{"id":23208,"date":"2019-05-14T11:29:22","date_gmt":"2019-05-14T18:29:22","guid":{"rendered":"https:\/\/devblogs.microsoft.com\/dotnet\/?p=23208"},"modified":"2019-05-14T11:47:02","modified_gmt":"2019-05-14T18:47:02","slug":"net-framework-may-2019-security-and-quality-rollup","status":"publish","type":"post","link":"https:\/\/devblogs.microsoft.com\/dotnet\/net-framework-may-2019-security-and-quality-rollup\/","title":{"rendered":".NET Framework May 2019 Security and Quality Rollup"},"content":{"rendered":"<p>Today, we are releasing the May 2019 Cumulative Update, Security and Quality Rollup, and Security Only Update.<\/p>\n<h2><a id=\"user-content-security\" class=\"anchor\" href=\"#security\" aria-hidden=\"true\"><\/a>Security<\/h2>\n<h3><a id=\"user-content-cve-2019-0820--denial-of-service-vulnerability\" class=\"anchor\" href=\"#cve-2019-0820--denial-of-service-vulnerability\" aria-hidden=\"true\"><\/a>CVE-2019-0820 \u2013 Denial of Service Vulnerability<\/h3>\n<p>A denial of service vulnerability exists when .NET Framework and .NET Core improperly process RegEx strings. An attacker who successfully exploited this vulnerability could cause a denial of service against a .NET application. A remote unauthenticated attacker could exploit this vulnerability by issuing specially crafted requests to a .NET Framework (or .NET core) application. The update addresses the vulnerability by correcting how .NET Framework and .NET Core applications handle RegEx string processing.<\/p>\n<p><a href=\"https:\/\/github.com\/dotnet\/announcements\/issues\/111\">CVE-2019-0820<\/a><\/p>\n<h3><a id=\"user-content-cve-2019-0980--denial-of-service-vulnerability\" class=\"anchor\" href=\"#cve-2019-0980--denial-of-service-vulnerability\" aria-hidden=\"true\"><\/a>CVE-2019-0980 \u2013 Denial of Service Vulnerability<\/h3>\n<p>A denial of service vulnerability exists when .NET Framework or .NET Core improperly handle web requests. An attacker who successfully exploited this vulnerability could cause a denial of service against a .NET Framework or .NET Core web application. The vulnerability can be exploited remotely, without authentication. A remote unauthenticated attacker could exploit this vulnerability by issuing specially crafted requests to the .NET Framework or .NET Core application. The update addresses the vulnerability by correcting how .NET Framework or .NET Core web applications handles web requests.<\/p>\n<p><a href=\"https:\/\/github.com\/dotnet\/announcements\/issues\/112\">CVE-2019-0980<\/a><\/p>\n<h3><a id=\"user-content-cve-2019-0981--denial-of-service-vulnerability\" class=\"anchor\" href=\"#cve-2019-0981--denial-of-service-vulnerability\" aria-hidden=\"true\"><\/a>CVE-2019-0981 \u2013 Denial of Service Vulnerability<\/h3>\n<p>A denial of service vulnerability exists when .NET Framework or .NET Core improperly handle web requests. An attacker who successfully exploited this vulnerability could cause a denial of service against a .NET Framework or .NET Core web application. The vulnerability can be exploited remotely, without authentication. A remote unauthenticated attacker could exploit this vulnerability by issuing specially crafted requests to the .NET Framework or .NET Core application. The update addresses the vulnerability by correcting how .NET Framework or .NET Core web applications handles web requests.<\/p>\n<p><a href=\"https:\/\/github.com\/dotnet\/announcements\/issues\/113\">CVE-2019-0981<\/a><\/p>\n<h3><a id=\"user-content-cve-2019-0864--denial-of-service-vulnerability\" class=\"anchor\" href=\"#cve-2019-0864--denial-of-service-vulnerability\" aria-hidden=\"true\"><\/a>CVE-2019-0864 \u2013 Denial of Service Vulnerability<\/h3>\n<p>A denial of service vulnerability exists when .NET Framework improperly handles objects in heap memory. An attacker who successfully exploited this vulnerability could cause a denial of service against a .NET application. To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application. The security update addresses the vulnerability by correcting how .NET Framework handle objects in heap memory.<\/p>\n<p><a href=\"https:\/\/github.com\/dotnet\/announcements\/issues\/111\">CVE-2019-0864<\/a><\/p>\n<h2><a id=\"user-content-getting-the-update\" class=\"anchor\" href=\"#getting-the-update\" aria-hidden=\"true\"><\/a>Getting the Update<\/h2>\n<p>The Cumulative Update and Security and Quality Rollup are available via Windows Update, Windows Server Update Services, Microsoft Update Catalog, and Docker.\u00a0 The Security Only Update is available via\u00a0Windows Server Update Services and Microsoft Update Catalog.<\/p>\n<h3><a id=\"user-content-microsoft-update-catalog\" class=\"anchor\" href=\"#microsoft-update-catalog\" aria-hidden=\"true\"><\/a>Microsoft Update Catalog<\/h3>\n<p>You can get the update via the Microsoft Update Catalog. For Windows 10, NET Framework 4.8 updates are available\u00a0via Windows Update, Windows Server Update Services, Microsoft Update Catalog.\u00a0 Updates for other versions of\u00a0.NET Framework are part of the Windows 10 Monthly Cumulative Update.<\/p>\n<p>The following table is for Windows 10 and Windows Server 2016+ versions.