QID 375557
Date Published: 2021-05-12
QID 375557: Visual Studio Code Remote - Containers Extension Remote Code Execution Vulnerability
Visual Studio Code is a lightweight but powerful source code editor which runs on your desktop and is available for Windows, macOS and Linux.
Affected Versions:
Containers Extension for Visual Studio Code prior to version 0.177.2
QID Detection Logic(Authenticated):
This QID checks for the vulnerable versions of Containers Extension for Visual Studio Code.
A local attacker who successfully exploited the vulnerability could inject arbitrary code to run in the context of the current user.
Solution
Please refer to Microsoft advisory for Visual Studio Code for more details.
Vendor References
- CVE-2021-31213 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-31213
CVEs related to QID 375557
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2021-31213 | Windows |
|