[ALSA-2022:7826] Moderate: dotnet7.0 security, bug fix, and enhancement update
Type:
security
Severity:
moderate
Release date:
2022-11-11
Description:
.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 7.0.100 RC 2 and .NET Runtime 7.0.0 RC 2. The following packages have been upgraded to a later upstream version: dotnet7.0 (7.0.100). (BZ#2134642). Security Fix(es): * dotnet: Nuget cache poisoning on Linux via world-writable cache directory (CVE-2022-41032) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 dotnet-sdk-7.0-source-built-artifacts-7.0.100-0.4.rc2.el8_7.aarch64.rpm 0ac7b93de7f691cf96b02d9ae340e0a53b1ba7e1d07e7499ce9349dcc3de8c37
aarch64 dotnet-targeting-pack-7.0-7.0.0-0.4.rc2.el8_7.aarch64.rpm 1bff35ea439b1ddf9446a222d0eac06fb2156cad5749a5058e8b4a9fc3e6fb86
aarch64 dotnet-sdk-7.0-7.0.100-0.4.rc2.el8_7.aarch64.rpm 30c7f8faba0a4c422acc66d76fc2e07cd25a36164255d2777606bdd2c67bccd8
aarch64 aspnetcore-targeting-pack-7.0-7.0.0-0.4.rc2.el8_7.aarch64.rpm 4b761d78b81a12e92dd7280757f2e81bf6cbe2272ec5eae2a58fbb95bb0fddef
aarch64 dotnet-runtime-7.0-7.0.0-0.4.rc2.el8_7.aarch64.rpm 4e0fa9f4e319f0a3ecfe8c52586da68d024165db6dccddb26aeedfcfea77782a
aarch64 dotnet-host-7.0.0-0.4.rc2.el8_7.aarch64.rpm 5592f37c8b6081fe56404c2d015ada163a10bced8e993572d46fa507e28847b6
aarch64 dotnet-apphost-pack-7.0-7.0.0-0.4.rc2.el8_7.aarch64.rpm 72fb3a04a784abe39e3facc6421be1922f705ad7e1c1e4941e2c12298e723ba8
aarch64 dotnet-templates-7.0-7.0.100-0.4.rc2.el8_7.aarch64.rpm 75bb4ed6524d9778f1402dea1bc7e21fdf25bcd9b7851f622dfa5b3762bdee40
aarch64 dotnet-7.0.100-0.4.rc2.el8_7.aarch64.rpm 9900ef973d9eaa97793c4ff8d45065f6074cf1d6687704f507eaa84afc1d94a0
aarch64 dotnet-hostfxr-7.0-7.0.0-0.4.rc2.el8_7.aarch64.rpm bb9aa429bd6a77f020542e6a299975674a8bcaf137522b56160610eb473a8126
aarch64 aspnetcore-runtime-7.0-7.0.0-0.4.rc2.el8_7.aarch64.rpm bc71f3ed3c526850d9d17d2e99f618199946b34864cc215532fb3a4433eaa0f2
aarch64 netstandard-targeting-pack-2.1-7.0.100-0.4.rc2.el8_7.aarch64.rpm c05246ac3f9a03a7f2fba85f089bc3cef60f4efaa8b8f71a549649f26ddb7a9c
ppc64le dotnet-sdk-7.0-source-built-artifacts-7.0.100-0.4.rc2.el8_7.ppc64le.rpm 13637f760f614213e814fc67d1681272dcfd7d9a644b3da8d296e0eb7d7d7cf3
ppc64le netstandard-targeting-pack-2.1-7.0.100-0.4.rc2.el8_7.ppc64le.rpm 1e763cdb88e204485d0eb3c936e44e95feb332c1e4fd64323656d6c34c92df77
ppc64le dotnet-hostfxr-7.0-7.0.0-0.4.rc2.el8_7.ppc64le.rpm 266ba8ba3c029d35056818fead8e5fa2f86b62d96cdd5e4dc1dcf3288c962ee8
ppc64le aspnetcore-runtime-7.0-7.0.0-0.4.rc2.el8_7.ppc64le.rpm 3fbc043a5b8d6f805d8cc3ce19ddd2ea578c39943f6cc2de1de84c854229f313
ppc64le dotnet-targeting-pack-7.0-7.0.0-0.4.rc2.el8_7.ppc64le.rpm 4e7498efcbde8ae18c57167b9ce7d9517937923088617d8c8102d0a31e3c8371
ppc64le dotnet-templates-7.0-7.0.100-0.4.rc2.el8_7.ppc64le.rpm 7dce6d47e4de610b858a45a0eb4eea292bb8e6eebbf1b4aad0e2ad41ed6e7940
ppc64le dotnet-apphost-pack-7.0-7.0.0-0.4.rc2.el8_7.ppc64le.rpm a3275991d3e3a501af316b1b93289271253609ada83aed99949337d4ce3cbe6a
ppc64le dotnet-sdk-7.0-7.0.100-0.4.rc2.el8_7.ppc64le.rpm a4ba4f935bcf73f52bcfe72b44d29bc624d0140f6fc3ad65eef68eefd2735586
ppc64le dotnet-host-7.0.0-0.4.rc2.el8_7.ppc64le.rpm b5731bae784e9f6887b623bfa80c2c65ad9429d46c5ae6be1b6cb99aa3d23c9a
ppc64le dotnet-7.0.100-0.4.rc2.el8_7.ppc64le.rpm c3f94dd57d93d62242784b758dbed24dea9da79e2e789ef4cd499260d64dbf9c
