Bug 2512179 (CVE-2026-62900)

Summary: CVE-2026-62900 .NET: .NET Information Disclosure Vulnerability
Product: [Other] Security Response Reporter: OSIDB Bzimport <bzimport>
Component: vulnerabilityAssignee: Product Security <prodsec-ir-bot>
Status: NEW --- QA Contact:
Severity: medium Docs Contact:
Priority: medium    
Version: unspecifiedCC: rhel-process-autobot, sdawley, security-response-team, watson-tool-maintainers
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: ---
Doc Text:
Improper removal of sensitive information before storage or transfer in .NET allows an unauthorized attacker to disclose information over a network.
Story Points: ---
Clone Of: Environment:
Last Closed: Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Deadline: 2026-08-11   

Description OSIDB Bzimport 2026-08-06 20:54:17 UTC
Source Link / .NET.Build.Containers - GitOperations.GetRepositoryUrl embeds git remote URL credentials into assemblies/PDBs

Affects: 8.0, 9.0, 10.0

Comment 1 errata-xmlrpc 2026-08-13 13:03:09 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2026:54538 https://access.redhat.com/errata/RHSA-2026:54538

Comment 2 errata-xmlrpc 2026-08-13 13:05:13 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10

Via RHSA-2026:54541 https://access.redhat.com/errata/RHSA-2026:54541

Comment 3 errata-xmlrpc 2026-08-13 14:36:10 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2026:54542 https://access.redhat.com/errata/RHSA-2026:54542

Comment 4 errata-xmlrpc 2026-08-13 15:50:18 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2026:54550 https://access.redhat.com/errata/RHSA-2026:54550

Comment 5 errata-xmlrpc 2026-08-13 16:12:35 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2026:54574 https://access.redhat.com/errata/RHSA-2026:54574

Comment 6 errata-xmlrpc 2026-08-13 16:35:50 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10

Via RHSA-2026:54590 https://access.redhat.com/errata/RHSA-2026:54590

Comment 7 errata-xmlrpc 2026-08-17 21:34:48 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10

Via RHSA-2026:55858 https://access.redhat.com/errata/RHSA-2026:55858

Comment 8 errata-xmlrpc 2026-08-17 23:11:21 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2026:55857 https://access.redhat.com/errata/RHSA-2026:55857

Comment 9 errata-xmlrpc 2026-08-17 23:11:33 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2026:55856 https://access.redhat.com/errata/RHSA-2026:55856

Comment 10 errata-xmlrpc 2026-08-24 02:52:28 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10.0 Extended Update Support

Via RHSA-2026:58566 https://access.redhat.com/errata/RHSA-2026:58566

Comment 11 errata-xmlrpc 2026-08-24 02:54:01 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10.0 Extended Update Support

Via RHSA-2026:58567 https://access.redhat.com/errata/RHSA-2026:58567

Comment 12 errata-xmlrpc 2026-08-24 04:22:43 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions

Via RHSA-2026:58568 https://access.redhat.com/errata/RHSA-2026:58568

Comment 13 errata-xmlrpc 2026-08-24 05:42:14 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.6 Extended Update Support

Via RHSA-2026:58569 https://access.redhat.com/errata/RHSA-2026:58569

Comment 14 errata-xmlrpc 2026-08-24 05:48:49 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.6 Extended Update Support

Via RHSA-2026:58570 https://access.redhat.com/errata/RHSA-2026:58570