Microsoft.NETCore.App.Runtime.win-arm
NuGet14 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting Microsoft.NETCore.App.Runtime.win-armpage 1 of 1
- CVE-2020-1108HIGHCVSS 7.5EG 7.5fixed in 3.1.42020-05-21
vulnerable: 3.1.0, 3.1.1, 3.1.2, 3.1.3
A denial of service vulnerability exists when .NET Core or .NET Framework improperly handles web requests. An attacker who successfully exploited this vulnerability could cause a denial of service against a .NET Core or .NET Framework web …
- CVE-2020-1147CRITICALCVSS 7.8EG 9.0⚠ KEVfixed in 3.1.62020-07-14
vulnerable: 3.1.0 ... 3.1.5 (6 versions)
A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the software fails to check the source markup of XML file input, aka '.NET Framework, SharePoint Server, and Visual Studio Remote …
- CVE-2020-36846CRITICALCVSS 9.8EG 9.8fixed in 3.1.23, 5.0.15 or 6.0.3, by version range2025-05-30
vulnerable: 6.0.0, 6.0.1, 6.0.2
A buffer overflow, as described in CVE-2020-8927, exists in the embedded Brotli library. Versions of IO::Compress::Brotli prior to 0.007 included a version of the brotli library prior to version 1.0.8, where an attacker controlling the i…
- CVE-2020-8927MEDIUMCVSS 5.3EG 5.3fixed in 3.1.23, 5.0.15 or 6.0.3, by version range2020-09-15
vulnerable: 6.0.0, 6.0.1, 6.0.2
A buffer overflow exists in the Brotli library versions prior to 1.0.8 where an attacker controlling the input length of a "one-shot" decompression request to a script can trigger a crash, which happens when copying over chunks of data lar…
- CVE-2021-1721MEDIUMCVSS 6.5EG 6.5fixed in 3.1.12 or 5.0.3, by version range2021-02-25
vulnerable: 5.0.0, 5.0.1, 5.0.2
.NET Core and Visual Studio Denial of Service Vulnerability
- CVE-2021-26423HIGHCVSS 7.5EG 7.5fixed in 3.1.18 or 5.0.9, by version range2021-08-12
vulnerable: 5.0.0 ... 5.0.8 (9 versions)
.NET Core and Visual Studio Denial of Service Vulnerability
- CVE-2021-34485MEDIUMCVSS 5.5EG 5.5fixed in 3.1.18 or 5.0.9, by version range2021-08-12
vulnerable: 5.0.0 ... 5.0.8 (9 versions)
.NET Core and Visual Studio Information Disclosure Vulnerability
- CVE-2022-24512MEDIUMCVSS 6.3EG 6.3fixed in 3.1.23, 5.0.15 or 6.0.3, by version range2022-03-09
vulnerable: 6.0.0, 6.0.1, 6.0.2
.NET and Visual Studio Remote Code Execution Vulnerability
- CVE-2023-21538HIGHCVSS 7.5EG 7.5fixed in 6.0.132023-01-10
vulnerable: 6.0.0 ... 6.0.9 (13 versions)
.NET Denial of Service Vulnerability
- CVE-2023-24936HIGHCVSS 7.5EG 7.5fixed in 7.0.7 or 6.0.18, by version range2023-06-14
vulnerable: 6.0.0 ... 6.0.9 (17 versions)
.NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability
- CVE-2023-29331HIGHCVSS 7.5EG 7.5fixed in 6.0.18 or 7.0.7, by version range2023-06-14
vulnerable: 7.0.0 ... 7.0.5 (6 versions)
.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
- CVE-2023-33128HIGHCVSS 7.3EG 7.3fixed in 7.0.72023-06-14
vulnerable: 7.0.0 ... 7.0.5 (6 versions)
.NET and Visual Studio Remote Code Execution Vulnerability
- CVE-2024-21392HIGHCVSS 7.5EG 7.5fixed in 7.0.17 or 8.0.3, by version range2024-03-12
vulnerable: 7.0.0 ... 7.0.9 (16 versions)
.NET and Visual Studio Denial of Service Vulnerability
- CVE-2024-30045MEDIUMCVSS 6.3EG 6.3fixed in 7.0.19 or 8.0.5, by version range2024-05-14
vulnerable: 7.0.0 ... 7.0.9 (18 versions)
.NET and Visual Studio Remote Code Execution Vulnerability
Check whether Microsoft.NETCore.App.Runtime.win-arm is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for Microsoft.NETCore.App.Runtime.win-arm CVEs against the assets you own.
Book a Demo →