vulnerability
Alma Linux: CVE-2024-0056: Important: .NET 8.0 security update (Multiple Advisories)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
9 | (AV:N/AC:M/Au:N/C:C/I:C/A:N) | Jan 9, 2024 | Jan 15, 2024 | Jan 28, 2025 |
Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:N)
Published
Jan 9, 2024
Added
Jan 15, 2024
Modified
Jan 28, 2025
Description
Microsoft.Data.SqlClient and System.Data.SqlClient SQL Data Provider Security Feature Bypass Vulnerability
Solution(s)
alma-upgrade-aspnetcore-runtime-6.0alma-upgrade-aspnetcore-runtime-7.0alma-upgrade-aspnetcore-runtime-8.0alma-upgrade-aspnetcore-targeting-pack-6.0alma-upgrade-aspnetcore-targeting-pack-7.0alma-upgrade-aspnetcore-targeting-pack-8.0alma-upgrade-dotnetalma-upgrade-dotnet-apphost-pack-6.0alma-upgrade-dotnet-apphost-pack-7.0alma-upgrade-dotnet-apphost-pack-8.0alma-upgrade-dotnet-hostalma-upgrade-dotnet-hostfxr-6.0alma-upgrade-dotnet-hostfxr-7.0alma-upgrade-dotnet-hostfxr-8.0alma-upgrade-dotnet-runtime-6.0alma-upgrade-dotnet-runtime-7.0alma-upgrade-dotnet-runtime-8.0alma-upgrade-dotnet-sdk-6.0alma-upgrade-dotnet-sdk-6.0-source-built-artifactsalma-upgrade-dotnet-sdk-7.0alma-upgrade-dotnet-sdk-7.0-source-built-artifactsalma-upgrade-dotnet-sdk-8.0alma-upgrade-dotnet-sdk-8.0-source-built-artifactsalma-upgrade-dotnet-targeting-pack-6.0alma-upgrade-dotnet-targeting-pack-7.0alma-upgrade-dotnet-targeting-pack-8.0alma-upgrade-dotnet-templates-6.0alma-upgrade-dotnet-templates-7.0alma-upgrade-dotnet-templates-8.0alma-upgrade-netstandard-targeting-pack-2.1
References
- CVE-2024-0056
- https://attackerkb.com/topics/CVE-2024-0056
- URL-https://errata.almalinux.org/8/ALSA-2024-0150.html
- URL-https://errata.almalinux.org/8/ALSA-2024-0157.html
- URL-https://errata.almalinux.org/8/ALSA-2024-0158.html
- URL-https://errata.almalinux.org/9/ALSA-2024-0151.html
- URL-https://errata.almalinux.org/9/ALSA-2024-0152.html
- URL-https://errata.almalinux.org/9/ALSA-2024-0156.html

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.