First published: Thu May 02 2019(Updated: )
An error related to IPAddress.TryCreate when processing certain web requests can be exploited by unauthenticated remote attackers to cause a Denial of Service by sending specially crafted requests to a .NET Core application. External references: <a href="https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0981">https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0981</a>
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft .NET Core Runtime |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1705504 is classified as a Denial of Service vulnerability.
To fix REDHAT-BUG-1705504, update to the latest version of the affected .NET Core SDK that addresses this vulnerability.
REDHAT-BUG-1705504 affects applications built on Microsoft .NET Core that process web requests.
REDHAT-BUG-1705504 enables unauthenticated remote attackers to launch a Denial of Service attack.
No, authentication is not required to exploit REDHAT-BUG-1705504.