CVE Vulnerabilities

CVE-2024-43485

Inefficient Algorithmic Complexity

Published: Oct 08, 2024 | Modified: Oct 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
7.5 IMPORTANT
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

.NET and Visual Studio Denial of Service Vulnerability

Weakness

An algorithm in a product has an inefficient worst-case computational complexity that may be detrimental to system performance and can be triggered by an attacker, typically using crafted manipulations that ensure that the worst case is being reached.

Affected Software

NameVendorStart VersionEnd Version
.netMicrosoft6.0.0 (including)6.0.35 (excluding)
.netMicrosoft8.0.0 (including)8.0.10 (excluding)
Red Hat Enterprise Linux 8RedHatdotnet6.0-0:6.0.135-1.el8_10*
Red Hat Enterprise Linux 8RedHatdotnet8.0-0:8.0.110-1.el8_10*
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportRedHatdotnet6.0-0:6.0.135-1.el8_6*
Red Hat Enterprise Linux 8.6 Telecommunications Update ServiceRedHatdotnet6.0-0:6.0.135-1.el8_6*
Red Hat Enterprise Linux 8.6 Update Services for SAP SolutionsRedHatdotnet6.0-0:6.0.135-1.el8_6*
Red Hat Enterprise Linux 8.8 Extended Update SupportRedHatdotnet6.0-0:6.0.135-1.el8_8*
Red Hat Enterprise Linux 9RedHatdotnet6.0-0:6.0.135-1.el9_4*
Red Hat Enterprise Linux 9RedHatdotnet8.0-0:8.0.110-1.el9_4*
Red Hat Enterprise Linux 9.0 Update Services for SAP SolutionsRedHatdotnet6.0-0:6.0.135-1.el9_0*
Red Hat Enterprise Linux 9.2 Extended Update SupportRedHatdotnet6.0-0:6.0.135-1.el9_2*
Dotnet6Ubuntujammy*
Dotnet6Ubuntuupstream*
Dotnet7Ubuntujammy*
Dotnet8Ubuntudevel*
Dotnet8Ubuntujammy*
Dotnet8Ubuntunoble*
Dotnet8Ubuntuoracular*
Dotnet8Ubuntuupstream*

References