QID 91889
Date Published: 2022-04-13
QID 91889: Microsoft .NET Framework Denial of Service (DoS) Vulnerability for April 2022
A denial of service vulnerability exist in Microsoft .Net Framework.
Following KBs are covered in this detection:
KB5012117
KB5012118
KB5012120
KB5012121
KB5012123
KB5012324
KB5012325
KB5012326
KB5012327
KB5012328
KB5012329
KB5012330
KB5012331
KB5012332
This security update is rated Important for supported versions of Microsoft .NET Framework.
.NET Framework 3.5, 3.5.1, 4.6, 4.6.1, 4.6.2, 4.7, 4.7.1, 4.7.2 and 4.8
QID Detection Logic (Authenticated):
- Checks for vulnerable version of System.web.dll for .Net Framework
Successful exploitation allows attacker to cause denial of service vulnerability.
Solution
Customers are advised to refer to CVE-2022-26832 for more details pertaining to this vulnerability.
Vendor References
- KB5012117 -
support.microsoft.com/help/5012117 - KB5012118 -
support.microsoft.com/help/5012118 - KB5012120 -
support.microsoft.com/help/5012120 - KB5012121 -
support.microsoft.com/help/5012121 - KB5012123 -
support.microsoft.com/help/5012123 - KB5012324 -
support.microsoft.com/help/5012324 - KB5012325 -
support.microsoft.com/help/5012325 - KB5012326 -
support.microsoft.com/help/5012326 - KB5012327 -
support.microsoft.com/help/5012327 - KB5012328 -
support.microsoft.com/help/5012328 - KB5012329 -
support.microsoft.com/help/5012329 - KB5012330 -
support.microsoft.com/help/5012330 - KB5012331 -
support.microsoft.com/help/5012331 - KB5012332 -
support.microsoft.com/help/5012332
CVEs related to QID 91889
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2022-26832 |
|