December 13th, 2022

.NET Framework December 2022 Security and Quality Rollup Updates

Today, we are releasing the December 2022 Security and Quality Rollup Updates for .NET Framework.

Security

CVE-2022-41089 – .NET Framework Remote Code Execution Vulnerability

This security update addresses a vulnerability where restricted mode is triggered for the parsing of XPS files, preventing gadget chains which could allow remote code execution on an affected system. For more information please see CVE-2022-41089.

Quality and Reliability

There are no new Quality and Reliability Improvements in this update.

Known issues in this update

Symptom Workaround
After installing this update, WPF apps may have a change in behavior. For more information about this issue, see KB5022083 To mitigate this issue, see KB5022083 .

Getting the Update

The Security and Quality Rollup is available via Windows Update, Windows Server Update Services, and Microsoft Update Catalog. The Security Only Update is available via Windows Server Update Services and Microsoft Update Catalog.

Microsoft Update Catalog

The Security and Quality Rollup is available via Windows Update, Windows Server Update Services, and Microsoft Update Catalog. The Security Only Update is available via Windows Server Update Services and Microsoft Update Catalog.

Note: Customers that rely on Windows Update and Windows Server Update Services will automatically receive the .NET Framework version-specific updates. Advanced system administrators can also take use of the below direct Microsoft Update Catalog download links to .NET Framework-specific updates. Before applying these updates, please ensure that you carefully review the .NET Framework version applicability, to ensure that you only install updates on systems where they apply.

The following table is for Windows 10, version 1607 and Windows Server 2016 versions and newer operating systems.

Product Version Cumulative Update
Windows 11, version 22H2
.NET Framework 3.5, 4.8.1 Catalog 5020880
Windows 11, version 21H2 5021090
.NET Framework 3.5, 4.8 Catalog 5020875
.NET Framework 3.5, 4.8.1 Catalog 5020882
Microsoft server operating system, version 22H2 5021084
.NET Framework 3.5, 4.8 Catalog 5020877
Microsoft server operating system version 21H2 5021095
.NET Framework 3.5, 4.8 Catalog 5020877
.NET Framework 3.5, 4.8.1 Catalog 5020883
Windows 10 22H2 5021089
.NET Framework 3.5, 4.8 Catalog 5020872
.NET Framework 3.5, 4.8.1 Catalog 5020881
Windows 10 21H2 5021088
.NET Framework 3.5, 4.8 Catalog 5020872
.NET Framework 3.5, 4.8.1 Catalog 5020881
Windows 10 21H1 5021087
.NET Framework 3.5, 4.8 Catalog 5020872
.NET Framework 3.5, 4.8.1 Catalog 5020881
Windows 10 Version 20H2 5021086
.NET Framework 3.5, 4.8 Catalog 5020872
.NET Framework 3.5, 4.8.1 Catalog 5020881
Windows 10 1809 (October 2018 Update) and Windows Server 2019 5021085
.NET Framework 3.5, 4.7.2 Catalog 5020866
.NET Framework 3.5, 4.8 Catalog 5020874
Windows 10 1607 (Anniversary Update) and Windows Server 2016
.NET Framework 3.5, 4.6.2, 4.7, 4.7.1, 4.7.2 Catalog 5021235
.NET Framework 4.8 Catalog 5020873
Windows 10 1507
.NET Framework 3.5, 4.6, 4.6.2 Catalog 5021243

The following table is for earlier Windows and Windows Server versions.

Product Version Security and Quality Rollup Security Only Update
Windows 8.1, Windows RT 8.1 and Windows Server 2012 R2 5021093 5021081
.NET Framework 3.5 Catalog 5020862 Catalog 5020897
.NET Framework 4.6.2, 4.7, 4.7.1, 4.7.2 Catalog 5020868 Catalog 5020899
.NET Framework 4.8 Catalog 5020878 Catalog 5020902
Windows Server 2012 5021092 5021080
.NET Framework 3.5 Catalog 5020859 Catalog 5020894
.NET Framework 4.6.2, 4.7, 4.7.1, 4.7.2 Catalog 5020867 Catalog 5020898
.NET Framework 4.8 Catalog 5020876 Catalog 5020901
Windows 7 SP1 and Windows Server 2008 R2 SP1 5021091 5021079
.NET Framework 3.5.1 Catalog 5020861 Catalog 5020896
.NET Framework 4.6.2, 4.7, 4.7.1, 4.7.2 Catalog 5020869 Catalog 5020900
.NET Framework 4.8 Catalog 5020879 Catalog 5020903
Windows Server 2008 5021094 5021082
.NET Framework 2.0, 3.0 Catalog 5020860 Catalog 5020895
.NET Framework 4.6.2 Catalog 5020869 Catalog 5020900

 

Previous Monthly Rollups

The last few .NET Framework Monthly updates are listed below for your convenience:

0 comments

Discussion are closed.