CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
91.0%
**Note:**This security update applies to all Visual Studio 2015 Update 3 editions except Isolated and Integrated Shells, Build Tools, Remote Tools, and Express for Web.
A remote code execution vulnerability exists within VSGraphics in Microsoft Visual Studio 2015.To learn more about the vulnerability, see CVE-2022-35826, CVE-2022-35825, CVE-2022-35777, and CVE-2022-35827.
The following file is available for download: Download the hotfix package now.
To get the standalone package for this update, go to the Microsoft Update Catalog website.
To apply this security update, you must have Visual Studio 2015 Update 3 installed.
We recommend that you close Visual Studio 2015 before you install this security update. Otherwise, you may have to restart the computer after you apply this security update if a file that is being updated is open or in use by Visual Studio.
This security update doesn’t replace other security updates.
File name | SHA256 hash |
---|---|
vs14-kb5016316.exe | DEC843AC4474A473C2E7FB1571D054E1A5881320B348A29CA3E15596B93CA94F |
File name | File version | File size | Date | Time |
---|---|---|---|---|
vs14-kb5016316.exe | 14.0.27552.0 | 14,301,784 | 3-Aug-22 | 01:57 |
To verify that this security update is applied correctly, follow these steps: