[ALSA-2024:0158] Important: .NET 6.0 security update
Type:
security
Severity:
important
Release date:
2024-01-11
Description:
.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 6.0.126 and .NET Runtime 6.0.26. Security Fix(es): * dotnet: Information Disclosure: MD.SqlClient(MDS) & System.data.SQLClient (SDS) (CVE-2024-0056) * dotnet: X509 Certificates - Validation Bypass across Azure (CVE-2024-0057) * dotnet: .NET Denial of Service Vulnerability (CVE-2024-21319) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 dotnet-sdk-6.0-6.0.126-1.el8_9.aarch64.rpm 5da80e59872607f8c8df06a2f2ec4b758f6e6f3dade5cc9e0993b4ea2b7c9939
aarch64 aspnetcore-runtime-6.0-6.0.26-1.el8_9.aarch64.rpm 836804b3fbb8abc951f06195ed0d428e1946e4e77929cb6832696a3328392da2
aarch64 dotnet-templates-6.0-6.0.126-1.el8_9.aarch64.rpm a7ba780318d7bca70a67d781662dbec517aeac5ab4efa2d891a2ef3317142b83
aarch64 dotnet-sdk-6.0-source-built-artifacts-6.0.126-1.el8_9.aarch64.rpm adfe166e5bf71ff2648c8a4102a6c55e33dee7be741025a7ad1cb779978ff309
aarch64 aspnetcore-targeting-pack-6.0-6.0.26-1.el8_9.aarch64.rpm cc4de0bde5b57af83164aa8621bf979ae4d11d411b4ab320d447a4f26c64b886
aarch64 dotnet-hostfxr-6.0-6.0.26-1.el8_9.aarch64.rpm d70d6f1f8956968658d49c921e1b26bd23d2a6c38a0ec960fd2b227365ae9664
aarch64 dotnet-targeting-pack-6.0-6.0.26-1.el8_9.aarch64.rpm dd8337477a13117c68f3a749239fcf994743090479ef1e5afc7cdac7bd07d319
aarch64 dotnet-runtime-6.0-6.0.26-1.el8_9.aarch64.rpm e129acc19329adbc2eff2431752b59bbadeb618d1c02c039672224b974507a01
aarch64 dotnet-apphost-pack-6.0-6.0.26-1.el8_9.aarch64.rpm e8fb6d565f81e888775699e6cfc6577ae0e9630984a9993e9c8521264eb5bc4f
s390x dotnet-targeting-pack-6.0-6.0.26-1.el8_9.s390x.rpm 1b862a6da728c2c3eb5081e7a31b184ce8545378a7d5af7485958e9e5c891ebe
s390x dotnet-hostfxr-6.0-6.0.26-1.el8_9.s390x.rpm 22ed3f122ec06550558adcc5040232c89168c6d6193a23ada454ebb837a71edb
s390x dotnet-sdk-6.0-6.0.126-1.el8_9.s390x.rpm 23c76a6d1e069d30f915394e7571de1c12bcfeb53ad6852f0040a3f639a12a77
s390x aspnetcore-targeting-pack-6.0-6.0.26-1.el8_9.s390x.rpm 28bdf531ad0135f3f66d9710397be7f47bb15324e531f0b4f3d7228dd73f0b6d
s390x dotnet-templates-6.0-6.0.126-1.el8_9.s390x.rpm 75d7aad9290874144b96760d5daad9f59d320f016929f9a6e4aebc7f65b975c4
s390x dotnet-sdk-6.0-source-built-artifacts-6.0.126-1.el8_9.s390x.rpm 83c9a5cbfd3f1a69b7235c59133adc6059f487e4a902df3c9b5dd5aeac71fa0b
s390x aspnetcore-runtime-6.0-6.0.26-1.el8_9.s390x.rpm 8f52a946273f0bc8a25a9057b3003e8907530bd959e2c5e62cf94bb137cae0d2
s390x dotnet-apphost-pack-6.0-6.0.26-1.el8_9.s390x.rpm 8f81e049f64f9d896dfaef7e3d641eed4f167a2c0bafef5c71a5043a3434ae11
s390x dotnet-runtime-6.0-6.0.26-1.el8_9.s390x.rpm fbf0de997391219bda96fe80c3c82227e64111b097c19b1f9474ea11bd1c910a
x86_64 aspnetcore-runtime-6.0-6.0.26-1.el8_9.x86_64.rpm 028e6bf7d43dc9d8f5e09e588f3100f6a73b6fba6328412ebf278f32a98b0f3a
x86_64 dotnet-runtime-6.0-6.0.26-1.el8_9.x86_64.rpm 1512efade60edfceffba67a7cb4252cd6c2fb7d36e9747627672d9e559f758dd
x86_64 dotnet-templates-6.0-6.0.126-1.el8_9.x86_64.rpm 303a6d72fb832af00c669422f4495e239a7c3f16ad418204bc5b27d3d9a41810
x86_64 aspnetcore-targeting-pack-6.0-6.0.26-1.el8_9.x86_64.rpm 4796a6865da5eeda42519404d3de5a1bffaa5fc594e6f83214e21e4e15a37280
x86_64 dotnet-hostfxr-6.0-6.0.26-1.el8_9.x86_64.rpm 4db4defc8b784012968b8f3131fd82f87911330602644e6b2eed66268173cf41
x86_64 dotnet-sdk-6.0-6.0.126-1.el8_9.x86_64.rpm 502a9bde62224c0bb9ea361c4122e5a28eca58e64fff79cd0cdd3eed13046a36
x86_64 dotnet-sdk-6.0-source-built-artifacts-6.0.126-1.el8_9.x86_64.rpm 71e85a444f39be92fab7b417a1f721bfff211045981da4faad8f39753797843d
x86_64 dotnet-targeting-pack-6.0-6.0.26-1.el8_9.x86_64.rpm 8bfa60b0e99dec302b9918e1e62233ffc567b46a375549d93bb646978adc96a3
x86_64 dotnet-apphost-pack-6.0-6.0.26-1.el8_9.x86_64.rpm 9834010c42af9a97109ddd6efb95f2451c9c46a3ca0e66b30a4e7f8b780939ef
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.