CVE Vulnerabilities

CVE-2018-8409

Published: Sep 13, 2018 | Modified: Oct 04, 2022
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

A denial of service vulnerability exists when System.IO.Pipelines improperly handles requests, aka System.IO.Pipelines Denial of Service. This affects .NET Core 2.1, System.IO.Pipelines, ASP.NET Core 2.1.

Affected Software

Name Vendor Start Version End Version
.net_core Microsoft 2.1 (including) 2.1.4 (excluding)
Asp.net_core Microsoft 2.1 (including) 2.1.4 (excluding)
System.io.pipelines Microsoft 4.5.0 (including) 4.5.0 (including)

References