Improper verification of cryptographic signature in .NET allows an unauthorized attacker to bypass a security feature over a network.
The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| .net_framework | Microsoft | 4.8.1 (including) | 4.8.1 (including) |
| Red Hat Enterprise Linux 10 | RedHat | dotnet8.0-0:8.0.129-1.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | dotnet9.0-0:9.0.119-1.el10_2 | * |
| Red Hat Enterprise Linux 10 | RedHat | dotnet10.0-0:10.0.110-1.el10_2 | * |
| Red Hat Enterprise Linux 8 | RedHat | dotnet9.0-0:9.0.119-1.el8_10 | * |
| Red Hat Enterprise Linux 8 | RedHat | dotnet10.0-0:10.0.110-1.el8_10 | * |
| Red Hat Enterprise Linux 8 | RedHat | dotnet8.0-0:8.0.129-1.el8_10 | * |
| Red Hat Enterprise Linux 9 | RedHat | dotnet8.0-0:8.0.129-1.el9_8 | * |
| Red Hat Enterprise Linux 9 | RedHat | dotnet9.0-0:9.0.119-1.el9_8 | * |
| Red Hat Enterprise Linux 9 | RedHat | dotnet10.0-0:10.0.110-1.el9_8 | * |
| Red Hat Hardened Images | RedHat | dotnet9-0-main-9.0.119-1.hum1 | * |
| Red Hat Hardened Images | RedHat | dotnet8-0-main-8.0.129-2.1.hum1 | * |
| Dotnet10 | Ubuntu | devel | * |
| Dotnet10 | Ubuntu | noble | * |
| Dotnet10 | Ubuntu | resolute | * |
| Dotnet7 | Ubuntu | jammy | * |
| Dotnet8 | Ubuntu | jammy | * |
| Dotnet8 | Ubuntu | noble | * |