<\/p>\n<table>\n<thead>\n<tr>\n<th>Product Version<\/th>\n<th>Cumulative Update<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td><strong>Windows 10 1903 (May 2019 Update)<\/strong><\/td>\n<td><strong>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4502507\" rel=\"nofollow\">4502507<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 3.5, 4.8<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495620\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495620\" rel=\"nofollow\">4495620<\/a><\/td>\n<\/tr>\n<tr>\n<td><strong>Windows 10 1809 (October 2018 Update)\nWindows Server 2019<\/strong><\/td>\n<td><strong>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4466961\" rel=\"nofollow\">4466961<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 3.5, 4.7.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4499405\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495590\" rel=\"nofollow\">4495590<\/a><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 3.5, 4.8<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4499405\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495618\" rel=\"nofollow\">4495618<\/a><\/td>\n<\/tr>\n<tr>\n<td><strong>Windows 10 1803 (April 2018 Update)<\/strong><\/td>\n<td><strong>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4498144\" rel=\"nofollow\">4498144<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 3.5, 4.7.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4499167\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4499167\" rel=\"nofollow\">4499167<\/a><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.8<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495616\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495616\" rel=\"nofollow\">4495616<\/a><\/td>\n<\/tr>\n<tr>\n<td><strong>Windows 10 1709 (Fall Creators Update)<\/strong><\/td>\n<td><strong>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4498143\" rel=\"nofollow\">4498143<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 3.5, 4.7.1, 4.7.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4499179\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4499179\" rel=\"nofollow\">4499179<\/a><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.8<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495613\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495613\" rel=\"nofollow\">4495613<\/a><\/td>\n<\/tr>\n<tr>\n<td><strong>Windows 10 1703 (Creators Update)<\/strong><\/td>\n<td><strong>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4498142\" rel=\"nofollow\">4498142<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 3.5, 4.7, 4.7.1, 4.7.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4499181\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4499181\" rel=\"nofollow\">4499181<\/a><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.8<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495611\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495611\" rel=\"nofollow\">4495611<\/a><\/td>\n<\/tr>\n<tr>\n<td><strong>Windows 10 1607 (Anniversary Update)\nWindows Server 2016<\/strong><\/td>\n<td><strong>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4498141\" rel=\"nofollow\">4498141<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 3.5, 4.6.2, 4.7, 4.7.1, 4.7.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4494440\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4494440\" rel=\"nofollow\">4494440<\/a><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.8<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495610\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495610\" rel=\"nofollow\">4495610<\/a><\/td>\n<\/tr>\n<tr>\n<td><strong>Windows 10 1507<\/strong><\/td>\n<td><strong>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4499154\" rel=\"nofollow\">4499154<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 3.5, 4.6, 4.6.1, 4.6.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4499154\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4499154\" rel=\"nofollow\">4499154<\/a><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>&nbsp;<\/p>\n<p>The following table is for earlier Windows and Windows Server versions.<\/p>\n<table>\n<thead>\n<tr>\n<th>Product Version<\/th>\n<th>Security and Quality Rollup<\/th>\n<th>Security Only Update<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td><strong>Windows 8.1\nWindows RT 8.1\nWindows Server 2012 R2<\/strong><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4499408\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4499408\" rel=\"nofollow\">4499408<\/a><\/strong><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4498963\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4498963\" rel=\"nofollow\">4498963<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 3.5<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495608\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495608\" rel=\"nofollow\">4495608<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495615\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495615\" rel=\"nofollow\">4495615<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.5.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495592\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495592\" rel=\"nofollow\">4495592<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495589\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495589\" rel=\"nofollow\">4495589<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.6, 4.6.1, 4.6.2, 4.7, 4.7.1, 4.7.