CVE-2017-0248

Description

Microsoft .NET Framework 2.0, 3.5, 3.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2 and 4.7 allow an attacker to bypass Enhanced Security Usage taggings when they present a certificate that is invalid for a specific use, aka .NET Security Feature Bypass Vulnerability.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
EPSS Score
Exploitation Probability
1.092

Associated Vulnerability

VulnerabilityOS Platform
Microsoft Browser Spoofing Vulnerability for Windows 10 Version 1703 for x64-based Systems - WannaCrypt Ransomware Fix(KB4016871) - CumulativeWindows
Microsoft Browser Spoofing Vulnerability for Windows 10 Version 1703 for x86-based Systems - WannaCrypt Ransomware Fix(KB4016871) - CumulativeWindows
Microsoft Browser Spoofing Vulnerability for Windows Server 2016 for x64-based Systems (KB4019472) - CumulativeWindows
Microsoft Browser Spoofing Vulnerability for Windows 10 Version 1607 for x64-based Systems (KB4019472) - CumulativeWindows
Microsoft Browser Spoofing Vulnerability for Windows 10 Version 1607 for x86-based Systems (KB4019472) - CumulativeWindows
Microsoft Browser Spoofing Vulnerability for Windows 10 Version 1511 for x64-based Systems (KB4019473) - CumulativeWindows
Microsoft Browser Spoofing Vulnerability for Windows 10 Version 1511 (KB4019473) - CumulativeWindows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.5.2 for Windows 7 SP1, Windows Server 2008 R2 SP1, and Windows Server 2008 SP2 (KB4014599)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 3.5.1 on Windows 7 (KB4014504)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 3.5.1 on Windows 7 and Server 2008 R2 for x64 (KB4014504)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.5.2 on Windows 7 (KB4014514)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.5.2 on Windows 7 and Server 2008 R2 for x64 (KB4014514)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6 on Windows Server 2008 (KB4014511)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6 on Windows Server 2008 for x64 (KB4014511)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6, 4.6.1 on Windows 7 (KB4014511)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6, 4.6.1 on Windows 7 and Server 2008 R2 for x64 (KB4014511)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6.2 on Windows 7 (KB4014508)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6.2 on Windows 7 and Server 2008 R2 for x64 (KB4014508)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.5.2 on Windows Server 2008 SP2 (KB4014514)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.5.2 on Windows Server 2008 SP2 for x64 (KB4014514)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 3.5 on Windows 8.1 (KB4014505)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 3.5 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014505)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.5.2 on Windows 8.1 (KB4014512)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.5.2 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014512)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6, 4.6.1 on Windows 8.1 (KB4014510)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6, 4.6.1 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014510)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6.2 on Windows 8.1 (KB4014507)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6.2 on on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014507)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 3.5 on Windows 8.1 (KB4014581)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 3.5 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014581)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.5.2 on Windows 8.1 (KB4014595)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.5.2 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014595)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6, 4.6.1 on Windows 8.1 (KB4014590)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6, 4.6.1 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014590)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6.2 on Windows 8.1 (KB4014587)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6.2 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014587)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 3.5 on Windows Server 2012 for x64 (KB4014503)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.5.2 on Windows Server 2012 for x64 (KB4014513)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6, 4.6.1 on Windows Server 2012 for x64 (KB4014509)Windows
.NET Security Feature Bypass Vulnerability for .NET Framework 4.6.2 on Windows Server 2012 for x64 (KB4014506)Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Core 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Core 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Http 4.1.2Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Http 4.3.2Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Text.Encodings.Web 4.0.1Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Text.Encodings.Web 4.3.1Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Http.WinHttpHandler 4.0.1Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Http.WinHttpHandler 4.3.1Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Security 4.0.1Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Security 4.3.1Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.WebSockets.Client 4.0.1Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.WebSockets.Client 4.3.1Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Abstractions 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Abstractions 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Formatters.Json 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Formatters.Json 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Formatters.Xml 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Formatters.Xml 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Cors 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Cors 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.ApiExplorer 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.ApiExplorer 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.DataAnnotations 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.DataAnnotations 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Localization 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Localization 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.TagHelpers 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.TagHelpers 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.ViewFeatures 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.ViewFeatures 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.WebApiCompatShim 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.WebApiCompatShim 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Razor 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Razor 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Razor.Host 1.0.4Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Razor.Host 1.1.3Windows
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Core for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Core for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Http for Linux 4.1.2Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Http for Linux 4.3.2Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Text.Encodings.Web for Linux 4.0.1Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Text.Encodings.Web for Linux 4.3.1Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Http.WinHttpHandler for Linux 4.0.1Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Http.WinHttpHandler for Linux 4.3.1Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Security for Linux 4.0.1Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.Security for Linux 4.3.1Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.WebSockets.Client for Linux 4.0.1Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - System.Net.WebSockets.Client for Linux 4.3.1Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Abstractions for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Abstractions for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Formatters.Json for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Formatters.Json for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Formatters.Xml for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Formatters.Xml for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Cors for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Cors for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.ApiExplorer for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.ApiExplorer for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.DataAnnotations for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.DataAnnotations for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Localization for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Localization for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.TagHelpers for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.TagHelpers for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.ViewFeatures for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.ViewFeatures for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.WebApiCompatShim for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.WebApiCompatShim for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Razor for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Razor for Linux 1.1.3Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Razor.Host for Linux 1.0.4Linux
Vulnerabilities CVE-2017-0248,CVE-2017-0247,CVE-2017-0256,CVE-2017-0249 are fixed in Nuget - Microsoft.AspNetCore.Mvc.Razor.Host for Linux 1.1.3Linux

