First published: Mon Sep 30 2024(Updated: )
.NET and Visual Studio Denial of Service Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
nuget/System.Text.Json | >=6.0.0<=6.0.9 | 6.0.10 |
nuget/System.Text.Json | >=8.0.0<=8.0.4 | 8.0.5 |
Microsoft PowerShell 7.5 | ||
Microsoft PowerShell 7.5 | ||
Microsoft PowerShell 7.5 | ||
Microsoft .NET 8.0 | ||
Microsoft .NET 6.0 | ||
Microsoft .NET 6.0 | ||
Microsoft .NET 6.0 | ||
Microsoft .NET 8.0 | ||
Microsoft .NET 8.0 | ||
Microsoft PowerShell | ||
Microsoft PowerShell | ||
Visual Studio Community 2022 | =17.10 | |
Visual Studio Community 2022 | =17.8 | |
Visual Studio Community 2022 | =17.6 | |
All of | ||
Any of | ||
Microsoft .NET Framework | >=6.0.0<6.0.35 | |
Microsoft .NET Framework | >=8.0.0<8.0.10 | |
Any of | ||
macOS | ||
Linux Kernel | ||
Microsoft Windows Operating System | ||
Visual Studio Community 2022 | >=17.6.0<17.6.20 | |
Visual Studio Community 2022 | >=17.8.0<17.8.15 | |
Visual Studio Community 2022 | >=17.10.0<17.10.8 | |
Visual Studio Community 2022 | >=17.11.0<17.11.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43485 is classified as a Denial of Service vulnerability that can affect various Microsoft products.
To fix CVE-2024-43485, you should update your affected software versions to their respective latest patches.
CVE-2024-43485 affects Microsoft Visual Studio 2022, .NET versions 6.0 and 8.0, and PowerShell version 7.2 and above.
CVE-2024-43485 impacts .NET 6.0 versions below 6.0.10 and .NET 8.0 versions below 8.0.5.
As of now, there are no public reports confirming known exploits for CVE-2024-43485.