MS Family January 2024 Routine Security Update Advisory

Overview

 

Microsoft(https://www.microsoft.com) has released a security update that fixes vulnerabilities in products. Users of affected products are advised to update to the latest version.

 

Affected Products

 

Version prior to .NET 6.0

Version prior to .NET 7.0

Version prior to .NET 8.0

Version prior to Microsoft .NET Framework 2.0 Service Pack 2 on Windows Server 2008 for 32-bit Systems Service Pack 2

Version prior to Microsoft .NET Framework 2.0 Service Pack 2 on Windows Server 2008 for x64-based Systems Service Pack 2

Version prior to Microsoft .NET Framework 3.0 Service Pack 2 on Windows Server 2008 for 32-bit Systems Service Pack 2

Version prior to Microsoft .NET Framework 3.0 Service Pack 2 on Windows Server 2008 for x64-based Systems Service Pack 2

Version prior to Microsoft .NET Framework 3.5 AND 4.7.2 on Windows 10 Version 1607 for 32-bit Systems Earlier Versions

Version prior to Microsoft .NET Framework 3.5 AND 4.7.2 on Windows 10 Version 1607 for x64-based Systems Earlier versions

Version prior to Microsoft .NET Framework 3.5 AND 4.7.2 on Windows 10 Version 1809 for 32-bit Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.7.2 on Windows 10 Version 1809 for ARM64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.7.2 on Windows 10 Version 1809 for x64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.7.2 on Windows Server 2016

Version prior to Microsoft .NET Framework 3.5 AND 4.7.2 on Windows Server 2016 (Server Core installation) Earlier versions

Version prior to Microsoft .NET Framework 3.5 AND 4.7.2 on Windows Server 2019

Version prior to Microsoft .NET Framework 3.5 AND 4.7.2 on Windows Server 2019 (Server Core installation)

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1809 for 32-bit Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1809 for x64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 21H2 for 32-bit Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 21H2 for ARM64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 21H2 for x64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 22H2 for 32-bit Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 22H2 for ARM64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 22H2 for x64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows 11 version 21H2 for ARM64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows 11 version 21H2 for x64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows Server 2019

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows Server 2019 (Server Core installation) earlier versions

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows Server 2022

Version prior to Microsoft .NET Framework 3.5 AND 4.8 on Windows Server 2022 (Server Core installation)

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 10 Version 21H2 for 32-bit Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 10 Version 21H2 for ARM64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 10 Version 21H2 for x64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 10 Version 22H2 for 32-bit Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 10 Version 22H2 for ARM64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 10 Version 22H2 for x64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 11 Version 22H2 for ARM64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 11 Version 22H2 for x64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 11 Version 23H2 for ARM64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 11 Version 23H2 for x64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 11 version 21H2 for ARM64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 11 version 21H2 for x64-based Systems

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows Server 2022

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows Server 2022 (Server Core installation) earlier versions

Version prior to Microsoft .NET Framework 3.5 AND 4.8.1 on Windows Server 2022, 23H2 Edition (Server Core installation) Earlier versions

Version prior to Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2 on Windows Server 2008 R2 for x64-based Systems Service Pack 1

Version prior to Microsoft .NET Framework 4.6.2/4.7/4.7/4.7.1/4.7.2 on Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)

Version prior to Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2 on Windows Server 2012

Version prior to Microsoft .NET Framework 4.6.2/4.7/4.7/4.7.1/4.7.2 on Windows Server 2012 (Server Core installation)

Version prior to Microsoft .NET Framework 4.6.2/4.7/4.7/4.7.1/4.7.2 on Windows Server 2012 R2

Version prior to Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2 on Windows Server 2012 R2 (Server Core installation)

Version prior to Microsoft .NET Framework 4.8 on Windows 10 Version 1607 for 32-bit Systems

Version prior to Microsoft .NET Framework 4.8 on Windows 10 Version 1607 for x64-based Systems

Version prior to Microsoft .NET Framework 4.8 on Windows Server 2008 R2 for x64-based Systems Service Pack 1

Version prior to Microsoft .NET Framework 4.8 on Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation) Earlier versions

Version prior to Microsoft .NET Framework 4.8 on Windows Server 2012

Version prior to Microsoft .NET Framework 4.8 on Windows Server 2012 (Server Core installation)