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-225092017-05 Cumulative Update and WannaCrypt Ransomware Fix(MS17-007) for Windows Server 2016 for x64-based Systems (KB4019472)
PATCH-225082017-05 Cumulative Update and WannaCrypt Ransomware Fix(MS17-007) for Windows 10 Version 1607 for x64-based Systems (KB4019472)
PATCH-225072017-05 Cumulative Update and WannaCrypt Ransomware Fix(MS17-007) for Windows 10 Version 1607 for x86-based Systems (KB4019472)
PATCH-22346Cumulative Update and and WannaCrypt Ransomware Fix(MS17-007) for Windows 10 Version 1511 for x64-based Systems (KB4019473)
PATCH-22345Cumulative Update and WannaCrypt Ransomware Fix(MS17-007) for Windows 10 Version 1511 (KB4019473)
PATCH-22380May, 2017 Security Only Update for .NET Framework 4.5.2 for Windows 7 SP1, Windows Server 2008 R2 SP1, and Windows Server 2008 SP2 (KB4014599)
PATCH-22352KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 3.5.1 on Windows 7 (KB4014504)
PATCH-22353KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 3.5.1 on Windows 7 and Server 2008 R2 for x64 (KB4014504)
PATCH-22354KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 4.5.2 on Windows 7 (KB4014514)
PATCH-22355KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 4.5.2 on Windows 7 and Server 2008 R2 for x64 (KB4014514)
PATCH-22356KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 4.6 on Windows Server 2008 (KB4014511)
PATCH-22357KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 4.6 on Windows Server 2008 for x64 (KB4014511)
PATCH-22358KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 4.6, 4.6.1 on Windows 7 (KB4014511)
PATCH-22359KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 4.6, 4.6.1 on Windows 7 and Server 2008 R2 for x64 (KB4014511)
PATCH-22360KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 4.6.2 on Windows 7 (KB4014508)
PATCH-22361KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 4.6.2 on Windows 7 and Server 2008 R2 for x64 (KB4014508)
PATCH-22376KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 4.5.2 on Windows Server 2008 SP2 (KB4014514)
PATCH-22377KB4019112 - May, 2017 Security and Quality Rollup for .NET Framework 4.5.2 on Windows Server 2008 SP2 for x64 (KB4014514)
PATCH-22363KB4019114 - May, 2017 Security and Quality Rollup for .NET Framework 3.5 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014505)
PATCH-22364KB4019114 - May, 2017 Security and Quality Rollup for .NET Framework 4.5.2 on Windows 8.1 (KB4014512)
PATCH-22365KB4019114 - May, 2017 Security and Quality Rollup for .NET Framework 4.5.2 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014512)
PATCH-22366KB4019114 - May, 2017 Security and Quality Rollup for .NET Framework 4.6, 4.6.1 on Windows 8.1 (KB4014510)
PATCH-22367KB4019114 - May, 2017 Security and Quality Rollup for .NET Framework 4.6, 4.6.1 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014510)
PATCH-22368KB4019114 - May, 2017 Security and Quality Rollup for .NET Framework 4.6.2 on Windows 8.1 (KB4014507)
PATCH-22369KB4019114 - May, 2017 Security and Quality Rollup for .NET Framework 4.6.2 on on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014507)
PATCH-22394KB4019111 - May, 2017 Security Only Update for .NET Framework 3.5 on Windows 8.1 (KB4014581)
PATCH-22395KB4019111 - May, 2017 Security Only Update for .NET Framework 3.5 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014581)
PATCH-22396KB4019111 - May, 2017 Security Only Update for .NET Framework 4.5.2 on Windows 8.1 (KB4014595)
PATCH-22397KB4019111 - May, 2017 Security Only Update for .NET Framework 4.5.2 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014595)
PATCH-22398KB4019111 - May, 2017 Security Only Update for .NET Framework 4.6, 4.6.1 on Windows 8.1 (KB4014590)
PATCH-22399KB4019111 - May, 2017 Security Only Update for .NET Framework 4.6, 4.6.1 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014590)
PATCH-22400KB4019111 - May, 2017 Security Only Update for .NET Framework 4.6.2 on Windows 8.1 (KB4014587)
PATCH-22401KB4019111 - May, 2017 Security Only Update for .NET Framework 4.6.2 on Windows 8.1 and Windows Server 2012 R2 for x64 (KB4014587)
PATCH-22370KB4019113 - May, 2017 Security and Quality Rollup for .NET Framework 3.5 on Windows Server 2012 for x64 (KB4014503)
PATCH-22371KB4019113 - May, 2017 Security and Quality Rollup for .NET Framework 4.5.2 on Windows Server 2012 for x64 (KB4014513)
PATCH-22372KB4019113 - May, 2017 Security and Quality Rollup for .NET Framework 4.6, 4.6.1 on Windows Server 2012 for x64 (KB4014509)
PATCH-22373KB4019113 - May, 2017 Security and Quality Rollup for .NET Framework 4.6.2 on Windows Server 2012 for x64 (KB4014506)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234