October 2024 security and quality rollup

Released October 8, 2024

Summary of what's new in this release

Security improvements

CVE-2024-43483 – Denial of service vulnerability

This security update addresses a denial of service vulnerability detailed in CVE 2024-43483.

CVE-2024-43484 – Denial of service vulnerability

This security update addresses a denial of service vulnerability detailed in CVE 2024-43484.

Quality and reliability improvements

This release contains the following quality and reliability improvements.

.NET fundamentals

Addresses an issue where applications cannot target .NET Framework (Applies to: .NET Framework 4.8.1.)

.NET libraries

Addresses an issue with May cumulative updates causing customers to observe runtime exceptions in certain SQL CLR hosted scenarios. (Applies to: .NET Framework 4.8, 4.8.1.)

Known issues

This release contains no known issues.

Summary tables

The following table outlines the updates in this release.

Product version Cumulative update
Windows 11, version 24H2
.NET Framework 3.5, 4.8.1 5044030
Microsoft server operating system, version 23H2
.NET Framework 3.5, 4.8.1 5044028
Windows 11, version 22H2 and Windows 11, version 23H2
.NET Framework 3.5, 4.8.1 5044033
Microsoft server operating system, version 22H2 5044087
.NET Framework 3.5, 4.8 5044025
.NET Framework 3.5, 4.8.1 5044035
Windows 11, version 21H2 5044092
.NET Framework 3.5, 4.8 5044023
.NET Framework 3.5, 4.8.1 5044032
Microsoft server operating system, version 21H2 5044099
.NET Framework 3.5, 4.8 5044025
.NET Framework 3.5, 4.8.1 5044035
Windows 10, version 22H2 5044091
.NET Framework 3.5, 4.8 5044020
.NET Framework 3.5, 4.8.1 5044029
Windows 10, version 21H2 5044090
.NET Framework 3.5, 4.8 5044020
.NET Framework 3.5, 4.8.1 5044029
Windows 10 1809 and Windows Server 2019 5044089
.NET Framework 3.5, 4.7.2 5044016
.NET Framework 3.5, 4.8 5044022
Windows 10 1607 and Windows Server 2016
.NET Framework 3.5, 4.6.2, 4.7, 4.7.1, 4.7.2 5044293
.NET Framework 4.8 5044021
Windows 10 1507
.NET Framework 3.5, 4.6, 4.6.2 5044286

The following table is for earlier Windows and Windows Server versions for Security and Quality Rollup updates.  

Product version Security and quality rollup
Windows Server 2012 R2 5044097
.NET Framework 3.5 5044012
.NET Framework 4.6.2, 4.7, 4.7.1, 4.7.2 5044018
.NET Framework 4.8 5044026
Windows Server 2012 5044096
.NET Framework 3.5 5044009
.NET Framework 4.6.2, 4.7, 4.7.1, 4.7.2 5044017
.NET Framework 4.8 5044024
Windows Server 2008 R2 5044095
.NET Framework 3.5.1 5044011
.NET Framework 4.6.2, 4.7, 4.7.1, 4.7.2 5044019
.NET Framework 4.8 5044027
Windows Server 2008 5044098
.NET Framework 2.0, 3.0 5044010
.NET Framework 3.5 SP1 5040673
.NET Framework 4.6.2 5044019

The following table is for earlier Windows and Windows Server versions for Security Only updates, which aren't cumulative.

Product version Security only update
Windows Server 2008 R2 5044085
.NET Framework 3.5.1 5043946
.NET Framework 4.6.2, 4.7, 4.7.1, 4.7.2 5043947
.NET Framework 4.8 5043948
Windows Server 2008 5044086
.NET Framework 2.0, 3.0 5043945
.NET Framework 3.5 SP1 5040680
.NET Framework 4.6.2 5043947

The operating system rows list a KB that's used for update-offering purposes. When the operating system KB is offered, the applicability logic determines the specific .NET Framework updates that will be installed. Updates for individual .NET Framework versions are installed based on the version of .NET Framework that's already present on the device. Because of this, the operating system KB is not expected to be listed as an installed update on the device. The expected updates to be installed are the .NET Framework–specific version updates listed in the preceding table.