VDB
RHSA-2025%3A18256
RHSA-2025%3A18256
PUBLISHED
CVSS 7.300000190734863 HIGH
An update for .NET 8.0 is now available for Red Hat Enterprise Linux 9.4 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Risk Scores
CVSS 3.1
7.300000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| netstandard | ||
| dotnet8.0 | ||
| dotnet | ||
| Red Hat Enterprise Linux AppStream EUS (v.9.4) | ||
| aspnetcore | ||
| Red Hat CodeReady Linux Builder EUS (v.9.4) |
Timeline
- Oct 16, 2025 CVE Published
- Apr 21, 2026 CVE Updated
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Distribution Patch
- Apr 29, 2026 Security Advisory
- May 1, 2026 Security Advisory
- May 1, 2026 Security Advisory
- May 1, 2026 Security Advisory
References
- https://access.redhat.com/errata/RHSA-2025:18256 advisory
- https://access.redhat.com/security/updates/classification/#important url
- https://bugzilla.redhat.com/show_bug.cgi?id=2403083 url
- https://bugzilla.redhat.com/show_bug.cgi?id=2403085 url
- https://bugzilla.redhat.com/show_bug.cgi?id=2403086 url
- https://security.access.redhat.com/data/csaf/v2/advisories/2025/rhsa-2025_18256.json advisory