.NET Core & VS DoS Vulnerability
CVE-2022-38013 Published on September 13, 2022
.NET Core and Visual Studio Denial of Service Vulnerability
.NET Core and Visual Studio Denial of Service Vulnerability
Products Associated with CVE-2022-38013
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2022-38013 are published in these products:
Affected Versions
Microsoft Visual Studio 2022 for Mac version 17.3:- Version 17.3 and below 17.3.5 is affected.
- Version 17.0.0 and below 17.3.4 is affected.
- Version 3.1 and below 3.1.29 is affected.
- Version 6.0.0 and below 6.0.9 is affected.
- Version 16.11.0 and below 16.11.19 is affected.
- Version 15.0.0 and below 16.9.25 is affected.
- Version 17.0.0 and below 17.0.14 is affected.
- Version 17.2.0 and below 17.2.8 is affected.
Vulnerable Packages
The following package name and versions may be associated with CVE-2022-38013
| Package Manager | Vulnerable Package | Versions | Fixed In |
|---|---|---|---|
| nuget | Microsoft.AspNetCore.App.Runtime.win-x86 | >= 3.1.0, < 3.1.29 | 3.1.29 |
| nuget | Microsoft.AspNetCore.App.Runtime.win-x86 | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.win-x64 | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.win-arm64 | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.win-arm | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.osx-x64 | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.osx-arm64 | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.linux-x64 | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.linux-musl-x64 | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.linux-musl-arm64 | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.linux-musl-arm | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.linux-arm64 | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.linux-arm | >= 5.0.0, < 6.0.9 | 6.0.9 |
| nuget | Microsoft.AspNetCore.App.Runtime.win-x64 | >= 3.1.0, < 3.1.29 | 3.1.29 |
| nuget | Microsoft.AspNetCore.App.Runtime.win-arm64 | >= 3.1.0, < 3.1.29 | 3.1.29 |
| nuget | Microsoft.AspNetCore.App.Runtime.win-arm | >= 3.1.0, < 3.1.29 | 3.1.29 |
| nuget | Microsoft.AspNetCore.App.Runtime.osx-x64 | >= 3.1.0, < 3.1.29 | 3.1.29 |
| nuget | Microsoft.AspNetCore.App.Runtime.linux-x64 | >= 3.1.0, < 3.1.29 | 3.1.29 |
| nuget | Microsoft.AspNetCore.App.Runtime.linux-musl-x64 | >= 3.1.0, < 3.1.29 | 3.1.29 |
| nuget | Microsoft.AspNetCore.App.Runtime.linux-musl-arm64 | >= 3.1.0, < 3.1.29 | 3.1.29 |
| nuget | Microsoft.AspNetCore.App.Runtime.linux-arm64 | >= 3.1.0, < 3.1.29 | 3.1.29 |
| nuget | Microsoft.AspNetCore.App.Runtime.linux-arm | >= 3.1.0, < 3.1.29 | 3.1.29 |
Exploit Probability
EPSS
1.13%
Percentile
78.02%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.