VYPR

rpm package

almalinux/dotnet-sdk-10.0-source-built-artifacts

pkg:rpm/almalinux/dotnet-sdk-10.0-source-built-artifacts

Vulnerabilities (30)

  • CVE-2026-62909HigAug 11, 2026
    affected < 10.0.111-1.el8_10fixed 10.0.111-1.el8_10

    Uncaught exception in .NET allows an authorized attacker to elevate privileges locally.

  • CVE-2026-62901HigAug 11, 2026
    affected < 10.0.111-1.el8_10fixed 10.0.111-1.el8_10

    Unchecked input for loop condition in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-62900MedAug 11, 2026
    affected < 10.0.111-1.el8_10fixed 10.0.111-1.el8_10

    Improper removal of sensitive information before storage or transfer in .NET allows an unauthorized attacker to disclose information over a network.

  • CVE-2026-62899MedAug 11, 2026
    affected < 10.0.111-1.el8_10fixed 10.0.111-1.el8_10

    Inconsistent interpretation of http requests ('http request/response smuggling') in .NET allows an unauthorized attacker to bypass a security feature over a network.

  • CVE-2026-50659MedJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Improper encoding or escaping of output in .NET allows an authorized attacker to perform spoofing over a network.

  • CVE-2026-50651HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-50650HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Improper control of generation of code ('code injection') in .NET Framework allows an unauthorized attacker to elevate privileges locally.

  • CVE-2026-50649HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Deserialization of untrusted data in .NET allows an unauthorized attacker to execute code locally.

  • CVE-2026-50648HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Allocation of resources without limits or throttling in .NET Framework allows an unauthorized attacker to deny service over a network.

  • CVE-2026-50646HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Protection mechanism failure in .NET Framework allows an unauthorized attacker to execute code locally.

  • CVE-2026-50528HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Incorrect authorization in .NET allows an unauthorized attacker to bypass a security feature over a network.

  • CVE-2026-50527HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Stack-based buffer overflow in .NET Framework allows an unauthorized attacker to deny service over a network.

  • CVE-2026-50526HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Improper link resolution before file access ('link following') in .NET allows an authorized attacker to perform tampering locally.

  • CVE-2026-50525HigJul 14, 2026
    affected < 10.0.110-1.el9_8fixed 10.0.110-1.el9_8

    Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-50524HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Improper validation of specified type of input in .NET Framework allows an unauthorized attacker to deny service over a network.

  • CVE-2026-47304HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature over a network.

  • CVE-2026-47303HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Authentication bypass by assumed-immutable data in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-47302HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

  • CVE-2026-47300HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Incorrect implementation of authentication algorithm in ASP.NET Core allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-57108HigJul 14, 2026
    affected < 10.0.110-1.el10_2fixed 10.0.110-1.el10_2

    Access of resource using incompatible type ('type confusion') in .NET Core allows an unauthorized attacker to deny service over a network.

Page 1 of 2