Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 523
Alerts This Week
Warning Icon 1 523

Rocky Linux 9: RLSA-2024:7869 critical: .NET 8.0 remote code execution

rocky
Calendar Grey October 25, 2024
Scroller Rockylinux
Dive into the latest .NET 8.0 security enhancement for Rocky Linux 9, showcasing essential patches addressing remote execution vulnerabilities and denial of service threats.
Important: .NET 8.0 security update

Summary

An update is available for dotnet8.0. This update affects Rocky Linux 9. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RPMs

aspnetcore-runtime-8.0-0:8.0.10-1.el9_4.aarch64.rpm

aspnetcore-runtime-8.0-0:8.0.10-1.el9_4.ppc64le.rpm

aspnetcore-runtime-8.0-0:8.0.10-1.el9_4.s390x.rpm

aspnetcore-runtime-8.0-0:8.0.10-1.el9_4.x86_64.rpm

aspnetcore-runtime-dbg-8.0-0:8.0.10-1.el9_4.aarch64.rpm

aspnetcore-runtime-dbg-8.0-0:8.0.10-1.el9_4.ppc64le.rpm

aspnetcore-runtime-dbg-8.0-0:8.0.10-1.el9_4.s390x.rpm

aspnetcore-runtime-dbg-8.0-0:8.0.10-1.el9_4.x86_64.rpm

aspnetcore-targeting-pack-8.0-0:8.0.10-1.el9_4.aarch64.rpm

aspnetcore-targeting-pack-8.0-0:8.0.10-1.el9_4.ppc64le.rpm

aspnetcore-targeting-pack-8.0-0:8.0.10-1.el9_4.s390x.rpm

aspnetcore-targeting-pack-8.0-0:8.0.10-1.el9_4.x86_64.rpm

dotnet8.0-0:8.0.110-1.el9_4.src.rpm

dotnet-apphost-pack-8.0-0:8.0.10-1.el9_4.aarch64.rpm

dotnet-apphost-pack-8.0-0:8.0.10-1.el9_4.ppc64le.rpm

dotnet-apphost-pack-8.0-0:8.0.10-1.el9_4.s390x.rpm

dotnet-apphost-pack-8.0-0:8.0.10-1.el9_4.x86_64.rpm

dotnet-apphost-pack-8.0-debuginfo-0:8.0.10-1.el9_4.aarch64.rpm

Read the Full Advisory

References

No references

CVES

https://www.cve.org/CVERecord?id=CVE-2024-38229

https://www.cve.org/CVERecord?id=CVE-2024-43483

https://www.cve.org/CVERecord?id=CVE-2024-43484

https://www.cve.org/CVERecord?id=CVE-2024-43485

Severity
important
Lowest
Low
Medium
High
Critical

Name: RLSA-2024:7869
Affected Products: Rocky Linux 9

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=2315729

https://bugzilla.redhat.com/show_bug.cgi?id=2315730

https://bugzilla.redhat.com/show_bug.cgi?id=2315731

https://bugzilla.redhat.com/show_bug.cgi?id=2316161


Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.