CVE-2023-36873: .NET Framework Spoofing Vulnerability
.NET Framework Spoofing Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.6167Patch KB5029242 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.20107Patch KB5029259 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.7.04057.05Fixed in 4.7.04057.04Patch KB5029569 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.09176.01Patch KB5029649 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.7.04057.05Fixed in 4.7.4057.04Patch KB5029569 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.09176.01Patch KB5029648 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 3.5.09176.01Patch KB5029655 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.09176.01Patch KB5029650 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.09176.01Patch KB5028948 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.7.04057.07Fixed in 4.7.04057.06Patch KB5029568 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.7.04057.05Fixed in 4.7.04057.04Patch KB5029567 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.7.04057.05Fixed in 4.7.4057.04Patch KB5029566 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 3.5.04057.05Patch KB5029647 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.7.4057.05Patch KB5029647 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.04654.06Patch KB5029650 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.04654.06Patch KB5029648 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.04654.06Patch KB5029655 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.04654.06Patch KB5029649 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.04654.08Patch KB5029647 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.04654.08Fixed in 4.8.04654.07Patch KB5029568 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.04654.06Fixed in 4.8.04654.05Patch KB5029567 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 3.5.4654.08Patch KB5029647 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.04654.06Patch KB5028952 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.4654.06Patch KB5028952 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 4.8.4654.06Fixed in 4.8.04654.05Patch KB5029566
Event History
Frequently Asked Questions
What is the severity of CVE-2023-36873?
CVE-2023-36873 is classified as a spoofing vulnerability which can allow an attacker to impersonate a trusted entity.
How do I fix CVE-2023-36873?
To fix CVE-2023-36873, you need to apply the latest patches provided by Microsoft for the affected .NET Framework versions.
Which versions of .NET Framework are affected by CVE-2023-36873?
CVE-2023-36873 affects .NET Framework versions 3.5, 4.6.2, 4.7, 4.7.1, 4.7.2, 4.8, and 4.8.1.
Can CVE-2023-36873 affect Windows Server operating systems?
Yes, CVE-2023-36873 can affect various Windows Server operating systems that utilize the affected .NET Framework versions.
Is CVE-2023-36873 a critical vulnerability?
CVE-2023-36873 is considered a high-severity vulnerability due to its potential to allow impersonation attacks.