Microsoft.NETCore.App.Runtime.linux-musl-arm
NuGet16 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting Microsoft.NETCore.App.Runtime.linux-musl-armpage 1 of 1
- CVE-2020-36846CRITICALCVSS 9.8EG 9.8fixed in 5.0.15 or 6.0.3, by version range2025-05-30
vulnerable: 6.0.0, 6.0.1, 6.0.2
A buffer overflow, as described in CVE-2020-8927, exists in the embedded Brotli library. Versions of IO::Compress::Brotli prior to 0.007 included a version of the brotli library prior to version 1.0.8, where an attacker controlling the i…
- CVE-2020-8927MEDIUMCVSS 5.3EG 5.3fixed in 5.0.15 or 6.0.3, by version range2020-09-15
vulnerable: 6.0.0, 6.0.1, 6.0.2
A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of data lar…
- CVE-2021-1721MEDIUMCVSS 6.5EG 6.5fixed in 5.0.32021-02-25
vulnerable: 5.0.0, 5.0.1, 5.0.2
.NET Core and Visual Studio Denial of Service Vulnerability
- CVE-2021-26423HIGHCVSS 7.5EG 7.5fixed in 5.0.92021-08-12
vulnerable: 5.0.0 ... 5.0.8 (9 versions)
.NET Core and Visual Studio Denial of Service Vulnerability
- CVE-2021-34485MEDIUMCVSS 5.5EG 5.5fixed in 5.0.92021-08-12
vulnerable: 5.0.0 ... 5.0.8 (9 versions)
.NET Core and Visual Studio Information Disclosure Vulnerability
- CVE-2022-24512MEDIUMCVSS 6.3EG 6.3fixed in 5.0.15 or 6.0.3, by version range2022-03-09
vulnerable: 6.0.0, 6.0.1, 6.0.2
.NET and Visual Studio Remote Code Execution Vulnerability
- CVE-2023-21538HIGHCVSS 7.5EG 7.5fixed in 6.0.132023-01-10
vulnerable: 6.0.0 ... 6.0.9 (13 versions)
.NET Denial of Service Vulnerability
- CVE-2023-24936HIGHCVSS 7.5EG 7.5fixed in 7.0.7 or 6.0.18, by version range2023-06-14
vulnerable: 6.0.0 ... 6.0.9 (17 versions)
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
- CVE-2023-29331HIGHCVSS 7.5EG 7.5fixed in 7.0.7 or 6.0.18, by version range2023-06-14
vulnerable: 6.0.0 ... 6.0.9 (17 versions)
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
- CVE-2023-33128HIGHCVSS 7.3EG 7.3fixed in 7.0.72023-06-14
vulnerable: 7.0.0 ... 7.0.5 (6 versions)
.NET and Visual Studio Remote Code Execution Vulnerability
- CVE-2023-36799MEDIUMCVSS 6.5EG 6.5fixed in 7.0.11 or 6.0.22, by version range2023-09-12
vulnerable: 6.0.0 ... 6.0.9 (21 versions)
.NET Core and Visual Studio Denial of Service Vulnerability
- CVE-2024-21392HIGHCVSS 7.5EG 7.5fixed in 7.0.17 or 8.0.3, by version range2024-03-12
vulnerable: 8.0.0, 8.0.1, 8.0.2
.NET and Visual Studio Denial of Service Vulnerability
- CVE-2024-30045MEDIUMCVSS 6.3EG 6.3fixed in 7.0.19 or 8.0.5, by version range2024-05-14
vulnerable: 8.0.0, 8.0.1, 8.0.2, 8.0.3, 8.0.4
.NET and Visual Studio Remote Code Execution Vulnerability
- CVE-2026-62899MEDIUMCVSS 5.9EG 5.9fixed in 10.0.11, 9.0.19 or 8.0.30, by version range2026-08-11
vulnerable: 8.0.0 ... 8.0.8 (29 versions)
Inconsistent interpretation of http requests ('http request/response smuggling') in .NET allows an unauthorized attacker to bypass a security feature over a network.
- CVE-2026-62901HIGHCVSS 7.5EG 7.5fixed in 10.0.11, 9.0.19 or 8.0.30, by version range2026-08-11
vulnerable: 8.0.0 ... 8.0.8 (29 versions)
Unchecked input for loop condition in .NET allows an unauthorized attacker to deny service over a network.
- CVE-2026-62909HIGHCVSS 7.8EG 7.8fixed in 10.0.11, 9.0.19 or 8.0.30, by version range2026-08-11
vulnerable: 8.0.0 ... 8.0.8 (29 versions)
Uncaught exception in .NET allows an authorized attacker to elevate privileges locally.
Check whether Microsoft.NETCore.App.Runtime.linux-musl-arm is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for Microsoft.NETCore.App.Runtime.linux-musl-arm CVEs against the assets you own.
Book a Demo →