PT-2024-2084 · Microsoft+7 · Visual Studio+8

Published

2024-03-12

·

Updated

2025-09-04

·

CVE-2024-21392

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions .NET and Visual Studio (affected versions not specified)
Description The issue exists due to insufficient input validation in the software development tool Microsoft Visual Studio and the .NET platform. Exploitation of this issue may allow an attacker to cause a denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Resource Exhaustion

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2024:1308
ALSA-2024:1309
ALSA-2024:1310
ALSA-2024:1311
ALT-PU-2024-13115
ALT-PU-2024-13117
ALT-PU-2024-13118
ALT-PU-2024-16796
ALT-PU-2024-16799
ALT-PU-2024-16939
ALT-PU-2024-5924
ALT-PU-2024-5998
ALT-PU-2024-6034
BDU:2024-01980
BIT-DOTNET-2024-21392
BIT-DOTNET-SDK-2024-21392
BIT-POWERSHELL-2024-21392
CESA-2024_1308
CESA-2024_1311
CVE-2024-21392
GHSA-5FXJ-WHCV-CRRC
RHSA-2024:1308
RHSA-2024:1309
RHSA-2024:1310
RHSA-2024:1311
RHSA-2024_1308
RHSA-2024_1309
RHSA-2024_1310
RHSA-2024_1311
RLSA-2024:1308
RLSA-2024:1311
USN-6693-1

Affected Products

.Net Framework
Alt Linux
Almalinux
Centos
Linuxmint
Red Hat
Rocky Linux
Ubuntu
Visual Studio