Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

vulnrabilty fixes #91

Open
wants to merge 3 commits into
base: master
Choose a base branch
from
Open

vulnrabilty fixes #91

wants to merge 3 commits into from

Conversation

s-b-repo
Copy link

No description provided.

@s-b-repo
Copy link
Author

Microsoft.Windows.Compatibility Denial of Service (DoS)

Vulnerability
[CWE-400](https://cwe.mitre.org/data/definitions/400.html)

CVE-2023-29331
CVSS 7.5
high
SNYK-DOTNET-MICROSOFTWINDOWSCOMPATIBILITY-5708425

@s-b-repo
Copy link
Author

System.Security.Cryptography.Pkcs Denial of Service (DoS)

Vulnerability
[CWE-400](https://cwe.mitre.org/data/definitions/400.html)

CVE-2023-29331
CVSS 7.5
high
SNYK-DOTNET-SYSTEMSECURITYCRYPTOGRAPHYPKCS-5708426

@s-b-repo
Copy link
Author

System.Data.SqlClient Information Exposure

Vulnerability
[CWE-200](https://cwe.mitre.org/data/definitions/200.html)

CVE-2022-41064
CVSS 5.8
medium
SNYK-DOTNET-SYSTEMDATASQLCLIENT-3110424

Score
504
Insights:

This vulnerability is only applicable on applications that communicate with Microsoft SQL Server.

Introduced through
Microsoft.Windows.Compatibility@7.0.0
Fixed in
System.Data.SqlClient@4.8.5

Exploit maturity

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants