Description of the security update for the .NET Framework 4.5 and the .NET Framework 4.5.1 on Windows 7 Service Pack 1, Windows Server 2008 R2 Service Pack 1, Windows Vista Service Pack 2, and Windows Server 2008 Service Pack 2: December 10, 2013
This security update resolves a vulnerability in the Microsoft .NET Framework 4.5 and the .NET Framework 4.5.1 that could allow elevation of privilege on a server system if a user views a specially crafted webpage by using a web browser that can run ASP.NET applications.
This security update applies to Windows 7 Service Pack 1, Windows Server 2008 R2 Service Pack 1, Windows Vista Service Pack 2, and Windows Server 2008 Service Pack 2.
Microsoft has released security advisory 2905247 for the Microsoft .NET Framework.
How to obtain help and support for this security update
This update does not require a system restart after you apply it unless the files that are being updated are locked or are being used.
Update replacement information
This update does not replace any previously released update.
Update removal information
Note We do not recommend that you remove any security update.
To remove this update, use the Programs and Features item in Control Panel.
The English (United States) version of this update installs files that have the attributes that are listed in the following tables. The dates and the times for these files are listed in Coordinated Universal Time (UTC). The dates and the times for these files on your local computer are displayed in your local time together with your current daylight saving time (DST) bias. Additionally, the dates and the times may change when you perform certain operations on the files.