Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Rocky Linux 8 RLSA-2023:4645 Important RCE and DoS Security Update

rocky
Calendar Grey October 6, 2023
Rockylinux Esm H88
The recent Rocky Linux 8 update addresses critical vulnerabilities in .NET 6.0, targeting RCE and DoS threats. Update your systems to protect against exploits.

Important: .NET 6.0 security, bug fix, and enhancement update

Summary

An update is available for dotnet6.0. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RPMs

aspnetcore-runtime-6.0-0:6.0.21-1.el8_8.aarch64.rpm

aspnetcore-targeting-pack-6.0-0:6.0.21-1.el8_8.aarch64.rpm

dotnet6.0-0:6.0.121-1.el8_8.src.rpm

dotnet6.0-debuginfo-0:6.0.121-1.el8_8.aarch64.rpm

dotnet6.0-debugsource-0:6.0.121-1.el8_8.aarch64.rpm

dotnet-apphost-pack-6.0-0:6.0.21-1.el8_8.aarch64.rpm

dotnet-apphost-pack-6.0-debuginfo-0:6.0.21-1.el8_8.aarch64.rpm

dotnet-hostfxr-6.0-0:6.0.21-1.el8_8.aarch64.rpm

dotnet-hostfxr-6.0-debuginfo-0:6.0.21-1.el8_8.aarch64.rpm

dotnet-runtime-6.0-0:6.0.21-1.el8_8.aarch64.rpm

dotnet-runtime-6.0-debuginfo-0:6.0.21-1.el8_8.aarch64.rpm

dotnet-sdk-6.0-0:6.0.121-1.el8_8.aarch64.rpm

dotnet-sdk-6.0-debuginfo-0:6.0.121-1.el8_8.aarch64.rpm

dotnet-sdk-6.0-source-built-artifacts-0:6.0.121-1.el8_8.aarch64.rpm

dotnet-targeting-pack-6.0-0:6.0.21-1.el8_8.aarch64.rpm

dotnet-templates-6.0-0:6.0.121-1.el8_8.aarch64.rpm

aspnetcore-runtime-6.0-0:6.0.21-1.el8_8.x86_64.rpm

aspnetcore-targeting-pack-6.0-0:6.0.21-1.el8_8.x86_64.rpm

dotnet6.0-debuginfo-0:6.0.121-1.el8_8.x86_64.rpm

Read the Full Advisory

References

No references

CVES

https://www.cve.org/CVERecord?id=CVE-2023-35390

https://www.cve.org/CVERecord?id=CVE-2023-38180

Severity
important

Name: RLSA-2023:4645
Affected Products: Rocky Linux 8

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=2228621

https://bugzilla.redhat.com/show_bug.cgi?id=2228622


Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here