Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-50651

Опубликовано: 14 июл. 2026
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

.NET Denial of Service Vulnerability - HTTP/2 SETTINGS/PING ACK flood causing OOM

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Hardened Imageshi/dotnet-runtimeNot affected
Red Hat Hardened Imageshi/dotnet-sdkNot affected
Red Hat Enterprise Linux 10dotnet8.0FixedRHSA-2026:4189320.07.2026
Red Hat Enterprise Linux 10dotnet9.0FixedRHSA-2026:4189520.07.2026
Red Hat Enterprise Linux 10dotnet10.0FixedRHSA-2026:4189720.07.2026
Red Hat Enterprise Linux 10.0 Extended Update Supportdotnet8.0FixedRHSA-2026:5856624.08.2026
Red Hat Enterprise Linux 10.0 Extended Update Supportdotnet9.0FixedRHSA-2026:5856724.08.2026
Red Hat Enterprise Linux 8dotnet9.0FixedRHSA-2026:4189920.07.2026
Red Hat Enterprise Linux 8dotnet10.0FixedRHSA-2026:4190020.07.2026
Red Hat Enterprise Linux 8dotnet8.0FixedRHSA-2026:4190120.07.2026

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-770
https://bugzilla.redhat.com/show_bug.cgi?id=2499217dotnet: SocketsHttpHandler Http2Connection - HTTP/2 SETTINGS/PING ACK flood causing OOM

EPSS

Процентиль: 56%
0.0084
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
2 месяца назад

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

CVSS3: 7.5
nvd
2 месяца назад

Allocation of resources without limits or throttling in .NET allows an unauthorized attacker to deny service over a network.

CVSS3: 7.5
msrc
2 месяца назад

.NET Denial of Service Vulnerability

CVSS3: 7.5
redos
около 2 месяцев назад

Уязвимость dotnet10.0

CVSS3: 7.5
github
около 2 месяцев назад

Microsoft Security Advisory CVE-2026-50651 – .NET Denial of Service Vulnerability

EPSS

Процентиль: 56%
0.0084
Низкий

7.5 High

CVSS3