Security
Headlines
HeadlinesLatestCVEs

Tag

#microsoft

GHSA-h3hv-63q5-jgpr: Microsoft Security Advisory CVE-2023-36799: .NET Denial of Service Vulnerability

# Microsoft Security Advisory CVE-2023-36799: .NET Denial of Service Vulnerability ## <a name="executive-summary"></a>Executive summary Microsoft is releasing this security advisory to provide information about a vulnerability in .NET 7.0 and .NET 6.0. This advisory also provides guidance on what developers can do to update their applications to remove this vulnerability. A vulnerability exists in .NET where reading a maliciously crafted X.509 certificate may result in Denial of Service. This issue only affects Linux systems. ## Announcement Announcement for this issue can be found at https://github.com/dotnet/announcements/issues/275 ### <a name="mitigation-factors"></a>Mitigation factors Microsoft has not identified any mitigating factors for this vulnerability. ## <a name="affected-software"></a>Affected software * Any .NET 7.0 application running on .NET 7.0.10 or earlier. * Any .NET 6.0 application running on .NET 6.0.21 or earlier. If your application uses the followin...

ghsa
#vulnerability#windows#microsoft#linux#dos#js#git
CVE-2023-36802

Microsoft Streaming Service Proxy Elevation of Privilege Vulnerability

CVE-2023-36744

Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2023-36761

Microsoft Word Information Disclosure Vulnerability

CVE-2023-36745

Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2023-36756

Microsoft Exchange Server Remote Code Execution Vulnerability

CVE-2023-36777

Microsoft Exchange Server Information Disclosure Vulnerability

CVE-2023-29332

Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability

CVE-2023-36762

Microsoft Word Remote Code Execution Vulnerability

CVE-2023-36767

Microsoft Office Security Feature Bypass Vulnerability