[ALSA-2024:4439] Moderate: dotnet6.0 security update
Type:
security
Severity:
moderate
Release date:
2024-07-10
Description:
.NET is a managed-software framework. It implements a subset of the .NET framework APIs and several new APIs, and it includes a CLR implementation. New versions of .NET that address a security vulnerability are now available. The updated versions are .NET 6.0 to SDK 6.0.132 and Runtime 6.0.32. Security Fix(es): * dotnet: DoS when parsing X.509 Content and ObjectIdentifiers (CVE-2024-38095) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 dotnet-apphost-pack-6.0-6.0.32-1.el9_4.aarch64.rpm 2ec58e5bdde09a17be22e96003998dcce98b59f9f251d3a16ddf467be00b45c1
aarch64 dotnet-hostfxr-6.0-6.0.32-1.el9_4.aarch64.rpm 43c667ec333c77c80fb2d23741635315a4c2eaac59844005ea43ab0ffd1b0274
aarch64 aspnetcore-runtime-6.0-6.0.32-1.el9_4.aarch64.rpm 5690750837248f9bd19f87b429d798e9abdecd7f4f00da2d9d215d2374be52b6
aarch64 aspnetcore-targeting-pack-6.0-6.0.32-1.el9_4.aarch64.rpm 79890048b7cde90d77f8ba44239818745bb448222004001fb00a4b5fbe5ee8f5
aarch64 dotnet-sdk-6.0-6.0.132-1.el9_4.aarch64.rpm 85af52774563abd084fa3b1278c7620b51db91964dd48671346d4dbf417e6056
aarch64 dotnet-targeting-pack-6.0-6.0.32-1.el9_4.aarch64.rpm 9d268ef7f624400208811bc47b97e2b419127ce43a88b9dd4a82f5329cbf8e15
aarch64 dotnet-templates-6.0-6.0.132-1.el9_4.aarch64.rpm 9fbe41c10e2b4deb786098011dc76aca48e7ab494ce0081272a254f3fff0a37f
aarch64 dotnet-runtime-6.0-6.0.32-1.el9_4.aarch64.rpm d896f3d05c2aa7f66017a74e063edd975fb71ec9ef1c735329224e37287903bf
aarch64 dotnet-sdk-6.0-source-built-artifacts-6.0.132-1.el9_4.aarch64.rpm ecd29d2737176eb09397b679d960da29f5c502b90fa4f37406d3fe243552c383
s390x dotnet-templates-6.0-6.0.132-1.el9_4.s390x.rpm 04490739ab79ed744ab365ebcc74b1ce8519b2d34ee84e30e2267ef0be8c0e85
s390x aspnetcore-targeting-pack-6.0-6.0.32-1.el9_4.s390x.rpm 068faf142cb4cb4b3cba93daa1bea2ec45d6bffdfa7c5f3420afc449d257eb95
s390x dotnet-targeting-pack-6.0-6.0.32-1.el9_4.s390x.rpm 431a8cca9547eda5ae10e37b9427e71cbb05d24122c99c10533b525617e118a3
s390x dotnet-sdk-6.0-source-built-artifacts-6.0.132-1.el9_4.s390x.rpm 52a017aec3bb4912af0dddcefc40a6d531d7839483f578c132ce19950ebb0909
s390x dotnet-apphost-pack-6.0-6.0.32-1.el9_4.s390x.rpm 65101c75788e672645e75919403ea52b320d7c90698b9c76bcfc574c9c3bbeb9
s390x dotnet-sdk-6.0-6.0.132-1.el9_4.s390x.rpm 6a79d23433815d1d630cc03c8cb343ba25f6d7af979aefcf55b106d619c0616a
s390x aspnetcore-runtime-6.0-6.0.32-1.el9_4.s390x.rpm 8b4b722607c1370da42ae58befbedf72fe71d55e5d563d23f62294ed52ba7ace
s390x dotnet-hostfxr-6.0-6.0.32-1.el9_4.s390x.rpm b08f909309da0f6fe96ab9727c9cc37218d3234aa99adf1a4d815eed84667cd6
s390x dotnet-runtime-6.0-6.0.32-1.el9_4.s390x.rpm de73e80b1664e869e151d21efbf510df9741155fc9cfcccd12c70207377b57c7
x86_64 aspnetcore-targeting-pack-6.0-6.0.32-1.el9_4.x86_64.rpm 0870b88bdba17a8adf2cc1a7f38dfc33b6b6f312e22271b85ad59af8de59450a
x86_64 dotnet-apphost-pack-6.0-6.0.32-1.el9_4.x86_64.rpm 09ad2fb641068e54f17ddb3abfff7efbbb947ffab0538bd151b4d5568e353149
x86_64 dotnet-runtime-6.0-6.0.32-1.el9_4.x86_64.rpm 0a39920ddc73cd0479792d98cca21e3b2e83677b5e15c3acb0d49409109264d7
x86_64 dotnet-hostfxr-6.0-6.0.32-1.el9_4.x86_64.rpm 37fa78e164d2dedf84624eacc79423b074a961c72068d8791ea74998306c78d9
x86_64 dotnet-templates-6.0-6.0.132-1.el9_4.x86_64.rpm 5c41d5ebe0bd69dcbcf23595466d83d8de20dcf9bbfe1210ae61ff926994076d
x86_64 dotnet-sdk-6.0-source-built-artifacts-6.0.132-1.el9_4.x86_64.rpm 6e54639f0d01554b3454c3535362846ccf4404aac19c5c46d912458369dc046f
x86_64 dotnet-targeting-pack-6.0-6.0.32-1.el9_4.x86_64.rpm 6f387e9270c514e4f72db7c5a5cdc4fc53aa7060b18cbb08e19ab7a12780ab89
x86_64 aspnetcore-runtime-6.0-6.0.32-1.el9_4.x86_64.rpm 8f8f22f9026127bdd0aa0b24732e947512f91a369be1a5c44c2374dc4b777a04
x86_64 dotnet-sdk-6.0-6.0.132-1.el9_4.x86_64.rpm ed2cc2617337790f9b2bd6725fe83f76a5f2007f79e0ca65fbf3a2d0e45f9423
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.