Bug 2500587 (CVE-2026-50648)
| Summary: | CVE-2026-50648 dotnet: .NET Framework: Remote Denial of Service due to uncontrolled resource allocation | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security DevOps Team <prodsec-dev> |
| Status: | NEW --- | QA Contact: | |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | unspecified | CC: | rhel-process-autobot, sdawley, watson-tool-maintainers |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in .NET Framework. An unauthorized attacker can exploit this vulnerability remotely by causing the system to allocate resources without proper limits or throttling. This uncontrolled resource allocation can lead to a Denial of Service (DoS), making the affected system unresponsive or unavailable to legitimate users.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2501437, 2501438, 2501439 | ||
| Bug Blocks: | |||
|
Description
OSIDB Bzimport
2026-07-14 20:05:07 UTC
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:41899 https://access.redhat.com/errata/RHSA-2026:41899 This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:41893 https://access.redhat.com/errata/RHSA-2026:41893 This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:41895 https://access.redhat.com/errata/RHSA-2026:41895 This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:41897 https://access.redhat.com/errata/RHSA-2026:41897 This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:41900 https://access.redhat.com/errata/RHSA-2026:41900 This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:41901 https://access.redhat.com/errata/RHSA-2026:41901 This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:41894 https://access.redhat.com/errata/RHSA-2026:41894 This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:41896 https://access.redhat.com/errata/RHSA-2026:41896 This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:41898 https://access.redhat.com/errata/RHSA-2026:41898 This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:58566 https://access.redhat.com/errata/RHSA-2026:58566 This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:58567 https://access.redhat.com/errata/RHSA-2026:58567 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions Via RHSA-2026:58568 https://access.redhat.com/errata/RHSA-2026:58568 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:58569 https://access.redhat.com/errata/RHSA-2026:58569 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:58570 https://access.redhat.com/errata/RHSA-2026:58570 |