Описание
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to elevate privileges locally.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | released | 10.0.100-10.0.0~rc2-0ubuntu1 |
| focal | DNE | |
| jammy | DNE | |
| noble | needs-triage | |
| plucky | ignored | end of life, was needs-triage |
| questing | released | 10.0.100-10.0.0~rc2-0ubuntu1~25.10.2 |
| trusty | DNE | |
| upstream | needs-triage | |
| xenial | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | DNE | |
| focal | DNE | |
| jammy | deferred | |
| noble | DNE | |
| plucky | DNE | |
| questing | DNE | |
| trusty | DNE | |
| upstream | needs-triage | |
| xenial | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | DNE | |
| focal | DNE | |
| jammy | ignored | see notes |
| noble | DNE | |
| plucky | DNE | |
| questing | DNE | |
| trusty | DNE | |
| upstream | needs-triage | |
| xenial | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | DNE | |
| focal | DNE | |
| jammy | released | 8.0.121-8.0.21-0ubuntu1~22.04.1 |
| noble | released | 8.0.121-8.0.21-0ubuntu1~24.04.1 |
| plucky | released | 8.0.121-8.0.21-0ubuntu1~25.04.1 |
| questing | released | 8.0.121-8.0.21-0ubuntu1~25.10.1 |
| trusty | DNE | |
| upstream | needs-triage | |
| xenial | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | DNE | |
| focal | DNE | |
| jammy | DNE | |
| noble | DNE | |
| plucky | released | 9.0.111-9.0.10-0ubuntu1~25.04.1 |
| questing | released | 9.0.111-9.0.10-0ubuntu1~25.10.1 |
| trusty | DNE | |
| upstream | needs-triage | |
| xenial | DNE |
Показывать по
EPSS
7.3 High
CVSS3
Связанные уязвимости
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to elevate privileges locally.
Improper link resolution before file access ('link following') in .NET allows an authorized attacker to elevate privileges locally.
Microsoft Security Advisory CVE-2025-55247 | .NET Denial of Service Vulnerability
Уязвимость программной платформы .NET, связанная с некорректным определением символических ссылок в ходе осуществления доступа к файлу, позволяющая нарушителю повысить свои привилегии
EPSS
7.3 High
CVSS3