ppc64le dotnet-runtime-7.0-7.0.0-0.4.rc2.el8_7.ppc64le.rpm d3d18aab96f6b6ac677b883fbc8b8dd47699ad5aa761244af783dc586d66efa1
ppc64le aspnetcore-targeting-pack-7.0-7.0.0-0.4.rc2.el8_7.ppc64le.rpm f20a3df4dcff81b1e5d4e209660f653da8f2c07fba33186f49b0bbae8f59e435
s390x aspnetcore-targeting-pack-7.0-7.0.0-0.4.rc2.el8_7.s390x.rpm 03852356b03bc62b826cdefe62375f377f246fa2a66f53544bd0f86718c68c00
s390x dotnet-apphost-pack-7.0-7.0.0-0.4.rc2.el8_7.s390x.rpm 05717fee224ec49aafd0eb5f7b85e872a28f1b45a485009dfa4f06f0b68ef824
s390x dotnet-sdk-7.0-7.0.100-0.4.rc2.el8_7.s390x.rpm 067cb7e2df52ec85f84d1ef22e2913984a7d80587f922fb27cdf3e8623510fef
s390x aspnetcore-runtime-7.0-7.0.0-0.4.rc2.el8_7.s390x.rpm 0c1417ba2748ae5251694ab791082b6aaa2493e9c6cb78ac7b00e2fa7a168bae
s390x dotnet-sdk-7.0-source-built-artifacts-7.0.100-0.4.rc2.el8_7.s390x.rpm 34fee4b62c30b9c03c3ff0149225a19f5cde8662affcc9310127e4e434016352
s390x dotnet-host-7.0.0-0.4.rc2.el8_7.s390x.rpm 3ff548a6597cb0ad2a7f5e2bfc57818d65cb73c2cf453bf51d367be064c01682
s390x dotnet-hostfxr-7.0-7.0.0-0.4.rc2.el8_7.s390x.rpm 55d8de3d507e50fa058ecdc7e52966e91876a6bc2e7f83821bdbf130d60ac645
s390x dotnet-templates-7.0-7.0.100-0.4.rc2.el8_7.s390x.rpm 75991f1f675cfa8eb621d5ea971122be3167759749ce0619bba382d6e1b230b2
s390x dotnet-targeting-pack-7.0-7.0.0-0.4.rc2.el8_7.s390x.rpm 87fccc52257b7682fcfd08c2848f22fecc20386caf192119cecbe69088cca5e3
s390x dotnet-runtime-7.0-7.0.0-0.4.rc2.el8_7.s390x.rpm b4925175f3b9ee6aa2fe4a4bcc6d96d368ab9cd5b774044a00ab883c721a4b9d
s390x dotnet-7.0.100-0.4.rc2.el8_7.s390x.rpm b942267104b7874d4e947816cbd4da5ed320438511a921e70a2bc24beeb36ea9
s390x netstandard-targeting-pack-2.1-7.0.100-0.4.rc2.el8_7.s390x.rpm f5d1cb9fc6aa45b3389e108c8798a2dce69dce815480e3a7dfd1145aee5d7d62
x86_64 netstandard-targeting-pack-2.1-7.0.100-0.4.rc2.el8_7.x86_64.rpm 02c7771f84b3adb1635ed2c8b72fb0335186b7242e46e3e8683b1a0643b5ca0a
x86_64 dotnet-sdk-7.0-source-built-artifacts-7.0.100-0.4.rc2.el8_7.x86_64.rpm 17ec3d2018f12d9eadc82da16904994d90bf5af9a165988d9f6f921a63995d68
x86_64 dotnet-templates-7.0-7.0.100-0.4.rc2.el8_7.x86_64.rpm 4c41218a4b84bddf4b182c8123731704aec682068c20802fe4e2a84547302a92
x86_64 dotnet-host-7.0.0-0.4.rc2.el8_7.x86_64.rpm 547fbaa5f8e37ee26fc1a8771916a823411564a7c8f433e74f29c18560f3aa2e
x86_64 dotnet-apphost-pack-7.0-7.0.0-0.4.rc2.el8_7.x86_64.rpm 665e69241dd754dbce5f91639fdf712ccad4e3118febe59851803ad0f52ae515
x86_64 dotnet-runtime-7.0-7.0.0-0.4.rc2.el8_7.x86_64.rpm 68c6958b91ef5a921549db0c31f161ff27503991e76823da1bc2b7c1b638363f
x86_64 aspnetcore-runtime-7.0-7.0.0-0.4.rc2.el8_7.x86_64.rpm 7a78fe55cc8d8c55ea1cc4cf953534ddc07de50897e07fccf4d35377816f10db
x86_64 dotnet-targeting-pack-7.0-7.0.0-0.4.rc2.el8_7.x86_64.rpm 7ec3b274f3278e3a9cfd372719837ff76c801ea266f68af1165d91999b674e28
x86_64 dotnet-sdk-7.0-7.0.100-0.4.rc2.el8_7.x86_64.rpm 9850ed5981ae7b37bff847fb4f7965f9b0833fd171eaa1ffd9e85de370d9dc70
x86_64 dotnet-7.0.100-0.4.rc2.el8_7.x86_64.rpm aac3e4bd1dc44a7a5f195eac747b8dc5d027696826d514b8f99ce2224eaa564c
x86_64 dotnet-hostfxr-7.0-7.0.0-0.4.rc2.el8_7.x86_64.rpm e2b193f271e1dc3b79371e991ab62ba0a56f182891c69d85c273d06789852031
x86_64 aspnetcore-targeting-pack-7.0-7.0.0-0.4.rc2.el8_7.x86_64.rpm f79c1e7e63f1516ac4e0b00be40ee7e3d3d4a910db2e92917eb2d9367ed12a89
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.