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495585\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495585\" rel=\"nofollow\">4495585<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495586\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495586\" rel=\"nofollow\">4495586<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.8<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495624\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495624\" rel=\"nofollow\">4495624<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495625\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495625\" rel=\"nofollow\">4495625<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td><strong>Windows Server 2012<\/strong><\/td>\n<td><strong><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4499407\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4499407\" rel=\"nofollow\">4499407<\/a><\/strong><\/td>\n<td><strong><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4498962\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4498962\" rel=\"nofollow\">4498962<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 3.5<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4480061\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4480061\" rel=\"nofollow\">4480061<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495607\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495607\" rel=\"nofollow\">4495607<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.5.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495594\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495594\" rel=\"nofollow\">4495594<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495591\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495591\" rel=\"nofollow\">4495591<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.6, 4.6.1, 4.6.2, 4.7, 4.7.1, 4.7.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495582\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495582\" rel=\"nofollow\">4495582<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495584\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495584\" rel=\"nofollow\">4495584<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.8<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495622\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495622\" rel=\"nofollow\">4495622<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495623\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495623\" rel=\"nofollow\">4495623<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td><strong>Windows 7 SP1\nWindows Server 2008 R2 SP1<\/strong><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4499406\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4499406\" rel=\"nofollow\">4499406<\/a><\/strong><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4498961\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4498961\" rel=\"nofollow\">4498961<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 3.5.1<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495606\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495606\" rel=\"nofollow\">4495606<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495612\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495612\" rel=\"nofollow\">4495612<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.5.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495596\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495596\" rel=\"nofollow\">4495596<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495593\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495593\" rel=\"nofollow\">4495593<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.6, 4.6.1, 4.6.2, 4.7, 4.7.1, 4.7.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495588\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495588\" rel=\"nofollow\">4495588<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495587\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495587\" rel=\"nofollow\">4495587<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.8<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495626\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495626\" rel=\"nofollow\">4495627<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495623\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495627\" rel=\"nofollow\">4495627<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td><strong>Windows Server 2008<\/strong><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4499409\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4499409\" rel=\"nofollow\">4499409<\/a><\/strong><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4498964\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4498964\" rel=\"nofollow\">4498964<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 2.0, 