Security Updates for Microsoft .NET Framework (May 2022)

medium Nessus Plugin ID 167885

Synopsis

The Microsoft .NET Framework installation on the remote host is missing a security update.

Description

The Microsoft .NET Framework installation on the remote host is missing a security update. It is, therefore, affected by a denial of service vulnerability that is caused by a local user opening a specially crafted file.

Solution

Microsoft has released security updates for Microsoft .NET Framework.

See Also

http://www.nessus.org/u?688c69af

http://www.nessus.org/u?ba7b56f2

https://support.microsoft.com/en-us/help/5013612

https://support.microsoft.com/en-us/help/5013615

https://support.microsoft.com/en-us/help/5013616

https://support.microsoft.com/en-us/help/5013617

https://support.microsoft.com/en-us/help/5013618

https://support.microsoft.com/en-us/help/5013619

https://support.microsoft.com/en-us/help/5013620

https://support.microsoft.com/en-us/help/5013621

https://support.microsoft.com/en-us/help/5013622

https://support.microsoft.com/en-us/help/5013623

https://support.microsoft.com/en-us/help/5013624

https://support.microsoft.com/en-us/help/5013625

https://support.microsoft.com/en-us/help/5013626

https://support.microsoft.com/en-us/help/5013627

https://support.microsoft.com/en-us/help/5013628

https://support.microsoft.com/en-us/help/5013629

https://support.microsoft.com/en-us/help/5013630

https://support.microsoft.com/en-us/help/5013631

https://support.microsoft.com/en-us/help/5013632

https://support.microsoft.com/en-us/help/5013635

https://support.microsoft.com/en-us/help/5013636

https://support.microsoft.com/en-us/help/5013637

https://support.microsoft.com/en-us/help/5013638

https://support.microsoft.com/en-us/help/5013641

https://support.microsoft.com/en-us/help/5013642

https://support.microsoft.com/en-us/help/5013643

https://support.microsoft.com/en-us/help/5013644

Plugin Details

Severity: Medium

ID: 167885

File Name: smb_nt_ms22_may_dotnet.nasl

Version: 1.4

Type: local

Agent: windows

Published: 11/18/2022

Updated: 11/26/2024

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.6

CVSS v2

Risk Factor: Medium

Base Score: 4.3

Temporal Score: 3.6

Vector: CVSS2#AV:N/AC:M/Au:N/C:N/I:N/A:P

CVSS Score Source: CVE-2022-30130

CVSS v3

Risk Factor: Medium

Base Score: 5.5

Temporal Score: 5.1

Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Temporal Vector: CVSS:3.0/E:F/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:microsoft:.net_framework

Required KB Items: SMB/MS_Bulletin_Checks/Possible

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 5/10/2022

Vulnerability Publication Date: 5/10/2022

Reference Information

CVE: CVE-2022-30130

IAVA: 2022-A-0202-S

MSFT: MS22-5013612, MS22-5013615, MS22-5013616, MS22-5013617, MS22-5013618, MS22-5013619, MS22-5013620, MS22-5013621, MS22-5013622, MS22-5013623, MS22-5013624, MS22-5013625, MS22-5013626, MS22-5013627, MS22-5013628, MS22-5013629, MS22-5013630, MS22-5013631, MS22-5013632, MS22-5013635, MS22-5013636, MS22-5013637, MS22-5013638, MS22-5013641, MS22-5013642, MS22-5013643, MS22-5013644

MSKB: 5013612, 5013615, 5013616, 5013617, 5013618, 5013619, 5013620, 5013621, 5013622, 5013623, 5013624, 5013625, 5013626, 5013627, 5013628, 5013629, 5013630, 5013631, 5013632, 5013635, 5013636, 5013637, 5013638, 5013641, 5013642, 5013643, 5013644