Описание
Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | released | 10.0.109-10.0.9-0ubuntu1 |
| focal | DNE | |
| jammy | DNE | |
| noble | released | 10.0.109-10.0.9-0ubuntu1~24.04.1 |
| questing | released | 10.0.109-10.0.9-0ubuntu1~25.10.1 |
| resolute | released | 10.0.109-10.0.9-0ubuntu1~26.04.1 |
| trusty | DNE | |
| upstream | needs-triage | |
| xenial | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | DNE | |
| focal | DNE | |
| jammy | deferred | |
| noble | DNE | |
| questing | DNE | |
| resolute | DNE | |
| trusty | DNE | |
| upstream | needs-triage | |
| xenial | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | DNE | |
| focal | DNE | |
| jammy | ignored | see notes |
| noble | DNE | |
| questing | DNE | |
| resolute | DNE | |
| trusty | DNE | |
| upstream | needs-triage | |
| xenial | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | DNE | |
| focal | DNE | |
| jammy | released | 8.0.128-8.0.28-0ubuntu1~22.04.1 |
| noble | released | 8.0.128-8.0.28-0ubuntu1~24.04.1 |
| questing | released | 8.0.128-8.0.28-0ubuntu1~25.10.1 |
| resolute | DNE | |
| trusty | DNE | |
| upstream | needs-triage | |
| xenial | DNE |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | DNE | |
| focal | DNE | |
| jammy | DNE | |
| noble | DNE | |
| questing | released | 9.0.118-9.0.17-0ubuntu1~25.10.1 |
| resolute | DNE | |
| trusty | DNE | |
| upstream | needs-triage | |
| xenial | DNE |
Показывать по
Ссылки на источники
EPSS
6.2 Medium
CVSS3
Связанные уязвимости
Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.
Improper link resolution before file access ('link following') in .NET allows an unauthorized attacker to perform tampering locally.
Microsoft Security Advisory CVE-2026-45491 – .NET Tampering Vulnerability
Уязвимость метода TarFile.ExtractToDirectory программной платформы .NET, позволяющая нарушителю получить доступ на чтение и изменение данных
EPSS
6.2 Medium
CVSS3