GHSA-q72m-f2r4-w4cw: Buffer Overflow
Duplicate Advisory This advisory has been withdrawn because it is a duplicate of GHSA-2j8r-3c22-8565. This link is maintained to preserve external references.
Original Description Heap-based buffer overflow in Visual Studio allows an unauthorized attacker to execute code over a network.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
nuget/Microsoft.DiaSymReader.Nativeto a version that resolves this vulnerability.Fixed in 18.9.0-beta1.26405.2
Event History
Frequently Asked Questions
Should this advisory be used as the primary source for remediation decisions?
No. This advisory was withdrawn as a duplicate of GHSA-2j8r-3c22-8565 and is retained only to preserve external references. Use the duplicate advisory and the referenced CVE-2026-69522 vendor information for remediation details.
What exploitation conditions are identified in the available severity data?
The severity vector indicates network attack access, low attack complexity, no required privileges, and required user interaction. Successful exploitation could result in high impact to confidentiality, integrity, and availability.