Notice: This website is an unofficial Microsoft Knowledge Base (hereinafter KB) archive and is intended to provide a reliable access to deleted content from Microsoft KB. All KB articles are owned by Microsoft Corporation. Read full disclaimer for more details.

MS13-103: Vulnerability in ASP.NET SignalR could allow elevation of privilege: December 10, 2013


INTRODUCTION

Microsoft has released security bulletin MS13-103. To view the complete security bulletin, visit one of the following Microsoft websites:

How to obtain help and support for this security update

Help installing updates:
Support for Microsoft Update

Security solutions for IT professionals:
TechNet Security Troubleshooting and Support

Help protect your computer that is running Windows from viruses and malware:
Virus Solution and Security Center

Local support according to your country:
International Support

↑ Back to the top


More Information

Additional information about this security update

The following articles contain additional information about this security update as it relates to individual product versions. The articles may contain known issue information. If this is the case, the known issue is listed below each article link.
  • 2903566 MS13-103: Description of the security update for Microsoft Visual Studio Team Foundation Server 2013: December 10, 2013
  • 2903919  MS13-103: Description of the security update for ASP.NET SignalR: December 10, 2013

↑ Back to the top


File hash information
File nameSHA1 hashSHA256 hash
SignalR-KB2903919.msiC719B287996A0FF3F26AC146621F2E394914CA43D7C1BDA20A6569DE2D2BC69996957E69209C05E5450A801180905898D0279AD3
TFS2013-KB2903566.exeCD8CF9E017607E3486BB7244F496167D6D7C42FB36965DF098B23F3DF275060D4F2D838943C93C95027F224BD47A5AC6F7A63E6D

↑ Back to the top


Applies to

  • ASP.NET SignalR 1.1.x 
  • ASP.NET SignalR 2.0.x 
  • Microsoft Visual Studio Team Foundation Server 2013
Note The ASP.NET SignalR updates apply to Windows-based servers that host web applications that support ASP.NET SignalR functionality. These updates are available only for download, and they update versions 1.1.0, 1.1.1, 1.1.2, 1.1.3, and version 2.0.0 to the latest supported versions (1.1.4 and 2.0.1, as of the date of this bulletin). See the "Security Update Deployment" section of the security bulletin for more information. 

↑ Back to the top


Keywords: kbsurveynew, kbsecvulnerability, kbsecurity, kbsecreview, kbsecbulletin, kblangall, kb, kbfix, kbexpertiseinter, kbbug, atdownload, kbmustloc

↑ Back to the top

Article Info
Article ID : 2905244
Revision : 4
Created on : 4/17/2018
Published on : 4/17/2018
Exists online : False
Views : 65