Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-26171

Опубликовано: 14 апр. 2026
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.

A flaw was found in .NET. A remote attacker could exploit a vulnerability related to unsafe transforms in EncryptedXml. This could lead to a Denial of Service (DoS), making the service unavailable, and a bypass of security features.

Отчет

This is an Important impact vulnerability affecting .NET applications that utilize EncryptedXml for data encryption. An attacker could exploit unsafe transforms to achieve a denial of service or bypass security features. This impacts Red Hat Enterprise Linux and Fedora systems running affected .NET versions.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

Дополнительная информация

Статус:

Important
Дефект:
CWE-776
https://bugzilla.redhat.com/show_bug.cgi?id=2457739dotnet: .NET: Security Bypass and Denial of Service Vulnerability

EPSS

Процентиль: 76%
0.01753
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
4 месяца назад

Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.

CVSS3: 7.5
nvd
4 месяца назад

Uncontrolled resource consumption in .NET allows an unauthorized attacker to deny service over a network.

CVSS3: 7.5
msrc
4 месяца назад

.NET Denial of Service Vulnerability

CVSS3: 7.5
github
4 месяца назад

Microsoft Security Advisory CVE-2026-26171 – .NET Denial of Service Vulnerability

CVSS3: 7.5
fstec
4 месяца назад

Уязвимость программной платформы .NET, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 76%
0.01753
Низкий

7.5 High

CVSS3