CVE-2021-26423: .NET Core and Visual Studio Denial of Service Vulnerability
.NET Core and Visual Studio Denial of Service Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 2.1.30 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.10.5 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.9.10 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 3.1.18 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.4.25 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.7.18 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 15.9.38 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 7.1.4 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 5.0.9 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 7.0.7 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 8.10.7
Event History
Frequently Asked Questions
What is the severity of CVE-2021-26423?
The severity of CVE-2021-26423 is high with a CVSS score of 7.5.
Which software versions are affected by CVE-2021-26423?
CVE-2021-26423 affects Microsoft .NET versions 5.0 and earlier, Microsoft .NET Core versions 2.1 and 3.1, Microsoft PowerShell Core versions 7.0 and 7.1, and Microsoft Visual Studio versions 15.0 to 15.9 and 16.0 to 16.10.
What is the vulnerability description of CVE-2021-26423?
CVE-2021-26423 is a denial of service vulnerability in .NET Core and Visual Studio.
How can I fix CVE-2021-26423?
To fix CVE-2021-26423, it is recommended to update to the latest patched versions of the affected software.
Where can I find more information about CVE-2021-26423?
You can find more information about CVE-2021-26423 in the Microsoft Security Guidance Advisory for CVE-2021-26423: [link](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26423)