CVE Vulnerabilities

CVE-2018-8409

Published: Sep 13, 2018 | Modified: Nov 21, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
5.1 LOW
CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Ubuntu

A denial of service vulnerability exists when System.IO.Pipelines improperly handles requests, aka System.IO.Pipelines Denial of Service. This affects .NET Core 2.1, System.IO.Pipelines, ASP.NET Core 2.1.

Affected Software

Name Vendor Start Version End Version
.net_core Microsoft 2.1 (including) 2.1.4 (excluding)
Asp.net_core Microsoft 2.1 (including) 2.1.4 (excluding)
System.io.pipelines Microsoft 4.5.0 (including) 4.5.0 (including)

References