CVE Vulnerabilities

CVE-2024-0057

Published: Jan 09, 2024 | Modified: Apr 11, 2024
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
9.8 IMPORTANT
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Ubuntu
MEDIUM

NET, .NET Framework, and Visual Studio Security Feature Bypass Vulnerability

Affected Software

Name Vendor Start Version End Version
Powershell Microsoft 7.2 (including) 7.2.18 (excluding)
Powershell Microsoft 7.3 (including) 7.3.11 (excluding)
Powershell Microsoft 7.4 (including) 7.4 (including)
Visual_studio_2022 Microsoft 17.2 (including) 17.2.23 (excluding)
Visual_studio_2022 Microsoft 17.4 (including) 17.4.15 (excluding)
Visual_studio_2022 Microsoft 17.6 (including) 17.6.11 (excluding)
Visual_studio_2022 Microsoft 17.8 (including) 17.8.4 (excluding)
.NET Core on Red Hat Enterprise Linux RedHat rh-dotnet60-dotnet-0:6.0.126-1.el7_9 *
Red Hat Enterprise Linux 8 RedHat dotnet8.0-0:8.0.101-1.el8_9 *
Red Hat Enterprise Linux 8 RedHat dotnet7.0-0:7.0.115-1.el8_9 *
Red Hat Enterprise Linux 8 RedHat dotnet6.0-0:6.0.126-1.el8_9 *
Red Hat Enterprise Linux 9 RedHat dotnet7.0-0:7.0.115-1.el9_3 *
Red Hat Enterprise Linux 9 RedHat dotnet8.0-0:8.0.101-1.el9_3 *
Red Hat Enterprise Linux 9 RedHat dotnet6.0-0:6.0.126-1.el9_3 *
Dotnet6 Ubuntu jammy *
Dotnet6 Ubuntu lunar *
Dotnet6 Ubuntu mantic *
Dotnet6 Ubuntu upstream *
Dotnet7 Ubuntu jammy *
Dotnet7 Ubuntu lunar *
Dotnet7 Ubuntu mantic *
Dotnet7 Ubuntu upstream *
Dotnet8 Ubuntu devel *
Dotnet8 Ubuntu mantic *
Dotnet8 Ubuntu upstream *

References