6

.NET Framework August 2023 Security and Quality Rollup Updates

 1 year ago
source link: https://devblogs.microsoft.com/dotnet/dotnet-framework-august-2023-security-and-quality-rollup-updates/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client

.NET Framework August 2023 Security and Quality Rollup Updates

6377851eb2def2af42ba3e446dec5680?s=58&d=mm&r=g

Salini Agarwal

August 8th, 20230 0

Today, we are releasing the August 2023 Security and Quality Rollup Updates for .NET Framework.

Security

CVE-2023-36899– .NET Framework Remote Code Execution Vulnerability

This security update addresses a vulnerability in applications on IIS using their parent application’s Application Pool which can lead to privilege escalation or other security bypasses.

CVE-2023-36873– .NET Framework Spoofing Vulnerability

This security update addresses a vulnerability where unauthenticated remote attacker can sign ClickOnce deployments without a valid code signing certificate.

Quality and Reliability

This release contains the following quality and reliability improvements.

WPF1
  • Addresses an issue where XPS documents using LinkTarget aren’t rendering properly.
Networking
  • Addresses an issue where using proxy with continuous load may lead to memory leak resulting in high memory usage, or potentially OutOfMemoryException.

1 Windows Presentation Foundation (WPF)

Getting the Update

The Security and Quality Rollup is available via Windows Update, Windows Server Update Services, and Microsoft Update Catalog.

Note: Customers that rely on Windows Update and Windows Server Update Services will automatically receive the .NET Framework version-specific updates. Advanced system administrators can also take use of the below direct Microsoft Update Catalog download links to .NET Framework-specific updates. Before applying these updates, please ensure that you carefully review the .NET Framework version applicability, to ensure that you only install updates on systems where they apply.

The following table is for Windows 10, version 1507 and Windows Server 2016 versions and newer operating systems.

Product Version Cumulative Update
Windows 11, version 22H2
.NET Framework 3.5, 4.8.1 Catalog 5028948
Windows 11, version 21H2 5029650
.NET Framework 3.5, 4.8 Catalog 5028954
.NET Framework 3.5, 4.8.1 Catalog 5028947
Microsoft server operating system, version 22H2 5029646
.NET Framework 3.5, 4.8 Catalog 5028956
Microsoft server operating system version 21H2 5029655
.NET Framework 3.5, 4.8 Catalog 5028956
.NET Framework 3.5, 4.8.1 Catalog 5028950
Windows 10, version 22H2 5029649
.NET Framework 3.5, 4.8 Catalog 5028951
.NET Framework 3.5, 4.8.1 Catalog 5028946
Windows 10, version 21H2 5029648
.NET Framework 3.5, 4.8 Catalog 5028951
.NET Framework 3.5, 4.8.1 Catalog 5028946
Windows 10 1809 (October 2018 Update) and Windows Server 2019 5029647
.NET Framework 3.5, 4.7.2 Catalog 5028960
.NET Framework 3.5, 4.8 Catalog 5028953
Windows 10 1607 (Anniversary Update) and Windows Server 2016
.NET Framework 3.5, 4.6.2, 4.7, 4.7.1, 4.7.2 Catalog 5029242
.NET Framework 4.8 Catalog 5028952
Windows 10 1507
.NET Framework 3.5, 4.6, 4.6.2 Catalog 5029259

The following table is for earlier Windows and Windows Server versions.

Product Version Security and Quality Rollup Security Only Update
Windows Server 2012 R2 5029653 5029568
.NET Framework 3.5 Catalog 5028970 Catalog 5028982
.NET Framework 4.6.2, 4.7, 4.7.1, 4.7.2 Catalog 5028962 Catalog 5028977
.NET Framework 4.6.2, 4.7, 4.7.1, 4.7.2 Catalog 5029312 Catalog 5028977
.NET Framework 4.8 Catalog 5028957 Catalog 5028974
Windows Server 2012 5029652 5029567
.NET Framework 3.5 Catalog 5028967 Catalog 5028979
.NET Framework 4.6.2, 4.7, 4.7.1, 4.7.2 Catalog 5028961 Catalog 5028976
.NET Framework 4.8 Catalog 5028955 Catalog 5028973
Windows Embedded 7 and Windows Server 2008 R2 SP1 5029651 5029566
.NET Framework 3.5.1 Catalog 5028969 Catalog 5028981
.NET Framework 4.6.2, 4.7, 4.7.1, 4.7.2 Catalog 5028963 Catalog 5028978
.NET Framework 4.8 Catalog 5028958 Catalog 5028975
Windows Server 2008 5029654 5029569
.NET Framework 2.0, 3.0 Catalog 5028968 Catalog 5028980
.NET Framework 4.6.2 Catalog 5028963 Catalog 5028978
Previous Monthly Rollups

The last few .NET Framework Monthly updates are listed below for your convenience:


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK