NET Framework Remote Code Execution Vulnerability This security update addresses a vulnerability in WPF where the BAML offers other ways to instantiate types that leads to an elevation of privilege. This security update addresses a vulnerability in the MSDIA SDK where corrupted PDBs can cause heap overflow, leading to a crash or remove code execution. This article describes the Cumulative Update for 3.5, 4.8 and 4.8.1 for Windows 10 Version 21H2.ĬVE-2023-24897. Revised on to fix the link for CVE-2023-32030 Summary Revised to correct the wording of the known issue to X.509 certificate