QID 92112
Date Published: 2024-02-14
QID 92112: Microsoft .NET Core and ASP.NET Core Security Update for February 2024
Microsoft has released February 2024 security updates for .NET Core and ASP.NET Core to fix multiple security vulnerabilities.
Affected versions:
ASP.NET Core and .NET Core 8.0 before version 8.0.2
ASP.NET Core and .NET Core 7.0 before version 7.0.16
ASP.NET Core and .NET Core 6.0 before version 6.0.27
QID Detection Logic: Authenticated
On Windows, this QID detects vulnerable versions of Microsoft .NET by checking the file version.
On Linux, this QID detects vulnerable versions of Microsoft .NET by checking the .NET version present in "/usr/share/dotnet/shared/Microsoft.NETCore.App/" and "/root/shared/Microsoft.NETCore.App" folders.
On Mac, this QID detects vulnerable versions of Microsoft .NET by checking the .NET version present in "/usr/share/dotnet/shared/Microsoft.NETCore.App/" folder.
Vulnerable versions of Microsoft .NET Core and ASP.NET Core are prone to Denial of Service vulnerability.
- CVE-2024-21386 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2024-21386 - CVE-2024-21404 -
msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2024-21404
CVEs related to QID 92112
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2024-21386 |
|
||
| CVE-2024-21404 |
|