CVE-2024-49050: Visual Studio Code Python Extension Remote Code Execution Vulnerability
Published Nov 12, 2024
·Updated
Visual Studio Code Python Extension Remote Code Execution Vulnerability
Affected Software
2 affected componentsFixes available
Microsoft Python extension for Visual Studio Code
Microsoft Python Visual Studio Code<2024.18.2
Remediation
Event History
Nov 12, 2024
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·05:54 PM
Data Sourced
via MITRE·05:54 PM
DescriptionSeverity
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-49050?
CVE-2024-49050 has been classified as a high-severity vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2024-49050?
To fix CVE-2024-49050, update the Microsoft Python Extension for Visual Studio Code to the latest version beyond 2024.18.2.
3
What versions of the Microsoft Python Extension are affected by CVE-2024-49050?
CVE-2024-49050 affects all versions of the Microsoft Python Extension for Visual Studio Code up to and including 2024.18.2.
4
What type of vulnerability is CVE-2024-49050?
CVE-2024-49050 is a remote code execution vulnerability that can allow an attacker to execute arbitrary code on the user's system.
5
Who is the vendor for CVE-2024-49050?
The vendor for CVE-2024-49050 is Microsoft, specifically for their Python Extension for Visual Studio Code.