First published: Tue Jul 11 2023(Updated: )
.NET and Visual Studio Elevation of Privilege Vulnerability
Credit: secure@microsoft.com secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft PowerShell 7.3 | ||
Microsoft PowerShell 7.2 | ||
nuget/Microsoft.WindowsDesktop.App.Runtime.win-x86 | >=7.0.0<7.0.9 | 7.0.9 |
nuget/Microsoft.WindowsDesktop.App.Runtime.win-x86 | >=6.0.0<6.0.20 | 6.0.20 |
nuget/Microsoft.WindowsDesktop.App.Runtime.win-x64 | >=6.0.0<6.0.20 | 6.0.20 |
nuget/Microsoft.WindowsDesktop.App.Runtime.win-x64 | >=7.0.0<7.0.9 | 7.0.9 |
nuget/Microsoft.WindowsDesktop.App.Runtime.win-arm64 | >=6.0.0<6.0.20 | 6.0.20 |
nuget/Microsoft.WindowsDesktop.App.Runtime.win-arm64 | >=7.0.0<7.0.9 | 7.0.9 |
Microsoft Visual Studio 2022 | =17.4 | |
Microsoft Visual Studio 2022 | =17.2 | |
Microsoft Visual Studio 2022 | =17.0 | |
Microsoft .NET | >=6.0.0<6.0.20 | |
Microsoft .NET | >=7.0.0<7.0.9 | |
Microsoft Visual Studio 2022 | >=17.0.0<17.0.23 | |
Microsoft Visual Studio 2022 | >=17.2.0<17.2.17 | |
Microsoft Visual Studio 2022 | >=17.4.0<17.4.9 | |
Microsoft Visual Studio 2022 | >=17.6.0<17.6.5 | |
Microsoft Visual Studio 2022 | =17.3 | |
Microsoft .NET 7.0 | ||
Microsoft .NET 6.0 | ||
Microsoft Visual Studio 2022 | >=17.0<17.0.23 | |
>=6.0.0<6.0.20 | ||
>=7.0.0<7.0.9 | ||
>=17.0<17.0.23 | ||
>=17.2.0<17.2.17 | ||
>=17.4.0<17.4.9 | ||
>=17.6.0<17.6.5 | ||
=17.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-33127 is a vulnerability that allows elevation of privilege in .NET and Visual Studio.
CVE-2023-33127 has a severity rating of high (8.1).
Microsoft PowerShell 7.2, Visual Studio 2022 (versions 17.2, 17.3, 17.4), PowerShell 7.3, Visual Studio 2022 (versions 17.0, 17.4), .NET (versions 6.0, 7.0).
To fix the vulnerability in Microsoft PowerShell 7.2, update to the latest version by following the remediation steps provided by Microsoft.
To fix the vulnerability in Visual Studio 2022 version 17.2, update to the latest version by following the remediation steps provided by Microsoft.