[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250363

 
 

909

 
 

196124

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2023:4645-01 -- Redhat dotnet6.0, aspnetcore-runtime-6.0, aspnetcore-targeting-pack-6.0, dotnet-apphost-pack-6.0, dotnet-hostfxr-6.0, dotnet-runtime-6.0, dotnet-sdk-6.0, dotnet-targeting-pack-6.0, dotnet-templates-6.0

ID: oval:org.secpod.oval:def:507908Date: (C)2023-09-04   (M)2023-11-06
Class: PATCHFamily: unix




.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 6.0.121 and .NET Runtime 6.0.21. Security Fix: * dotnet: RCE under dotnet commands * dotnet: Kestrel vulnerability to slow read attacks leading to Denial of Service attack For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.

Platform:
Red Hat Enterprise Linux 8
Product:
aspnetcore-runtime-6.0
aspnetcore-targeting-pack-6.0
dotnet-apphost-pack-6.0
dotnet-hostfxr-6.0
dotnet-runtime-6.0
dotnet-sdk-6.0
dotnet-targeting-pack-6.0
dotnet-templates-6.0
Reference:
RHSA-2023:4645-01
CVE-2023-35390
CVE-2023-38180
CVE    2
CVE-2023-38180
CVE-2023-35390
CPE    9
cpe:/o:redhat:enterprise_linux:8
cpe:/a:microsoft:dotnet-hostfxr-6.0
cpe:/a:microsoft:dotnet-apphost-pack-6.0
cpe:/a:microsoft:dotnet-sdk-6.0
...

© SecPod Technologies