CVE-2022-23267
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published May 10, 2022
Updated: Jan 2, 2025
Summary
CVE-2022-23267 is a Denial of Service (DoS) vulnerability affecting both .NET and Visual Studio. Malicious actors can exploit this issue by sending specially crafted packets to the targeted system, leading to a memory leak and causing the application to crash or become unresponsive. The vulnerability arises due to improper input validation during the deserialization process. This DoS vulnerability poses a significant threat to organizations using .NET and Visual Studio, increasing the urgency for applying the available patch to mitigate potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Visual Studio 2019
- PowerShell
- Microsoft Visual Studio 2019
- Microsoft .NET Framework
- Fedora Operating System
Affected Vendors
- Microsoft
- Fedora Project