This vulnerability allows an authenticated attacker with limited privileges to spoof or impersonate content or identities within affected .NET and Visual Studio applications, potentially leading to privilege escalation or misinformation. Affected versions: .NET 8.0 .NET 9.0
CVE is now Public via https://github.com/dotnet/announcements/issues/356
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:7571 https://access.redhat.com/errata/RHSA-2025:7571
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:7589 https://access.redhat.com/errata/RHSA-2025:7589
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:7599 https://access.redhat.com/errata/RHSA-2025:7599
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:7601 https://access.redhat.com/errata/RHSA-2025:7601
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:7598 https://access.redhat.com/errata/RHSA-2025:7598
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2025:7603 https://access.redhat.com/errata/RHSA-2025:7603
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:7600 https://access.redhat.com/errata/RHSA-2025:7600