MS16-035: Description of the security update for the .NET Framework 3.5 in Windows Server 2012: March 8, 2016

This update resolves a vulnerability in the Microsoft .NET Framework. The security feature bypass exists in a .NET Framework component that does not properly validate certain elements of a signed XML document. To learn more about this vulnerability, see Microsoft Security Bulletin MS16-035.

How to obtain and install this update

Method 1: Windows Update

This update is available through Windows Update. When you turn on automatic updating, this update will be downloaded and installed automatically. For more information about how to get security updates automatically, see the "Turn on automatic updating in the Control Panel" section of this Safety & Security Center article.

Method 2: Microsoft Download Center

You can obtain the stand-alone update package through the Microsoft Download Center. To install this update, follow the install instructions on the download page.

DownloadDownload security update 3135984

Update deployment information

For deployment information about this update, see Microsoft Knowledge Base article 3141780.

Update removal information

Note We do not recommend that you remove any security update.

To remove this update, use the Programs and Features item in Control Panel.

Update restart information

This update does not require a system restart after you apply it unless files that are being updated are locked or are being used.

Update replacement information

This update replaces previously released updates 2863243 and 3035486.

File information

File hash


File attributes

The English (United States) version of this update installs files that have the attributes that are listed in the following tables. The dates and the times for these files are listed in Coordinated Universal Time (UTC). The dates and the times for these files on your local computer are displayed in your local time together with your current daylight saving time (DST) bias. Additionally, the dates and the times may change when you perform certain operations on the files.

For all supported x64-based versions of systems

GDR service branch
File nameFile versionFile sizeDateTime,24003-Feb-201614:14,24003-Feb-201614:09,24003-Feb-201614:14,24003-Feb-201614:09
LDR service branch
File nameFile versionFile sizeDateTime,24003-Feb-201614:10,24003-Feb-201614:09,24003-Feb-201614:10,24003-Feb-201614:09

How to obtain help and support for this security update

Help for installing updates: Support for Microsoft Update

Security solutions for IT professionals: TechNet Security Troubleshooting and Support

Help for protecting your Windows-based computer from viruses and malware: Virus Solution and Security Center

Local support according to your country: International Support

Applies to

This article applies to the following:
  • Microsoft .NET Framework 3.5 when used with:
    • Windows Server 2012

Article ID: 3135984 - Last Review: 03/11/2016 22:52:00 - Revision: 2.0

Microsoft .NET Framework 3.5

  • kbsecvulnerability kbsecurity kbsecbulletin kbfix kbexpertiseinter kbbug atdownload KB3135984