PT-2023-3568 · Microsoft+7 · Visual Studio+8

Ethan Mckee-Harris

+2

·

Published

2023-07-11

·

Updated

2025-01-01

·

CVE-2023-33170

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ASP.NET and Visual Studio (affected versions not specified)
Description The issue is caused by synchronization errors when using a shared resource in the .NET platform and Microsoft Visual Studio. This can allow a remote attacker to bypass existing security restrictions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2023:4057
ALSA-2023:4058
ALSA-2023:4059
ALSA-2023:4060
ALT-PU-2023-4590
ALT-PU-2023-4591
ALT-PU-2023-4592
ALT-PU-2023-4593
ALT-PU-2023-4594
ALT-PU-2023-4595
ALT-PU-2023-4610
ALT-PU-2023-4611
ALT-PU-2024-16792
ALT-PU-2024-16794
ALT-PU-2024-16796
ALT-PU-2024-16939
BDU:2023-03789
BIT-DOTNET-2023-33170
BIT-DOTNET-SDK-2023-33170
CESA-2023_4058
CESA-2023_4059
CVE-2023-33170
GHSA-25C8-P796-JG6R
RHSA-2023:4057
RHSA-2023:4058
RHSA-2023:4059
RHSA-2023:4060
RHSA-2023:4061
RHSA-2023:4448
RHSA-2023:4449
RHSA-2023_4057
RHSA-2023_4058
RHSA-2023_4059
RHSA-2023_4060
RLSA-2023:4058
RLSA-2023:4059
USN-6217-1

Affected Products

Alt Linux
Asp.Net
Almalinux
Centos
Linuxmint
Red Hat
Rocky Linux
Ubuntu
Visual Studio