CVE-2018-8409
published 2018-09-13CVE-2018-8409: A denial of service vulnerability exists when System.IO.Pipelines improperly handles requests, aka "System.IO.Pipelines Denial of Service." This affects .NET…
high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
A denial of service vulnerability exists when System.IO.Pipelines improperly handles requests, aka "System.IO.Pipelines Denial of Service." This affects .NET Core 2.1, System.IO.Pipelines, ASP.NET Core 2.1.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | asp.net_core | — | — |
| microsoft | asp.net_core | >= 2.1 < 2.1.4 | 2.1.4 |
| microsoft | net_core | — | — |
| microsoft | net_core | >= 2.1 < 2.1.4 | 2.1.4 |
| microsoft | system.io.pipelines | — | — |
| microsoft | system.io.pipelines | — | — |
| microsoft | system.io.pipelines | >= 4.5.0 < 4.5.1 | 4.5.1 |
| msrc | asp.net_core_2.1 | — | — |
| msrc | net_core_2.1 | — | — |
| msrc | system.io.pipelines | — | — |