CVE-2024-43498

CWE-843CWE-7049 documents7 sources
Severity
9.8CRITICAL
EPSS
1.3%
top 20.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 12

Description

.NET and Visual Studio Remote Code Execution Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages10 packages

Patches

🔴Vulnerability Details

5
GHSA
.NET Remote Code Execution Vulnerability2024-11-12
CVEList
.NET and Visual Studio Remote Code Execution Vulnerability2024-11-12
OSV
CVE-2024-434982024-11-12
OSV
dotnet9 vulnerabilities2024-11-12
OSV
.NET Remote Code Execution Vulnerability2024-11-12

📋Vendor Advisories

3
Red Hat
dotnet: Type confusion vulnerability leads to AV in .NET Core NrbfDecoder component2024-11-12
Microsoft
.NET and Visual Studio Remote Code Execution Vulnerability2024-11-12
Ubuntu
.NET vulnerabilities2024-11-12
CVE-2024-43498 (CRITICAL CVSS 9.8) | .NET and Visual Studio Remote Code | cvebase.io