Описание
ELSA-2026-21293: .NET 8.0 security update (IMPORTANT)
[8.0.128-1.0.1]
- Add support for Oracle Linux
[8.0.128-1]
- Update to .NET SDK 8.0.128 and Runtime 8.0.28
- Resolves: RHEL-181055
[8.0.127-1]
- Update to .NET SDK 8.0.127 and Runtime 8.0.27
- Resolves: RHEL-173923
Обновленные пакеты
Oracle Linux 9
Oracle Linux aarch64
aspnetcore-runtime-8.0
8.0.28-1.0.1.el9_8
aspnetcore-runtime-dbg-8.0
8.0.28-1.0.1.el9_8
aspnetcore-targeting-pack-8.0
8.0.28-1.0.1.el9_8
dotnet-apphost-pack-8.0
8.0.28-1.0.1.el9_8
dotnet-hostfxr-8.0
8.0.28-1.0.1.el9_8
dotnet-runtime-8.0
8.0.28-1.0.1.el9_8
dotnet-runtime-dbg-8.0
8.0.28-1.0.1.el9_8
dotnet-sdk-8.0
8.0.128-1.0.1.el9_8
dotnet-sdk-8.0-source-built-artifacts
8.0.128-1.0.1.el9_8
dotnet-sdk-dbg-8.0
8.0.128-1.0.1.el9_8
dotnet-targeting-pack-8.0
8.0.28-1.0.1.el9_8
dotnet-templates-8.0
8.0.128-1.0.1.el9_8
Oracle Linux x86_64
aspnetcore-runtime-8.0
8.0.28-1.0.1.el9_8
aspnetcore-runtime-dbg-8.0
8.0.28-1.0.1.el9_8
aspnetcore-targeting-pack-8.0
8.0.28-1.0.1.el9_8
dotnet-apphost-pack-8.0
8.0.28-1.0.1.el9_8
dotnet-hostfxr-8.0
8.0.28-1.0.1.el9_8
dotnet-runtime-8.0
8.0.28-1.0.1.el9_8
dotnet-runtime-dbg-8.0
8.0.28-1.0.1.el9_8
dotnet-sdk-8.0
8.0.128-1.0.1.el9_8
dotnet-sdk-8.0-source-built-artifacts
8.0.128-1.0.1.el9_8
dotnet-sdk-dbg-8.0
8.0.128-1.0.1.el9_8
dotnet-targeting-pack-8.0
8.0.28-1.0.1.el9_8
dotnet-templates-8.0
8.0.128-1.0.1.el9_8
Связанные CVE
Связанные уязвимости
Serialize JavaScript to a superset of JSON that includes regular expressions and functions. Prior to version 7.0.5, there is a Denial of Service (DoS) vulnerability caused by CPU exhaustion. When serializing a specially crafted "array-like" object (an object that inherits from Array.prototype but has a very large length property), the process enters an intensive loop that consumes 100% CPU and hangs indefinitely. This issue has been patched in version 7.0.5.