First published: Tue Nov 14 2023(Updated: )
ASP.NET Core Denial of Service Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Visual Studio 2022 | =17.4 | |
Microsoft Visual Studio 2022 | =17.2 | |
Microsoft ASP.NET Core | =8.0 | |
Microsoft Visual Studio 2022 | =17.7 | |
Microsoft .NET 8.0 | ||
Microsoft Visual Studio 2022 | >=17.2<17.2.22 | |
Microsoft Visual Studio 2022 | >=17.4<17.4.14 | |
Microsoft Visual Studio 2022 | >=17.6<17.6.10 | |
Microsoft Visual Studio 2022 | >=17.7<17.7.7 | |
All of | ||
Microsoft ASP.NET Core | =8.0.0 | |
Any of | ||
Microsoft .NET | =8.0.0-preview.1 | |
Microsoft .NET | =8.0.0-preview.2 | |
Microsoft .NET | =8.0.0-preview.3 | |
Microsoft .NET | =8.0.0-preview.4 | |
Microsoft .NET | =8.0.0-preview.5 | |
Microsoft .NET | =8.0.0-preview.6 | |
Microsoft .NET | =8.0.0-preview.7 | |
Microsoft .NET | =8.0.0-rc1 | |
Microsoft .NET | =8.0.0-rc2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-36038 is high with a CVSS score of 8.2.
CVE-2023-36038 affects ASP.NET Core version 8.0.
CVE-2023-36038 affects Visual Studio 2022 versions 17.4, 17.2, and 17.7.
To fix CVE-2023-36038 in Visual Studio 2022, update to version 17.4, 17.2, or 17.7.
You can find more information about CVE-2023-36038 on the Microsoft Security Response Center website.