[ALSA-2024:0151] Important: .NET 7.0 security update
Type:
security
Severity:
important
Release date:
2024-01-11
Description:
.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET SDK 7.0.115 and .NET Runtime 7.0.15. Security Fix(es): * dotnet: Information Disclosure: MD.SqlClient(MDS) & System.data.SQLClient (SDS) (CVE-2024-0056) * dotnet: X509 Certificates - Validation Bypass across Azure (CVE-2024-0057) * dotnet: .NET Denial of Service Vulnerability (CVE-2024-21319) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 dotnet-sdk-7.0-7.0.115-1.el9_3.aarch64.rpm 22d696c09f934ae0226f19cf310a6b7f7568cb039ee9214a10c36b8d3f9e6e3b
aarch64 dotnet-templates-7.0-7.0.115-1.el9_3.aarch64.rpm 277b7411a8b0f2cb17a44c43864f6e348836a9f748d16226b8822a2dc84e3e4e
aarch64 dotnet-apphost-pack-7.0-7.0.15-1.el9_3.aarch64.rpm 2e8aea7a6f504b462873f90771d279558945cb6a2496d6f9ad359a6ab43bfd9c
aarch64 dotnet-targeting-pack-7.0-7.0.15-1.el9_3.aarch64.rpm 4afc58a94911189ec39633ffccb90199efaf77bb07c83bb233bbb935f8cfb727
aarch64 aspnetcore-targeting-pack-7.0-7.0.15-1.el9_3.aarch64.rpm 51748513e724eeda5aa4ff9c0d9ea6a5ed84856538642bca676748b70561cb9d
aarch64 dotnet-runtime-7.0-7.0.15-1.el9_3.aarch64.rpm 8db775866f2a0fdf3246a20a751b6c0d63bf8703a517695f4bb5346efcaa2d18
aarch64 dotnet-hostfxr-7.0-7.0.15-1.el9_3.aarch64.rpm 93495fbf5fe565307f2896273b620ab29545cd9b9de32f00ba274c8ab9963cad
aarch64 aspnetcore-runtime-7.0-7.0.15-1.el9_3.aarch64.rpm ad8d363b4859dbe2ce1e44a033c78163d86214ec3ad37e513ac2447eacf3ff34
aarch64 dotnet-sdk-7.0-source-built-artifacts-7.0.115-1.el9_3.aarch64.rpm e948c247da2c6b2a49cbb8427c4a2316d73707174edfd870c563006f33d62896
ppc64le dotnet-apphost-pack-7.0-7.0.15-1.el9_3.ppc64le.rpm 1f58a3a47c4c0dfff3b334035340f83f9fd6c30312cac46098dc8c791d23e9c7
ppc64le dotnet-sdk-7.0-source-built-artifacts-7.0.115-1.el9_3.ppc64le.rpm 2ce19877bc5ab423c8bce39bec3f1d5345664db4bb29ed3dd21e271c67ed7d79
ppc64le dotnet-targeting-pack-7.0-7.0.15-1.el9_3.ppc64le.rpm 3645efeb30817722bf8f55a14d4db1b042676e8e051e676d9bc63b95aaf1ce0d
ppc64le aspnetcore-targeting-pack-7.0-7.0.15-1.el9_3.ppc64le.rpm 388b61f523fc091de56a25a1495dddf41e92b1f6c61551e2dd92e2ed20e0418a
ppc64le dotnet-sdk-7.0-7.0.115-1.el9_3.ppc64le.rpm 47294b443d627e6651b07866c2acab15b12aa81d8b6f553b4a2fa85f58dea696
ppc64le dotnet-hostfxr-7.0-7.0.15-1.el9_3.ppc64le.rpm 61cb109e5f2ad18993e9856cb5f7cd8f3dd30a05274d00ec78be78ecf7bdf334
ppc64le aspnetcore-runtime-7.0-7.0.15-1.el9_3.ppc64le.rpm 7a5157d8f65c254b8735365257dad21b03378214556993da3e8b363571f88133