3.0<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495604\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495604\" rel=\"nofollow\">4495604<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495609\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495609\" rel=\"nofollow\">4495609<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.5.2<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495596\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495596\" rel=\"nofollow\">4495596<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495593\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495593\" rel=\"nofollow\">4495593<\/a><\/strong><\/td>\n<\/tr>\n<tr>\n<td>.NET Framework 4.6<\/td>\n<td><a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495588\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495588\" rel=\"nofollow\">4495588<\/a><\/td>\n<td><strong>\n<a href=\"http:\/\/www.catalog.update.microsoft.com\/Search.aspx?q=4495587\" rel=\"nofollow\">Catalog<\/a>\n<a href=\"https:\/\/support.microsoft.com\/kb\/4495587\" rel=\"nofollow\">4495587<\/a><\/strong><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h3><\/h3>\n<h3><a id=\"user-content-docker-images\" class=\"anchor\" href=\"#docker-images\" aria-hidden=\"true\"><\/a>Docker Images<\/h3>\n<p>We are updating the following .NET Framework Docker images for today&#8217;s release:<\/p>\n<ul>\n<li><a href=\"https:\/\/hub.docker.com\/r\/microsoft\/aspnet\/\" rel=\"nofollow\">microsoft\/aspnet<\/a><\/li>\n<li><a href=\"https:\/\/hub.docker.com\/r\/microsoft\/dotnet-framework\/\" rel=\"nofollow\">microsoft\/dotnet-framework<\/a><\/li>\n<li><a href=\"https:\/\/hub.docker.com\/r\/microsoft\/dotnet-framework-samples\/\" rel=\"nofollow\">microsoft\/dotnet-framework-samples<\/a><\/li>\n<\/ul>\n<p>Note: Look at the &#8220;Tags&#8221; view in each repository to see the updated Docker image tags.<\/p>\n<p>Note: Significant changes have been made with Docker images recently. Please look at <a href=\"https:\/\/github.com\/dotnet\/announcements\/labels\/Docker\">.NET Docker Announcements<\/a> for more information.<\/p>\n<h3><\/h3>\n<h3><a id=\"user-content-previous-monthly-rollups\" class=\"anchor\" href=\"#previous-monthly-rollups\" aria-hidden=\"true\"><\/a>Previous Monthly Rollups<\/h3>\n<p>The last few .NET Framework Monthly updates are listed below for your convenience:<\/p>\n<ul>\n<li><a href=\"https:\/\/devblogs.microsoft.com\/dotnet\/net-framework-april-2-2019-cumulative-update-for-windows-10-version-1809-and-windows-server-2019\/\" rel=\"nofollow\">March 2019 Cumulative Update for Windows 10 version 1809 and Windows Server 2019<\/a><\/li>\n<li><a href=\"https:\/\/devblogs.microsoft.com\/dotnet\/net-framework-march-2019-update\/\" rel=\"nofollow\">March 2019 Update<\/a><\/li>\n<li><a href=\"https:\/\/devblogs.microsoft.com\/dotnet\/net-framework-march-1-2019-cumulative-update-for-windows-10-version-1809-and-windows-server-2019\/\" rel=\"nofollow\">February 2019 Cumulative Update for Windows 10 version 1809 and Windows Server 2019<\/a><\/li>\n<li><a href=\"https:\/\/devblogs.microsoft.com\/dotnet\/net-framework-february-2019-preview-of-quality-rollup\/\" rel=\"nofollow\">February 2019 Preview of Quality Rollup<\/a><\/li>\n<li><a href=\"https:\/\/blogs.msdn.microsoft.com\/dotnet\/2019\/02\/13\/net-framework-february-2019-security-and-quality-rollup\/\" rel=\"nofollow\">February 2019 Security and Quality Rollup<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Today, we are releasing the May 2019 Cumulative Update, Security and Quality Rollup, and Security Only Update. Security CVE-2019-0820 \u2013 Denial of Service Vulnerability A denial of service vulnerability exists when .NET Framework and .NET Core improperly process RegEx strings. An attacker who successfully exploited this vulnerability could cause a denial of service against a [&hellip;]<\/p>\n","protected":false},"author":369,"featured_media":58792,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[195],"tags":[],"class_list":["post-23208","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-dotnet-framework"],"acf":[],"blog_post_summary":"<p>Today, we are releasing the May 2019 Cumulative Update, Security and Quality Rollup, and Security Only Update. Security CVE-2019-0820 \u2013 Denial of Service Vulnerability A denial of service vulnerability exists when .NET Framework and .NET Core improperly process RegEx strings. An attacker who successfully exploited this vulnerability could cause a denial of service against a [&hellip;]<\/p>\n","_links":{"self":[{"href":"https:\/\/devblogs.microsoft.com\/dotnet\/wp-json\/wp\/v2\/posts\/23208","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/devblogs.microsoft.com\/dotnet\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/devblogs.microsoft.com\/dotnet\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/dotnet\/wp-json\/wp\/v2\/users\/369"}],"replies":[{"embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/dotnet\/wp-json\/wp\/v2\/comments?post=23208"}],"version-history":[{"count":0,"href":"https:\/\/devblogs.microsoft.com\/dotnet\/wp-json\/wp\/v2\/posts\/23208\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/dotnet\/wp-json\/wp\/v2\/media\/58792"}],"wp:attachment":[{"href":"https:\/\/devblogs.microsoft.com\/dotnet\/wp-json\/wp\/v2\/media?parent=23208"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/dotnet\/wp-json\/wp\/v2\/categories?post=23208"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/devblogs.microsoft.com\/dotnet\/wp-json\/wp\/v2\/tags?post=23208"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}