QID 91904

Date Published: 2022-05-11

QID 91904: Microsoft .NET Framework Denial of Service (DoS) Vulnerability for May 2022

A denial of service vulnerability exist in Microsoft .Net Framework.

Following KBs are covered in this detection:
KB5013624
KB5013625
KB5013627
KB5013628
KB5013630
KB5013837
KB5013838
KB5013839
KB5013840
KB5013868
KB5013870
KB5013871
KB5013872
KB5013873
KB5013952

This security update is rated Important for supported versions of Microsoft .NET Framework.

.NET Framework 2.0, 3.0, 3.5, 3.5.1, 4.6, 4.6.1, 4.6.2, 4.7, 4.7.1, 4.7.2 and 4.8

QID Detection Logic (Authenticated):
- Checks for vulnerable version of Mscorlib.dll for .Net Framework

Successful exploitation allows attacker to cause denial of service vulnerability.

  • CVSS V3 rated as Medium - 3.3 severity.
  • CVSS V2 rated as Low - 2.1 severity.
  • Solution
    Customers are advised to refer to CVE-2022-30130 for more details pertaining to this vulnerability.

    CVEs related to QID 91904

    Software Advisories
    Advisory ID Software Component Link
    CVE-2022-30130 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2022-30130