including Visual Studio 2019 and .NET 5.0 and 6.0.
CVE-2022-21986 has a severity rating of 7.5, which is considered high.
To fix the CVE-2022-21986 vulnerability in Visual Studio 2019, you should update to version 16.9 or install the provided patch.
To fix the CVE-2022-21986 vulnerability in .NET 5.0, you should update to the latest version or install the provided patch.
To fix the CVE-2022-21986 vulnerability in .NET 6.0, you should update to the latest version or install the provided patch.