REDHAT-BUG-2237317: Medium severity .net vulnerability
Published Sep 4, 2023
·Updated
.NET Kestrel: Denial of Service with Client Certificates (variant of CVE-2023-29331)
A vulnerability exists in .NET when processing X.509 certificates that may result in Denial of Service.
Affected versions: .NET 6.0 .NET 7.0
Affected Software
1 affected component
.NET .NET
Event History
Sep 4, 2023
Data Sourced
via Red Hat·06:56 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2237317?
The severity of REDHAT-BUG-2237317 is classified as a Denial of Service vulnerability.
2
How do I fix REDHAT-BUG-2237317?
To fix REDHAT-BUG-2237317, update your .NET installation to the latest version that includes the patch addressing this vulnerability.
3
Which software versions are affected by REDHAT-BUG-2237317?
Affected software versions include .NET 6.0 and .NET 7.0.
4
What happens if I do not address REDHAT-BUG-2237317?
If REDHAT-BUG-2237317 is not addressed, it could lead to a Denial of Service condition affecting your application.
5
Is REDHAT-BUG-2237317 related to any other vulnerabilities?
Yes, REDHAT-BUG-2237317 is a variant of CVE-2023-29331, which also involves vulnerabilities in .NET.