CVE Vulnerabilities

CVE-2023-36049

Published: Nov 14, 2023 | Modified: Nov 21, 2023
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
9.8 MODERATE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Ubuntu
MEDIUM

.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability

Affected Software

Name Vendor Start Version End Version
.net_framework Microsoft 2.0-sp2 (including) 2.0-sp2 (including)
.NET Core on Red Hat Enterprise Linux RedHat rh-dotnet60-dotnet-0:6.0.125-1.el7_9 *
Red Hat Enterprise Linux 8 RedHat dotnet8.0-0:8.0.100-2.el8_9 *
Red Hat Enterprise Linux 8 RedHat dotnet7.0-0:7.0.114-1.el8_9 *
Red Hat Enterprise Linux 8 RedHat dotnet6.0-0:6.0.125-1.el8_9 *
Red Hat Enterprise Linux 9 RedHat dotnet8.0-0:8.0.100-2.el9_3 *
Red Hat Enterprise Linux 9 RedHat dotnet7.0-0:7.0.114-1.el9_3 *
Red Hat Enterprise Linux 9 RedHat dotnet6.0-0:6.0.125-1.el9_3 *
Dotnet6 Ubuntu jammy *
Dotnet6 Ubuntu lunar *
Dotnet6 Ubuntu mantic *
Dotnet6 Ubuntu upstream *
Dotnet7 Ubuntu jammy *
Dotnet7 Ubuntu lunar *
Dotnet7 Ubuntu mantic *
Dotnet7 Ubuntu upstream *
Dotnet8 Ubuntu devel *
Dotnet8 Ubuntu mantic *
Dotnet8 Ubuntu upstream *

References