ppc64le dotnet-runtime-7.0-7.0.15-1.el9_3.ppc64le.rpm a85b6d1a06cf061a53ac0fc111a3bf29b3ef7fbd1cbcda199964412fdc88f49f
ppc64le dotnet-templates-7.0-7.0.115-1.el9_3.ppc64le.rpm c3c1b48884069f65448510125dfbd190895c3036cc3569321ada6845548c8174
s390x aspnetcore-targeting-pack-7.0-7.0.15-1.el9_3.s390x.rpm 394d0c886d2b33a448fa87c9de47a5d6afe2ba0b359c207cb58f26d7992c4496
s390x dotnet-sdk-7.0-7.0.115-1.el9_3.s390x.rpm 4395acb6a1b29456307fe9c3412cc8e0dfcc0d40056b09196538fad092268d4d
s390x aspnetcore-runtime-7.0-7.0.15-1.el9_3.s390x.rpm 47b33f0e623bae00b5726b7623b015db1309b720a41e1a8802574c3fadfd00ad
s390x dotnet-runtime-7.0-7.0.15-1.el9_3.s390x.rpm 94e9e0e7a4db496a850aa3b941a753b22520c729684934a524edfeeee82c05a0
s390x dotnet-templates-7.0-7.0.115-1.el9_3.s390x.rpm b00a7ad02cd1d6220258bf0785fc97d45fed3597e03244fead69f5e3e5cf751d
s390x dotnet-hostfxr-7.0-7.0.15-1.el9_3.s390x.rpm bfed8275e78015412539680afd4d2f3231f7ce40eefd450c1135e327e7011fb5
s390x dotnet-targeting-pack-7.0-7.0.15-1.el9_3.s390x.rpm cc2ff8b8b978c476b6ad24074fc53824f8ac74c3e26a53118085e9953a48d9e6
s390x dotnet-apphost-pack-7.0-7.0.15-1.el9_3.s390x.rpm e9eef27539a36e95924ae1decbaa477841db1c729afadc8f9baa3ac5a95f32b1
s390x dotnet-sdk-7.0-source-built-artifacts-7.0.115-1.el9_3.s390x.rpm f3f0b5387fa2414c4f7cdc02683c992f3269559beda608f4d88b5eea950b214a
x86_64 dotnet-targeting-pack-7.0-7.0.15-1.el9_3.x86_64.rpm 0e662be0a01d0c54d5a8fd1d178a9aea38dfea6889c2134d35cee2ae525a09c5
x86_64 dotnet-runtime-7.0-7.0.15-1.el9_3.x86_64.rpm 3037631f92737dc4a0df9f1db98e3cd060ac08554337ad3b5ad0730db8446b43
x86_64 dotnet-sdk-7.0-source-built-artifacts-7.0.115-1.el9_3.x86_64.rpm 4eab6b76b0646a222a6deeda382f057b30a87ccb16a6dc1ed9adbd61cc7c61d2
x86_64 aspnetcore-targeting-pack-7.0-7.0.15-1.el9_3.x86_64.rpm 5edbfe8d9a6a62f01bfcbc5a81c2994ab0c94c84be19d76dab91d8b7a157ec7d
x86_64 dotnet-sdk-7.0-7.0.115-1.el9_3.x86_64.rpm 5ff950a130252a65419ec23126cca09481a15451087c5b1e8c580afdd917a1d7
x86_64 dotnet-apphost-pack-7.0-7.0.15-1.el9_3.x86_64.rpm 96e955f6dc792a17aa4a015fbe58e33db20c0b5d9fb37bae9e1089a4c091b856
x86_64 dotnet-templates-7.0-7.0.115-1.el9_3.x86_64.rpm a063b39bb5bcba13aca7b63547c1cfbc607a1842d283b3d896b5b728fe72cf22
x86_64 aspnetcore-runtime-7.0-7.0.15-1.el9_3.x86_64.rpm bac9bbac25103a4a7a2ca8c776bfde14aead2939cef7ec5276def9cff43a082e
x86_64 dotnet-hostfxr-7.0-7.0.15-1.el9_3.x86_64.rpm ee148ad9966dbcdd5afb4a2fd662f838599bb9050eb568bbfa4dadae3ffd0026
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.