vulnerability

Oracle Linux: CVE-2022-24512: ELSA-2022-0826: .NET 6.0 security and bugfix update (IMPORTANT) (Multiple Advisories)

Severity
7
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Mar 8, 2022
Added
Mar 12, 2022
Modified
Jan 7, 2025

Description

.NET and Visual Studio Remote Code Execution Vulnerability
A flaw was found in dotnet, where a buffer overrun exists in the double parse routine, which could lead to remote code execution. This flaw allows an attacker to execute code remotely on the system, leading to some system compromise.

Solution(s)

oracle-linux-upgrade-aspnetcore-runtime-3-1oracle-linux-upgrade-aspnetcore-runtime-5-0oracle-linux-upgrade-aspnetcore-runtime-6-0oracle-linux-upgrade-aspnetcore-targeting-pack-3-1oracle-linux-upgrade-aspnetcore-targeting-pack-5-0oracle-linux-upgrade-aspnetcore-targeting-pack-6-0oracle-linux-upgrade-dotnetoracle-linux-upgrade-dotnet-apphost-pack-3-1oracle-linux-upgrade-dotnet-apphost-pack-5-0oracle-linux-upgrade-dotnet-apphost-pack-6-0oracle-linux-upgrade-dotnet-hostoracle-linux-upgrade-dotnet-hostfxr-3-1oracle-linux-upgrade-dotnet-hostfxr-5-0oracle-linux-upgrade-dotnet-hostfxr-6-0oracle-linux-upgrade-dotnet-runtime-3-1oracle-linux-upgrade-dotnet-runtime-5-0oracle-linux-upgrade-dotnet-runtime-6-0oracle-linux-upgrade-dotnet-sdk-3-1oracle-linux-upgrade-dotnet-sdk-3-1-source-built-artifactsoracle-linux-upgrade-dotnet-sdk-5-0oracle-linux-upgrade-dotnet-sdk-5-0-source-built-artifactsoracle-linux-upgrade-dotnet-sdk-6-0oracle-linux-upgrade-dotnet-targeting-pack-3-1oracle-linux-upgrade-dotnet-targeting-pack-5-0oracle-linux-upgrade-dotnet-targeting-pack-6-0oracle-linux-upgrade-dotnet-templates-3-1oracle-linux-upgrade-dotnet-templates-5-0oracle-linux-upgrade-dotnet-templates-6-0oracle-linux-upgrade-netstandard-targeting-pack-2-1
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.