Critical dotnet 8.0 Security Update for Rocky Linux: Addressing DoS Vulnerabilities
Summary
An update is available for dotnet8.0. This update affects Rocky Linux 9. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
RPMs
aspnetcore-runtime-8.0-0:8.0.7-1.el9_4.aarch64.rpm
aspnetcore-runtime-8.0-0:8.0.7-1.el9_4.ppc64le.rpm
aspnetcore-runtime-8.0-0:8.0.7-1.el9_4.s390x.rpm
aspnetcore-runtime-8.0-0:8.0.7-1.el9_4.x86_64.rpm
aspnetcore-runtime-dbg-8.0-0:8.0.7-1.el9_4.aarch64.rpm
aspnetcore-runtime-dbg-8.0-0:8.0.7-1.el9_4.ppc64le.rpm
aspnetcore-runtime-dbg-8.0-0:8.0.7-1.el9_4.s390x.rpm
aspnetcore-runtime-dbg-8.0-0:8.0.7-1.el9_4.x86_64.rpm
aspnetcore-targeting-pack-8.0-0:8.0.7-1.el9_4.aarch64.rpm
aspnetcore-targeting-pack-8.0-0:8.0.7-1.el9_4.ppc64le.rpm
aspnetcore-targeting-pack-8.0-0:8.0.7-1.el9_4.s390x.rpm
aspnetcore-targeting-pack-8.0-0:8.0.7-1.el9_4.x86_64.rpm
dotnet8.0-0:8.0.107-1.el9_4.src.rpm
dotnet-apphost-pack-8.0-0:8.0.7-1.el9_4.aarch64.rpm
dotnet-apphost-pack-8.0-0:8.0.7-1.el9_4.ppc64le.rpm
dotnet-apphost-pack-8.0-0:8.0.7-1.el9_4.s390x.rpm
dotnet-apphost-pack-8.0-0:8.0.7-1.el9_4.x86_64.rpm
dotnet-apphost-pack-8.0-debuginfo-0:8.0.7-1.el9_4.aarch64.rpm
dotnet-apphost-pack-8.0-debuginfo-0:8.0.7-1.el9_4.ppc64le.rpm
dotnet-apphost-pack-8.0-debuginfo-0:8.0.7-1.el9_4.s390x.rpm
dotnet-apphost-pack-8.0-debuginfo-0:8.0.7-1.el9_4.x86_64.rpm
dotnet-host-0:8.0.7-1.el9_4.aarch64.rpm
dotnet-host-0:8.0.7-1.el9_4.ppc64le.rpm
dotnet-host-0:8.0.7-1.el9_4.s390x.rpm
dotnet-host-0:8.0.7-1.el9_4.x86_64.rpm
dotnet-host-debuginfo-0:8.0.7-1.el9_4.aarch64.rpm
dotnet-host-debuginfo-0:8.0.7-1.el9_4.ppc64le.rpm
dotnet-host-debuginfo-0:8.0.7-1.el9_4.s390x.rpm
dotnet-host-debuginfo-0:8.0.7-1.el9_4.x86_64.rpm
dotnet-hostfxr-8.0-0:8.0.7-1.el9_4.aarch64.rpm
dotnet-hostfxr-8.0-0:8.0.7-1.el9_4.ppc64le.rpm
dotnet-hostfxr-8.0-0:8.0.7-1.el9_4.s390x.rpm
dotnet-hostfxr-8.0-0:8.0.7-1.el9_4.x86_64.rpm
dotnet-hostfxr-8.0-debuginfo-0:8.0.7-1.el9_4.aarch64.rpm
dotnet-hostfxr-8.0-debuginfo-0:8.0.7-1.el9_4.ppc64le.rpm
dotnet-hostfxr-8.0-debuginfo-0:8.0.7-1.el9_4.s390x.rpm
dotnet-hostfxr-8.0-debuginfo-0:8.0.7-1.el9_4.x86_64.rpm
dotnet-runtime-8.0-0:8.0.7-1.el9_4.aarch64.rpm
dotnet-runtime-8.0-0:8.0.7-1.el9_4.ppc64le.rpm
dotnet-runtime-8.0-0:8.0.7-1.el9_4.s390x.rpm
dotnet-runtime-8.0-0:8.0.7-1.el9_4.x86_64.rpm
