CVE-2023-32032: .NET and Visual Studio Elevation of Privilege Vulnerability
.NET and Visual Studio Elevation of Privilege Vulnerability
Other sources
CVE-2023-32032
Elevation of privilege - TarFile.ExtractToDirectory ignores extraction directory argument
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-32032?
CVE-2023-32032 is a vulnerability that affects .NET and Visual Studio. It allows an attacker to elevate privileges in the system.
What is the severity of CVE-2023-32032?
CVE-2023-32032 has a severity rating of 6.5, which is considered high.
Which software are affected by CVE-2023-32032?
The following software versions are affected by CVE-2023-32032: Microsoft Visual Studio 2022 version 17.0, 17.2, and 17.6, .NET 7.0, and PowerShell 7.3.
How can I fix CVE-2023-32032 in Visual Studio 2022 version 17.0?
To fix CVE-2023-32032 in Visual Studio 2022 version 17.0, you should install the patch provided by Microsoft. The patch can be downloaded from: [Patch URL for Visual Studio 2022 version 17.0]
Where can I find more information about CVE-2023-32032?
More information about CVE-2023-32032 can be found on the following websites: [MSRC Vulnerability](https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-32032), [Red Hat CVE](https://access.redhat.com/security/cve/CVE-2023-32032), [Red Hat Bugzilla](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=2214900).