Notice: This website is an unofficial Microsoft Knowledge Base (hereinafter KB) archive and is intended to provide a reliable access to deleted content from Microsoft KB. All KB articles are owned by Microsoft Corporation. Read full disclaimer for more details.

Description of the security update for Microsoft Visual Studio 2013 Update 5: September 8, 2020


View products that this article applies to.

Note This security update applies to Visual Studio 2013 Update 5 except for Visual Studio Isolated and Integrated Shells, Build Tools, Remote Tools, and Express for Web.

↑ Back to the top


Summary

A remote code execution vulnerability exists in Visual Studio when it incorrectly handles objects in memory.

To learn more about the vulnerability, see CVE-2020-16874 and CVE-2020-16856.

↑ Back to the top


How to obtain and install the update

Method 1: Microsoft Download

The following file is available for download:

Download Download the hotfix package now.

Method 2: Microsoft Update Catalog

To get the standalone package for this update, go to the Microsoft Update Catalog website.

↑ Back to the top


More information

Prerequisites

To apply this security update, you must have Visual Studio 2013 Update 5 installed.

Restart requirement

You may have to restart the computer after you apply this security update if an instance of Visual Studio is being used.

Security update replacement information

This security update doesn't replace other security updates.

Deployment information

For deployment details for this security update, see the following Knowledge Base article:

Security update deployment information: September 8, 2020

File hash information

File name SHA1 hash SHA256 hash
VS12-KB4571480.exe 5AC029DB7F239455A12812AD61828F366A41DB6D 52E2F636D299CE0E73AAEDD0EB05B3C639F1ECDA64CB9E74EE551E6B2A676F4B


File information

The English (United States) version of this software update installs files that have the attributes that are listed in the following tables. The dates and the times for these files are listed in Coordinated Universal Time (UTC). The dates and the times for these files on your local computer are displayed in your local time together with your current daylight saving time (DST) bias. Additionally, the dates and the times may change when you perform certain operations on the files.

VS12-KB4571480.exe file information
File name File version File size Date Time
Vs12-kb4571480.exe 12.0.40689.0 1,408,080 24-Jul-2020 06:21

↑ Back to the top


Installation verification

To verify that this security update is applied correctly, follow these steps:

  1. Open the Visual Studio 2013 folder.
  2. Locate the Dxtex.dll file in the Microsoft Visual Studio 12.0\Common7\IDE\Extensions\Microsoft\VsGraphics folder.
  3. Verify that the file version is equal to or greater than 12.0.40689.0.

If you elected to install the optional component (Windows 8.1 and Windows Phone 8.0/8.1 Tools), follow these additional steps:

  1. Locate the Dxtex.dll file in the Microsoft Visual Studio 11.0\Common7\IDE\Extensions\Microsoft\VsGraphics folder.
  2. Verify that the file version is equal to or greater than 11.0.61246.400. 

↑ Back to the top


Information about protection and security

Protect yourself online: Windows Security support

Learn how we guard against cyber threats: Microsoft Security

↑ Back to the top


Keywords: atdownload, kbbug, kbexpertiseinter, kbangall, kbmustloc, kbsecbulletin, kbsecurity, secvulnerability, kbsurveynew, kbfix

↑ Back to the top

Article Info
Article ID : 4571480
Revision : 11
Created on : 9/7/2020
Published on : 9/8/2020
Exists online : False
Views : 265