QID 378661
Date Published: 2023-07-12
QID 378661: Mono Authenticode Validation Spoofing Vulnerability
Mono is a software platform designed to allow developers to easily create cross platform applications. It is an open source implementation of Microsoft's .NET Framework based on the ECMA standards for C# and the Common Language Runtime.
Affected Versions:
Mono versions prior to 6.12.0.200
QID Detection Logic (Authenticated):
Windows: Checks for installed vulnerable version of Mono using registry "HKLM\SOFTWARE\Mono".
Mac: Checks for installed vulnerable version of Mono using command "mono -V".
Successful exploitation of this vulnerability may affect the confidentiality of the targeted user.
Solution
Customers are advised to refer to Mono Security Advisory for updates pertaining to this vulnerability.
Vendor References
- Mono Security Advisory -
msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35373
CVEs related to QID 378661
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Mono Security Advisory |
|