MS16-155: Description of the Security Only Update for the .NET Framework 4.6.2 for Windows 7 and Windows Server 2008 R2: December 13, 2016

Applies to: .NET Framework 4.6.2


This update resolves vulnerabilities in the Microsoft .NET Framework. A security vulnerability exists in the .NET Framework that could allow an attacker to access information at rest that should be defended by cryptographic mechanisms. This update fixes the way that the Framework handles the key and therefore defends the data at rest. To learn more about this vulnerability, see Microsoft Security Bulletin MS16-155.

  • If you install a language pack after you install this update, you must reinstall this update. Therefore, we recommend that you install any language packs that you need before you install this update. For more information, see Add language packs to Windows.

Additional information about this security update

For more information about this security update as it relates to Windows 7 and Windows Server 2008 R2, see the following article in the Microsoft Knowledge Base:

3205640 MS16-155: Security Update for the .NET Framework: December 13, 2016

Update deployment information

For deployment information about this update, see Microsoft Knowledge Base Article 3205640 .

Update removal information

Note We do not recommend that you remove any security update.

To remove this update, use the Programs and Features item in Control Panel.

Update restart information

This update does not require a system restart after you apply it unless files that are being updated are locked or are being used.

Update replacement information

This update does not replace any previously released update.

Applies to

This article applies to the following:
  • Microsoft .NET Framework 4.6.2 when used with:
    • Windows Server 2008 R2 Service Pack 1
    • Windows 7 Service Pack 1