rpm package
almalinux/dotnet-host
pkg:rpm/almalinux/dotnet-host
Vulnerabilities (78)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2023-44487 | Hig | 7.5 | KEV | < 7.0.12-1.el8_8 | 7.0.12-1.el8_8 | Oct 10, 2023 | The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023. |
| CVE-2023-36799 | Med | 6.5 | < 7.0.11-1.el8_8 | 7.0.11-1.el8_8 | Sep 12, 2023 | .NET Core and Visual Studio Denial of Service Vulnerability | |
| CVE-2023-38180 | Hig | 7.5 | KEV | < 7.0.10-1.el9_2 | 7.0.10-1.el9_2 | Aug 8, 2023 | .NET and Visual Studio Denial of Service Vulnerability |
| CVE-2023-35390 | Hig | 7.8 | < 7.0.10-1.el9_2 | 7.0.10-1.el9_2 | Aug 8, 2023 | .NET and Visual Studio Remote Code Execution Vulnerability | |
| CVE-2023-33170 | Hig | 8.1 | < 7.0.9-1.el9_2 | 7.0.9-1.el9_2 | Jul 11, 2023 | ASP.NET and Visual Studio Security Feature Bypass Vulnerability | |
| CVE-2023-29337 | Hig | 7.1 | < 7.0.7-1.el9_2 | 7.0.7-1.el9_2 | Jun 14, 2023 | NuGet Client Remote Code Execution Vulnerability | |
| CVE-2023-29331 | Hig | 7.5 | < 7.0.7-1.el9_2 | 7.0.7-1.el9_2 | Jun 14, 2023 | .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability | |
| CVE-2023-24936 | Hig | 7.5 | < 7.0.7-1.el9_2 | 7.0.7-1.el9_2 | Jun 14, 2023 | .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability | |
| CVE-2023-33128 | Hig | 7.3 | < 7.0.7-1.el9_2 | 7.0.7-1.el9_2 | Jun 14, 2023 | .NET and Visual Studio Remote Code Execution Vulnerability | |
| CVE-2023-32032 | Med | 6.5 | < 7.0.7-1.el9_2 | 7.0.7-1.el9_2 | Jun 14, 2023 | .NET and Visual Studio Elevation of Privilege Vulnerability | |
| CVE-2022-41032 | Hig | 7.8 | < 6.0.10-1.el8_6 | 6.0.10-1.el8_6 | Oct 11, 2022 | NuGet Client Elevation of Privilege Vulnerability | |
| CVE-2022-38013 | Hig | 7.5 | < 6.0.9-1.el9_0 | 6.0.9-1.el9_0 | Sep 13, 2022 | .NET Core and Visual Studio Denial of Service Vulnerability | |
| CVE-2022-34716 | Med | 5.9 | < 6.0.8-1.el9_0 | 6.0.8-1.el9_0 | Aug 9, 2022 | .NET Spoofing Vulnerability | |
| CVE-2022-29145 | Hig | 7.5 | < 6.0.5-1.el8_6 | 6.0.5-1.el8_6 | May 10, 2022 | .NET and Visual Studio Denial of Service Vulnerability | |
| CVE-2022-29117 | Hig | 7.5 | < 6.0.5-1.el8_6 | 6.0.5-1.el8_6 | May 10, 2022 | .NET and Visual Studio Denial of Service Vulnerability | |
| CVE-2022-23267 | Hig | 7.5 | < 6.0.5-1.el8_6 | 6.0.5-1.el8_6 | May 10, 2022 | .NET and Visual Studio Denial of Service Vulnerability | |
| CVE-2022-24512 | Med | 6.3 | < 6.0.3-4.el8_5 | 6.0.3-4.el8_5 | Mar 9, 2022 | .NET and Visual Studio Remote Code Execution Vulnerability | |
| CVE-2022-24464 | Hig | 7.5 | < 6.0.3-4.el8_5 | 6.0.3-4.el8_5 | Mar 9, 2022 | .NET and Visual Studio Denial of Service Vulnerability |
- affected < 7.0.12-1.el8_8fixed 7.0.12-1.el8_8
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
- affected < 7.0.11-1.el8_8fixed 7.0.11-1.el8_8
.NET Core and Visual Studio Denial of Service Vulnerability
- affected < 7.0.10-1.el9_2fixed 7.0.10-1.el9_2
.NET and Visual Studio Denial of Service Vulnerability
- affected < 7.0.10-1.el9_2fixed 7.0.10-1.el9_2
.NET and Visual Studio Remote Code Execution Vulnerability
- affected < 7.0.9-1.el9_2fixed 7.0.9-1.el9_2
ASP.NET and Visual Studio Security Feature Bypass Vulnerability
- affected < 7.0.7-1.el9_2fixed 7.0.7-1.el9_2
NuGet Client Remote Code Execution Vulnerability
- affected < 7.0.7-1.el9_2fixed 7.0.7-1.el9_2
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
- affected < 7.0.7-1.el9_2fixed 7.0.7-1.el9_2
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
- affected < 7.0.7-1.el9_2fixed 7.0.7-1.el9_2
.NET and Visual Studio Remote Code Execution Vulnerability
- affected < 7.0.7-1.el9_2fixed 7.0.7-1.el9_2
.NET and Visual Studio Elevation of Privilege Vulnerability
- affected < 6.0.10-1.el8_6fixed 6.0.10-1.el8_6
NuGet Client Elevation of Privilege Vulnerability
- affected < 6.0.9-1.el9_0fixed 6.0.9-1.el9_0
.NET Core and Visual Studio Denial of Service Vulnerability
- affected < 6.0.8-1.el9_0fixed 6.0.8-1.el9_0
.NET Spoofing Vulnerability
- affected < 6.0.5-1.el8_6fixed 6.0.5-1.el8_6
.NET and Visual Studio Denial of Service Vulnerability
- affected < 6.0.5-1.el8_6fixed 6.0.5-1.el8_6
.NET and Visual Studio Denial of Service Vulnerability
- affected < 6.0.5-1.el8_6fixed 6.0.5-1.el8_6
.NET and Visual Studio Denial of Service Vulnerability
- affected < 6.0.3-4.el8_5fixed 6.0.3-4.el8_5
.NET and Visual Studio Remote Code Execution Vulnerability
- affected < 6.0.3-4.el8_5fixed 6.0.3-4.el8_5
.NET and Visual Studio Denial of Service Vulnerability
Page 4 of 4