Description of the security update for the elevation of privilege vulnerability in Microsoft Visual Studio 2015 Update 3: May 14, 2019

Applies to: Visual Studio 2015 Update 3

Summary


An elevation of privilege vulnerability exists if the Diagnostics Hub Standard Collector or the Visual Studio Standard Collector allows file deletion in arbitrary locations.

To learn more about the vulnerability, go to CVE-2019-0727.

How to obtain and install the update


Microsoft Download

The following file is available for download:

Download Download the hotfix package now.

Note You must restart your computer before you install this update. 

Deployment information


For deployment details for this security update, go to the following article in the Microsoft Knowledge Base:

Information about protection and security


More information


Prerequisites

To apply this security update, you must have Visual Studio 2015 Update 3 installed.

File information
The English (United States) version of this software update installs files that have the attributes that are listed in the following tables. The dates and the times for these files are listed in Coordinated Universal Time (UTC). The dates and the times for these files on your local computer are displayed in your local time together with your current daylight saving time (DST) bias. Additionally, the dates and the times may change when you perform certain operations on the files.