Version prior to Microsoft .NET Framework 4.8 on Windows Server 2012 R2

Version prior to Microsoft .NET Framework 4.8 on Windows Server 2012 R2 (Server Core installation)

Version prior to Microsoft .NET Framework 4.8 on Windows Server 2016

Version prior to Microsoft .NET Framework 4.8 on Windows Server 2016 (Server Core installation)

Version prior to Microsoft Visual Studio 2022 version 17.2

Version prior to Microsoft Visual Studio 2022 version 17.4

Version prior to Microsoft Visual Studio 2022 version 17.6

Version prior to Microsoft Visual Studio 2022 version 17.8

Version prior to PowerShell 7.2

Version prior to PowerShell 7.3

Version prior to PowerShell 7.4 

 

Resolved Vulnerabilities

 

0 vulnerabilities rated Critical and 1 vulnerability rated Important were found.

Critical security feature bypass vulnerability in .NET and Visual Studio (CVE-2024-0057)

 

Vulnerability Patches

 

Product-specific vulnerability patches were made available in the January 16, 2024 Update as follows Please use the Windows Update feature for automatic installation or refer to the URLs in the product information below to download and install.

.NET 6.0 version

https://dotnet.microsoft.com/download/dotnet/6.0

.NET 7.0 versions

https://dotnet.microsoft.com/en-us/download/dotnet/7.0

.NET 8.0 version

https://dotnet.microsoft.com/en-us/download/dotnet/8.0

Microsoft .NET Framework 2.0 Service Pack 2 on Windows Server 2008 Service Pack 2 version

Microsoft .NET Framework 3.0 Service Pack 2 on Windows Server 2008 Service Pack 2 version

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033898

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033945

Microsoft .NET Framework 3.5 AND 4.7.2 on Windows 10 Version 1607 Version

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5034119

Microsoft .NET Framework 3.5 AND 4.7.2 on Windows 10 Version 1809 Version

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033911

Microsoft .NET Framework 3.5 AND 4.7.2 on Windows Server 2016 Version

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5034119

Microsoft .NET Framework 3.5 AND 4.7.2 on Windows Server 2019 Version

Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 1809

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033911

Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 21H2 Version

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033909

Microsoft .NET Framework 3.5 AND 4.8 on Windows 10 Version 22H2 Version

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033909

Microsoft .NET Framework 3.5 AND 4.8 on Windows 11 Version 21H2

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033912

Microsoft .NET Framework 3.5 AND 4.8 on Windows Server 2019 version

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033911

Microsoft .NET Framework 3.5 AND 4.8 on Windows Server 2022 version

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033914

Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 10 Version 21H2

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033909

Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 10 Version 22H2

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033909

Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 11 Version 22H2

Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 11 Version 23H2

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033920

Microsoft .NET Framework 3.5 AND 4.8.1 on Windows 11 Version 21H2

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033912

Microsoft .NET Framework 3.5 AND 4.8.1 on Windows Server 2022 version

Microsoft .NET Framework 3.5 AND 4.8.1 on Windows Server 2022, Version 23H2 Edition

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033914

Microsoft .NET Framework 4.6.2/4.7/4.7.1/4.7.2 on Windows Server 2008 R2 Service Pack 1 Versions

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033948

Microsoft .NET Framework 4.6.2/4.7/4.7/4.7.1/4.7.2 on Windows Server 2012 editions

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033913

Microsoft .NET Framework 4.6.2/4.7/4.7/4.7.1/4.7.2 on Windows Server 2012 R2 editions

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033915

Microsoft .NET Framework 4.8 on Windows 10 Version 1607

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033910

Microsoft .NET Framework 4.8 on Windows Server 2008 R2 with Service Pack 1 Version

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033916

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033948

Microsoft .NET Framework 4.8 on Windows Server 2012 Version

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033913

Microsoft .NET Framework 4.8 on Windows Server 2012 R2 editions

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033915

Microsoft .NET Framework 4.8 on Windows Server 2016 editions

https://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5033910

Microsoft Visual Studio 2022 version 17.2

Microsoft Visual Studio 2022 version 17.4

Microsoft Visual Studio 2022 version 17.6

Microsoft Visual Studio 2022 version 17.8

PowerShell version 7.2

PowerShell version 7.3

PowerShell version 7.4

https://msrc.microsoft.com/update-guide/