Описание
No description is available for this CVE.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | dotnet10.0 | Affected | ||
| Red Hat Enterprise Linux 10 | dotnet8.0 | Affected | ||
| Red Hat Enterprise Linux 10 | dotnet9.0 | Affected | ||
| Red Hat Enterprise Linux 8 | dotnet10.0 | Affected | ||
| Red Hat Enterprise Linux 8 | dotnet8.0 | Affected | ||
| Red Hat Enterprise Linux 8 | dotnet9.0 | Affected | ||
| Red Hat Enterprise Linux 9 | dotnet10.0 | Affected | ||
| Red Hat Enterprise Linux 9 | dotnet8.0 | Affected | ||
| Red Hat Enterprise Linux 9 | dotnet9.0 | Affected | ||
| Red Hat Hardened Images | dotnet10.0 | Fix deferred |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-444
https://bugzilla.redhat.com/show_bug.cgi?id=2512175.NET: .NET Core: System.Net.HttpListener incorrectly parses Content-Length header
EPSS
Процентиль: 51%
0.00721
Низкий
5.9 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.9
nvd
2 дня назад
Inconsistent interpretation of http requests ('http request/response smuggling') in .NET allows an unauthorized attacker to bypass a security feature over a network.
CVSS3: 5.9
github
2 дня назад
Microsoft Security Advisory CVE-2026-62899 – .NET Security Feature Bypass Vulnerability
EPSS
Процентиль: 51%
0.00721
Низкий
5.9 Medium
CVSS3