access.redhat.com
https://access.redhat.com/errata/RHSA-2020:3699 CVE-2020-1045
HIGH
Microsoft ASP.NET Core Security Feature Bypass Vulnerability
Record summary
CVE-2020-1045 has a selected CVSS score of 7.5 (high).
Description
A security feature bypass vulnerability exists in the way Microsoft ASP.NET Core parses encoded cookie names.The ASP.NET Core cookie parser decodes entire cookie strings which could allow a malicious attacker to set a second cookie with the name being percent encoded.The security update addresses the vulnerability by fixing the way the ASP.NET Core cookie parser handles encoded names., aka 'Microsoft ASP.NET Core Security Feature Bypass Vulnerability'.
Description source: GitHub Advisory
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 10, 2024 · Source: CVE List
Affected products and versions
Showing 12 of 15| Product | Source | Version range | Status |
|---|---|---|---|
ASP.NET Core 2.1Browse Microsoft / ASP.NET Core 2.1 | CVE List | 2.0 to < publication | affected |
ASP.NET Core 3.1Browse Microsoft / ASP.NET Core 3.1 | CVE List | 3.0 to < publication | affected |
Microsoft.AspNetCore.AppBrowse NuGet / Microsoft.AspNetCore.App | GitHub Advisory | Before 2.1.22 · Fixed in 2.1.22 | affected |
Microsoft.AspNetCore.App.Runtime.linux-armBrowse NuGet / Microsoft.AspNetCore.App.Runtime.linux-arm | GitHub Advisory | 3.1.0 to < 3.1.8 · Fixed in 3.1.8 | affected |
Microsoft.AspNetCore.App.Runtime.linux-arm64Browse NuGet / Microsoft.AspNetCore.App.Runtime.linux-arm64 | GitHub Advisory | 3.1.0 to < 3.1.8 · Fixed in 3.1.8 | affected |
Microsoft.AspNetCore.App.Runtime.linux-musl-arm64Browse NuGet / Microsoft.AspNetCore.App.Runtime.linux-musl-arm64 | GitHub Advisory | 3.1.0 to < 3.1.8 · Fixed in 3.1.8 | affected |
Microsoft.AspNetCore.App.Runtime.linux-musl-x64Browse NuGet / Microsoft.AspNetCore.App.Runtime.linux-musl-x64 | GitHub Advisory | 3.1.0 to < 3.1.8 · Fixed in 3.1.8 | affected |
Microsoft.AspNetCore.App.Runtime.linux-x64Browse NuGet / Microsoft.AspNetCore.App.Runtime.linux-x64 | GitHub Advisory | 3.1.0 to < 3.1.8 · Fixed in 3.1.8 | affected |
Microsoft.AspNetCore.App.Runtime.osx-x64Browse NuGet / Microsoft.AspNetCore.App.Runtime.osx-x64 | GitHub Advisory | 3.1.0 to < 3.1.8 · Fixed in 3.1.8 | affected |
Microsoft.AspNetCore.App.Runtime.win-armBrowse NuGet / Microsoft.AspNetCore.App.Runtime.win-arm | GitHub Advisory | 3.1.0 to < 3.1.8 · Fixed in 3.1.8 | affected |
Microsoft.AspNetCore.App.Runtime.win-arm64Browse NuGet / Microsoft.AspNetCore.App.Runtime.win-arm64 | GitHub Advisory | 3.1.5 to < 3.1.8 · Fixed in 3.1.8 | affected |
Microsoft.AspNetCore.App.Runtime.win-x64Browse NuGet / Microsoft.AspNetCore.App.Runtime.win-x64 | GitHub Advisory | 3.1.0 to < 3.1.8 · Fixed in 3.1.8 | affected |
References
Showing 12 of 13github.com
https://github.com/dotnet/announcements/issues/165 github.com
https://github.com/dotnet/aspnetcore/issues/25701 github.com
https://github.com/dotnet/aspnetcore/pull/24264 github.com
https://github.com/dotnet/core/blob/main/release-notes/3.1/3.1.8/3.1.8.md github.com
https://github.com/github/advisory-database/issues/302 FEDORA-2020-e2deb72e0fVendor advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5LN2FUVBSVPGK7AU3NMLO3YR6CGONQPB FEDORA-2020-48fa1ad65cVendor advisory
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ASICXQXS4M7MTAF6SGQMCLCA63DLCUT3 lists.fedoraproject.org
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5LN2FUVBSVPGK7AU3NMLO3YR6CGONQPB lists.fedoraproject.org
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ASICXQXS4M7MTAF6SGQMCLCA63DLCUT3 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-1045 portal.msrc.microsoft.com
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1045