CVE-2021-26423: .NET Core and Visual Studio Denial of Service Vulnerability
Published Aug 12, 2021
·Updated
.NET Core and Visual Studio Denial of Service Vulnerability
Affected Software
8 affected components
Microsoft .NET>=5.0<=5.0.8
Microsoft .NET Core>=2.1<=2.1.28
Microsoft .NET Core>=3.1<=3.1.17
Microsoft PowerShell Core>=7.0<7.0.7
Microsoft PowerShell Core>=7.1<7.1.4
Microsoft Visual Studio 2017>=15.0<=15.9
Microsoft Visual Studio 2019>=16.0<=16.10
Microsoft Visual Studio 2019 Macos=8.10
Remediation
Event History
Aug 12, 2021
CVE Published
06:11 PM
Data Sourced
06:11 PM
DescriptionSeverity
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-26423?
The severity of CVE-2021-26423 is high with a CVSS score of 7.5.
2
Which software versions are affected by CVE-2021-26423?
CVE-2021-26423 affects Microsoft .NET versions 5.0 and earlier, Microsoft .NET Core versions 2.1 and 3.1, Microsoft PowerShell Core versions 7.0 and 7.1, and Microsoft Visual Studio versions 15.0 to 15.9 and 16.0 to 16.10.
3
What is the vulnerability description of CVE-2021-26423?
CVE-2021-26423 is a denial of service vulnerability in .NET Core and Visual Studio.
4
How can I fix CVE-2021-26423?
To fix CVE-2021-26423, it is recommended to update to the latest patched versions of the affected software.
5
Where can I find more information about CVE-2021-26423?
You can find more information about CVE-2021-26423 in the Microsoft Security Guidance Advisory for CVE-2021-26423: [link](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26423)