First published: Tue Jan 14 2025(Updated: )
.NET Elevation of Privilege Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft .NET 9.0 installed on Linux | ||
Microsoft .NET 8.0 installed on Linux | ||
Microsoft Visual Studio 2022 | =17.6 | |
Microsoft Visual Studio 2022 | =17.8 | |
Microsoft Visual Studio 2022 | =17.10 | |
Microsoft Visual Studio 2022 | =17.12 | |
Microsoft Visual Studio 2022 | >=17.6.0<17.6.22 | |
Microsoft Visual Studio 2022 | >=17.8.0<17.8.17 | |
Microsoft Visual Studio 2022 | >=17.10.0<17.10.10 | |
Microsoft Visual Studio 2022 | >=17.12.0<17.12.4 | |
All of | ||
Any of | ||
Microsoft .NET Framework | =8.0.0 | |
Microsoft .NET Framework | =9.0.0 | |
Linux Kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2025-21173 has not yet been specified but it is categorized as an Elevation of Privilege vulnerability.
CVE-2025-21173 affects Microsoft .NET 8.0 and 9.0 installed on Linux, as well as specific versions of Visual Studio 2022.
To fix CVE-2025-21173, update to the latest patched version of .NET or Visual Studio as appropriate for your installation.
CVE-2025-21173 impacts Microsoft .NET 8.0, .NET 9.0, and Visual Studio 2022 versions 17.6, 17.8, 17.10, and 17.12.
CVE-2025-21173 is classified as an Elevation of Privilege vulnerability in the .NET framework.