Inconsistent interpretation of http requests ('http request/response smuggling') in ASP.NET Core allows an authorized attacker to bypass a security feature over a network. Affected versions: .NET 8.0 (that's the RHEL dotnet8.0 package) .NET 9.0 (that's the RHEL dotnet9.0 package) .NET 10.0 (that's the RHEL dotnet10.0 package)
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:18148 https://access.redhat.com/errata/RHSA-2025:18148
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:18149 https://access.redhat.com/errata/RHSA-2025:18149
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:18152 https://access.redhat.com/errata/RHSA-2025:18152
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:18150 https://access.redhat.com/errata/RHSA-2025:18150
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:18153 https://access.redhat.com/errata/RHSA-2025:18153
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:18151 https://access.redhat.com/errata/RHSA-2025:18151