CVE-2023-36558

medium
Published 2023-11-15 · Modified 2023-11-16
CVSS v3
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
VIR risk
5.5

Description

Moderate: dotnet6.0 security update

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No vendor mitigations ingested yet for this CVE. The mitigation-content worker queues fetches as references arrive — check back in a few minutes, or see the references list below.

OS impact

OSVersionStatusFixed in
redhat rhel9fixed
rockylinux rocky8fixed

Package impact

EcosystemPackageVulnerableFixed
nuget NuGetMicrosoft.AspNetCore.Components>=8.0.0-rc.2.23480.2,<8.0.08.0.0
nuget NuGetMicrosoft.AspNetCore.Components>=7.0.0,<7.0.147.0.14
nuget NuGetMicrosoft.AspNetCore.Components>=6.0.0,<6.0.256.0.25

References

💬 Discuss CVE-2023-36558 on VIR Community →

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.