QID 91766
Date Published: 2021-05-12
QID 91766: Microsoft .NET Core Security Update May 2021
A denial of service vulnerability exists when .NET Core improperly handles web requests.
This security update is rated Important for supported versions of .NET Core.
Affected versions:
.NET 5.0 and .NET Core 3.1
QID Detection Logic (Authenticated):
The qid looks for sub directories under %programfiles%\dotnet\shared\Microsoft.NETCore.App, %programfiles(x86)%\dotnet\shared\Microsoft.NETCore.App and checks for vulnerable versions in .version file on Windows.
Successful exploitation of this vulnerability can lead to escalation of priviledges.
Solution
Customers are advised to refer to CVE-2021-31204 for more details pertaining to this vulnerability.
Vendor References
- CVE-2021-31204 -
msrc.microsoft.com/update-guide/vulnerability/CVE-2021-31204
CVEs related to QID 91766
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2021-31204 | WIndows |
|