dotnet-runtime-8.0-debuginfo-0:8.0.7-1.el9_4.aarch64.rpm
dotnet-runtime-8.0-debuginfo-0:8.0.7-1.el9_4.ppc64le.rpm
dotnet-runtime-8.0-debuginfo-0:8.0.7-1.el9_4.s390x.rpm
dotnet-runtime-8.0-debuginfo-0:8.0.7-1.el9_4.x86_64.rpm
dotnet-runtime-dbg-8.0-0:8.0.7-1.el9_4.aarch64.rpm
dotnet-runtime-dbg-8.0-0:8.0.7-1.el9_4.ppc64le.rpm
dotnet-runtime-dbg-8.0-0:8.0.7-1.el9_4.s390x.rpm
dotnet-runtime-dbg-8.0-0:8.0.7-1.el9_4.x86_64.rpm
dotnet-sdk-8.0-0:8.0.107-1.el9_4.aarch64.rpm
dotnet-sdk-8.0-0:8.0.107-1.el9_4.ppc64le.rpm
dotnet-sdk-8.0-0:8.0.107-1.el9_4.s390x.rpm
dotnet-sdk-8.0-0:8.0.107-1.el9_4.x86_64.rpm
dotnet-sdk-8.0-debuginfo-0:8.0.107-1.el9_4.aarch64.rpm
dotnet-sdk-8.0-debuginfo-0:8.0.107-1.el9_4.ppc64le.rpm
dotnet-sdk-8.0-debuginfo-0:8.0.107-1.el9_4.s390x.rpm
dotnet-sdk-8.0-debuginfo-0:8.0.107-1.el9_4.x86_64.rpm
dotnet-sdk-8.0-source-built-artifacts-0:8.0.107-1.el9_4.aarch64.rpm
dotnet-sdk-8.0-source-built-artifacts-0:8.0.107-1.el9_4.ppc64le.rpm
dotnet-sdk-8.0-source-built-artifacts-0:8.0.107-1.el9_4.s390x.rpm
dotnet-sdk-8.0-source-built-artifacts-0:8.0.107-1.el9_4.x86_64.rpm
dotnet-sdk-dbg-8.0-0:8.0.107-1.el9_4.aarch64.rpm
dotnet-sdk-dbg-8.0-0:8.0.107-1.el9_4.ppc64le.rpm
dotnet-sdk-dbg-8.0-0:8.0.107-1.el9_4.s390x.rpm
dotnet-sdk-dbg-8.0-0:8.0.107-1.el9_4.x86_64.rpm
dotnet-targeting-pack-8.0-0:8.0.7-1.el9_4.aarch64.rpm
dotnet-targeting-pack-8.0-0:8.0.7-1.el9_4.ppc64le.rpm
dotnet-targeting-pack-8.0-0:8.0.7-1.el9_4.s390x.rpm
dotnet-targeting-pack-8.0-0:8.0.7-1.el9_4.x86_64.rpm
dotnet-templates-8.0-0:8.0.107-1.el9_4.aarch64.rpm
dotnet-templates-8.0-0:8.0.107-1.el9_4.ppc64le.rpm
dotnet-templates-8.0-0:8.0.107-1.el9_4.s390x.rpm
dotnet-templates-8.0-0:8.0.107-1.el9_4.x86_64.rpm
netstandard-targeting-pack-2.1-0:8.0.107-1.el9_4.aarch64.rpm
netstandard-targeting-pack-2.1-0:8.0.107-1.el9_4.ppc64le.rpm
netstandard-targeting-pack-2.1-0:8.0.107-1.el9_4.s390x.rpm
netstandard-targeting-pack-2.1-0:8.0.107-1.el9_4.x86_64.rpm
References
No References
CVEs
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-30105
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-35264
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-38095
Fixes
https://bugzilla.redhat.com/show_bug.cgi?id=2295320
https://bugzilla.redhat.com/show_bug.cgi?id=2295321
https://bugzilla.redhat.com/show_bug.cgi?id=2295323