<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T15:50:51.077779+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2022:2199</id>
    <title>ALSA-2022:2199 — Important: .NET 6.0 security, bug fix, and enhancement update</title>
    <updated>2026-10-02T15:50:51.092060+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: aspnetcore-runtime-6.0, AlmaLinux:8: aspnetcore-targeting-pack-6.0, AlmaLinux:8: dotnet, AlmaLinux:8: dotnet-apphost-pack-6.0, AlmaLinux:8: dotnet-host, AlmaLinux:8: dotnet-hostfxr-6.0, AlmaLinux:8: dotnet-runtime-6.0, AlmaLinux:8: dotnet-sdk-6.0, AlmaLinux:8: dotnet-sdk-6.0-source-built-artifacts, AlmaLinux:8: dotnet-targeting-pack-6.0 and 2 more</p>
<p>.NET Core is a managed-software framework. It implements a subset of the .NET
framework APIs and several new APIs, and it includes a CLR implementation.</p>
<p>New versions of .NET Core that address a security vulnerability are now available. The updated versions are .NET Core SDK 6.0.105 and .NET Core Runtime 6.0.5.</p>
<p>Security Fix(es):</p>
<p>* dotnet: excess memory allocation via HttpClient causes DoS (CVE-2022-23267)</p>
<p>* dotnet: malicious content causes high CPU and memory usage (CVE-2022-29117)</p>
<p>* dotnet: parsing HTML causes Denial of Service (CVE-2022-29145)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2022:2199"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-05514</id>
    <title>bdu:2022-05514</title>
    <updated>2026-10-02T15:50:51.092136+00:00</updated>
    <content>bdu:2022-05514</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-05514"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-dotnet-2022-29145</id>
    <title>BIT-dotnet-2022-29145 — .NET and Visual Studio Denial of Service Vulnerability</title>
    <updated>2026-10-02T15:50:51.092154+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: dotnet</p>
<p>.NET and Visual Studio Denial of Service Vulnerability</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-dotnet-2022-29145"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-449</id>
    <title>certfr-2022-avi-449 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Microsoft .Net&lt;/span&gt;. Elles permettent à un at…</title>
    <updated>2026-10-02T15:50:51.092175+00:00</updated>
    <content>certfr-2022-avi-449</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-449"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2022-60133</id>
    <title>cnvd-2022-60133</title>
    <updated>2026-10-02T15:50:51.092190+00:00</updated>
    <content>cnvd-2022-60133</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2022-60133"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-321964</id>
    <title>EUVD-2026-321964</title>
    <updated>2026-10-02T15:50:51.092202+00:00</updated>
    <content>EUVD-2026-321964</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-321964"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-29145</id>
    <title>fkie_cve-2022-29145</title>
    <updated>2026-10-02T15:50:51.092212+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>.NET and Visual Studio Denial of Service Vulnerability</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-29145"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-fcg8-mg9g-6hc4</id>
    <title>GHSA-fcg8-mg9g-6hc4 — .NET Denial of Service Vulnerability</title>
    <updated>2026-10-02T15:50:51.092229+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> NuGet: Microsoft.AspNetCore.App.Runtime.win-x64, NuGet: Microsoft.AspNetCore.App.Runtime.linux-x64, NuGet: Microsoft.AspNetCore.App.Runtime.win-x86, NuGet: Microsoft.AspNetCore.App.Runtime.osx-x64, NuGet: Microsoft.AspNetCore.App.Runtime.linux-musl-x64, NuGet: Microsoft.AspNetCore.App.Runtime.linux-arm64, NuGet: Microsoft.AspNetCore.App.Runtime.linux-arm, NuGet: Microsoft.AspNetCore.App.Runtime.win-arm64, NuGet: Microsoft.AspNetCore.App.Runtime.win-arm, NuGet: Microsoft.AspNetCore.App.Runtime.linux-musl-arm64 and 1 more</p>
<p>Microsoft is releasing this security advisory to provide information about a vulnerability in .NET 6.0, .NET 5.0 and .NET Core 3.1. This advisory also provides guidance on what developers can do to update their applications to remove this vulnerability.</p>
<p>A vulnerability exists in .NET 6.0, .NET 5.0 and .NET core 3.1 where a malicious client can can cause a denial of service when HTML forms are parsed.</p>
<p>### Affected software</p>
<p>* Any .NET 6.0 application running on .NET 6.0.4 or earlier.
* Any .NET 5.0 application running .NET 5.0.16 or earlier.
* Any .NET Core 3.1 application running on .NET Core 3.1.24 or earlier.</p>
<p>#### Affected packages</p>
<p>**.NET Core 3.1**</p>
<p>| Package name                                  | Affected version | Patched version |
|---------------------------------------------------|---------------------|---------------|
| Microsoft.AspNetCore.App.Runtime.win-x64          | &gt;=3.0.0,3.1.24      | 3.1.25        |
| Microsoft.AspNetCore.App.Runtime.linux-x64        | &gt;=3.0.0,3.1.24      | 3.1.25        |
| Microsoft.AspNetCore.App.Runtime.win-x86          | &gt;=3.0.0,3.1.24      | 3.1.25        |
| Microsoft.AspNetCore.App.Runtime.osx-x64          | &gt;=3.0.0,3.1.24      | 3.1.25        |
| Microsoft.AspNetCore.App.Runtime.linux-musl-x64   | &gt;=3.0.0,3.1.24      | 3.1.25        |
| Microsoft.AspNetCore.App.Runtime.linux-arm64      | &gt;=3.0.0,3.1.24      | 3.1.25        |
| Microsoft.AspNetCore.App.Runtime.linux-arm        | &gt;=3.0.0,3.1.24      | 3.1.25        |
| Microsoft…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-fcg8-mg9g-6hc4"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-29145</id>
    <title>gsd-2022-29145</title>
    <updated>2026-10-02T15:50:51.092443+00:00</updated>
    <content>gsd-2022-29145</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-29145"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2022-29145</id>
    <title>msrc_CVE-2022-29145 — .NET and Visual Studio Denial of Service Vulnerability</title>
    <updated>2026-10-02T15:50:51.092457+00:00</updated>
    <content>msrc_CVE-2022-29145</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2022-29145"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2022:2194</id>
    <title>RHSA-2022:2194 — Red Hat Security Advisory: .NET Core 3.1 on RHEL 7 security and bugfix update</title>
    <updated>2026-10-02T15:50:51.092473+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>dotnet: excess memory allocation via HttpClient causes DoS dotnet: malicious content causes high CPU and memory usage dotnet: parsing HTML causes Denial of Service</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2022:2194"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2022:2199</id>
    <title>RHSA-2022:2199 — Red Hat Security Advisory: .NET 6.0 security, bug fix, and enhancement update</title>
    <updated>2026-10-02T15:50:51.092492+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>dotnet: excess memory allocation via HttpClient causes DoS dotnet: malicious content causes high CPU and memory usage dotnet: parsing HTML causes Denial of Service</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2022:2199"/>
  </entry>
</feed>
