PT-2021-2046 · Microsoft+3 · Visual Studio+4

Published

2021-02-09

·

Updated

2024-03-06

·

CVE-2021-1721

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: .NET Core and Visual Studio (affected versions not specified)
Description: The issue is related to insufficient input validation, which can be exploited by a remote attacker to cause a denial of service. This vulnerability exists when creating HTTPS web requests during X509 certificate chain building.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

ALT-PU-2021-1356
ALT-PU-2021-1357
ALT-PU-2021-1358
ALT-PU-2021-1359
ALT-PU-2021-1363
BDU:2021-00893
BIT-DOTNET-2021-1721
BIT-DOTNET-SDK-2021-1721
CESA-2021_0471
CESA-2021_0474
CESA-2021_0476
CVE-2021-1721
GHSA-3GP9-H8HW-PXPW
RHSA-2021:0470
RHSA-2021:0471
RHSA-2021:0472
RHSA-2021:0473
RHSA-2021:0474
RHSA-2021:0476
RHSA-2021_0471
RHSA-2021_0474
RHSA-2021_0476

Affected Products

Net Core
Alt Linux
Centos
Red Hat
Visual Studio