Vulnerability Database
Blog
FAQ
Docs
RHSA-2023:4449
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2023:4449
Import Source
https://security.access.redhat.com/data/osv/RHSA-2023:4449.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2023:4449
Related
CVE-2023-29331
CVE-2023-29337
CVE-2023-33128
CVE-2023-33170
Published
2024-09-16T12:27:13Z
Modified
2024-11-22T23:50:52Z
Severity
8.1 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: .NET 6.0 security update
Details
References
https://access.redhat.com/errata/RHSA-2023:4449
https://access.redhat.com/security/updates/classification/#important
https://bugzilla.redhat.com/show_bug.cgi?id=2212617
https://bugzilla.redhat.com/show_bug.cgi?id=2212618
https://bugzilla.redhat.com/show_bug.cgi?id=2213703
https://bugzilla.redhat.com/show_bug.cgi?id=2221854
https://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_4449.json
https://access.redhat.com/security/cve/CVE-2023-29331
https://www.cve.org/CVERecord?id=CVE-2023-29331
https://nvd.nist.gov/vuln/detail/CVE-2023-29331
https://github.com/dotnet/core/blob/c73158b8ef08db362585f9ed16b97c1d1372c666/release-notes/6.0/6.0.18/6.0.18.md
https://github.com/dotnet/core/blob/c73158b8ef08db362585f9ed16b97c1d1372c666/release-notes/7.0/7.0.7/7.0.7.md
https://access.redhat.com/security/cve/CVE-2023-29337
https://www.cve.org/CVERecord?id=CVE-2023-29337
https://nvd.nist.gov/vuln/detail/CVE-2023-29337
https://access.redhat.com/security/cve/CVE-2023-33128
https://www.cve.org/CVERecord?id=CVE-2023-33128
https://nvd.nist.gov/vuln/detail/CVE-2023-33128
https://access.redhat.com/security/cve/CVE-2023-33170
https://www.cve.org/CVERecord?id=CVE-2023-33170
https://nvd.nist.gov/vuln/detail/CVE-2023-33170
https://devblogs.microsoft.com/dotnet/july-2023-updates/
https://github.com/advisories/GHSA-25c8-p796-jg6r
https://github.com/dotnet/announcements/issues/264
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-33170
Affected packages
Red Hat:rhel_eus:9.0::appstream
/
aspnetcore-runtime-6.0
Package
Name
aspnetcore-runtime-6.0
Purl
pkg:rpm/redhat/aspnetcore-runtime-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
aspnetcore-targeting-pack-6.0
Package
Name
aspnetcore-targeting-pack-6.0
Purl
pkg:rpm/redhat/aspnetcore-targeting-pack-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-apphost-pack-6.0
Package
Name
dotnet-apphost-pack-6.0
Purl
pkg:rpm/redhat/dotnet-apphost-pack-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-apphost-pack-6.0-debuginfo
Package
Name
dotnet-apphost-pack-6.0-debuginfo
Purl
pkg:rpm/redhat/dotnet-apphost-pack-6.0-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-host
Package
Name
dotnet-host
Purl
pkg:rpm/redhat/dotnet-host
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-host-debuginfo
Package
Name
dotnet-host-debuginfo
Purl
pkg:rpm/redhat/dotnet-host-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-hostfxr-6.0
Package
Name
dotnet-hostfxr-6.0
Purl
pkg:rpm/redhat/dotnet-hostfxr-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-hostfxr-6.0-debuginfo
Package
Name
dotnet-hostfxr-6.0-debuginfo
Purl
pkg:rpm/redhat/dotnet-hostfxr-6.0-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-runtime-6.0
Package
Name
dotnet-runtime-6.0
Purl
pkg:rpm/redhat/dotnet-runtime-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-runtime-6.0-debuginfo
Package
Name
dotnet-runtime-6.0-debuginfo
Purl
pkg:rpm/redhat/dotnet-runtime-6.0-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-sdk-6.0
Package
Name
dotnet-sdk-6.0
Purl
pkg:rpm/redhat/dotnet-sdk-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-sdk-6.0-debuginfo
Package
Name
dotnet-sdk-6.0-debuginfo
Purl
pkg:rpm/redhat/dotnet-sdk-6.0-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-sdk-6.0-source-built-artifacts
Package
Name
dotnet-sdk-6.0-source-built-artifacts
Purl
pkg:rpm/redhat/dotnet-sdk-6.0-source-built-artifacts
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-targeting-pack-6.0
Package
Name
dotnet-targeting-pack-6.0
Purl
pkg:rpm/redhat/dotnet-targeting-pack-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet-templates-6.0
Package
Name
dotnet-templates-6.0
Purl
pkg:rpm/redhat/dotnet-templates-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet6.0
Package
Name
dotnet6.0
Purl
pkg:rpm/redhat/dotnet6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet6.0-debuginfo
Package
Name
dotnet6.0-debuginfo
Purl
pkg:rpm/redhat/dotnet6.0-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
dotnet6.0-debugsource
Package
Name
dotnet6.0-debugsource
Purl
pkg:rpm/redhat/dotnet6.0-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::appstream
/
netstandard-targeting-pack-2.1
Package
Name
netstandard-targeting-pack-2.1
Purl
pkg:rpm/redhat/netstandard-targeting-pack-2.1
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
aspnetcore-runtime-6.0
Package
Name
aspnetcore-runtime-6.0
Purl
pkg:rpm/redhat/aspnetcore-runtime-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
aspnetcore-targeting-pack-6.0
Package
Name
aspnetcore-targeting-pack-6.0
Purl
pkg:rpm/redhat/aspnetcore-targeting-pack-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-apphost-pack-6.0
Package
Name
dotnet-apphost-pack-6.0
Purl
pkg:rpm/redhat/dotnet-apphost-pack-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-apphost-pack-6.0-debuginfo
Package
Name
dotnet-apphost-pack-6.0-debuginfo
Purl
pkg:rpm/redhat/dotnet-apphost-pack-6.0-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-host
Package
Name
dotnet-host
Purl
pkg:rpm/redhat/dotnet-host
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-host-debuginfo
Package
Name
dotnet-host-debuginfo
Purl
pkg:rpm/redhat/dotnet-host-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-hostfxr-6.0
Package
Name
dotnet-hostfxr-6.0
Purl
pkg:rpm/redhat/dotnet-hostfxr-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-hostfxr-6.0-debuginfo
Package
Name
dotnet-hostfxr-6.0-debuginfo
Purl
pkg:rpm/redhat/dotnet-hostfxr-6.0-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-runtime-6.0
Package
Name
dotnet-runtime-6.0
Purl
pkg:rpm/redhat/dotnet-runtime-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-runtime-6.0-debuginfo
Package
Name
dotnet-runtime-6.0-debuginfo
Purl
pkg:rpm/redhat/dotnet-runtime-6.0-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-sdk-6.0
Package
Name
dotnet-sdk-6.0
Purl
pkg:rpm/redhat/dotnet-sdk-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-sdk-6.0-debuginfo
Package
Name
dotnet-sdk-6.0-debuginfo
Purl
pkg:rpm/redhat/dotnet-sdk-6.0-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-sdk-6.0-source-built-artifacts
Package
Name
dotnet-sdk-6.0-source-built-artifacts
Purl
pkg:rpm/redhat/dotnet-sdk-6.0-source-built-artifacts
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-targeting-pack-6.0
Package
Name
dotnet-targeting-pack-6.0
Purl
pkg:rpm/redhat/dotnet-targeting-pack-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.20-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet-templates-6.0
Package
Name
dotnet-templates-6.0
Purl
pkg:rpm/redhat/dotnet-templates-6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet6.0
Package
Name
dotnet6.0
Purl
pkg:rpm/redhat/dotnet6.0
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet6.0-debuginfo
Package
Name
dotnet6.0-debuginfo
Purl
pkg:rpm/redhat/dotnet6.0-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
dotnet6.0-debugsource
Package
Name
dotnet6.0-debugsource
Purl
pkg:rpm/redhat/dotnet6.0-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
Red Hat:rhel_eus:9.0::crb
/
netstandard-targeting-pack-2.1
Package
Name
netstandard-targeting-pack-2.1
Purl
pkg:rpm/redhat/netstandard-targeting-pack-2.1
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
0:6.0.120-1.el9_0
RHSA-2023:4449 - OSV