CVE-2024-30045Heap-based Buffer Overflow in Microsoft Visual Studio 2022 Version 17.4

Severity
6.3MEDIUMNVD
EPSS
0.3%
top 44.55%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 14
Latest updateMay 16

Description

.NET and Visual Studio Remote Code Execution Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:LExploitability: 2.8 | Impact: 3.4

Affected Packages22 packages

🔴Vulnerability Details

5
OSV
dotnet7, dotnet8 vulnerabilities2024-05-16
OSV
Microsoft Security Advisory CVE-2024-30045 | .NET Remote code Execution Vulnerability2024-05-14
CVEList
.NET and Visual Studio Remote Code Execution Vulnerability2024-05-14
GHSA
Microsoft Security Advisory CVE-2024-30045 | .NET Remote code Execution Vulnerability2024-05-14
OSV
CVE-2024-300452024-05-14

📋Vendor Advisories

3
Ubuntu
.NET vulnerabilities2024-05-16
Microsoft
.NET and Visual Studio Remote Code Execution Vulnerability2024-05-14
Red Hat
dotnet: stack buffer overrun in Double Parse2024-05-14