CVE-2020-1045

<p>A security feature bypass vulnerability exists in the way Microsoft ASP.NET Core parses encoded cookie names.</p>
<p>The ASP.NET Core cookie parser decodes entire cookie strings which could allow a malicious attacker to set a second cookie with the name being percent encoded.</p>
<p>The security update addresses the vulnerability by fixing the way the ASP.NET Core cookie parser handles encoded names.</p>
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 95%
Affected Products (NVD)
VendorProductVersion
microsoftasp.net_core
2.1 ≤
𝑥
≤ 2.1.21
microsoftasp.net_core
3.1 ≤
𝑥
< 3.1.8
redhatenterprise_linux
8.0
redhatenterprise_linux_aus
8.2
redhatenterprise_linux_aus
8.4
redhatenterprise_linux_aus
8.6
redhatenterprise_linux_eus
8.2
redhatenterprise_linux_eus
8.4
redhatenterprise_linux_eus
8.6
redhatenterprise_linux_tus
8.2
redhatenterprise_linux_tus
8.4
redhatenterprise_linux_tus
8.6
𝑥
= Vulnerable software versions
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
aspnetcore-runtime-3.1
RHEL 8
0:3.1.8-2.el8_2
fixed
RHEL 8.2 AUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 E4S
0:3.1.8-2.el8_2
fixed
RHEL 8.2 EUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 TUS
0:3.1.8-2.el8_2
fixed
aspnetcore-targeting-pack-3.1
RHEL 8
0:3.1.8-2.el8_2
fixed
RHEL 8.2 AUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 E4S
0:3.1.8-2.el8_2
fixed
RHEL 8.2 EUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 TUS
0:3.1.8-2.el8_2
fixed
dotnet
RHEL 8
0:3.1.108-2.el8_2
fixed
RHEL 8.2 AUS
0:3.1.108-2.el8_2
fixed
RHEL 8.2 E4S
0:3.1.108-2.el8_2
fixed
RHEL 8.2 EUS
0:3.1.108-2.el8_2
fixed
RHEL 8.2 TUS
0:3.1.108-2.el8_2
fixed
dotnet-apphost-pack-3.1
RHEL 8
0:3.1.8-2.el8_2
fixed
RHEL 8.2 AUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 E4S
0:3.1.8-2.el8_2
fixed
RHEL 8.2 EUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 TUS
0:3.1.8-2.el8_2
fixed
dotnet-host
RHEL 8
0:3.1.8-2.el8_2
fixed
RHEL 8.2 AUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 E4S
0:3.1.8-2.el8_2
fixed
RHEL 8.2 EUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 TUS
0:3.1.8-2.el8_2
fixed
dotnet-hostfxr-3.1
RHEL 8
0:3.1.8-2.el8_2
fixed
RHEL 8.2 AUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 E4S
0:3.1.8-2.el8_2
fixed
RHEL 8.2 EUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 TUS
0:3.1.8-2.el8_2
fixed
dotnet-runtime-3.1
RHEL 8
0:3.1.8-2.el8_2
fixed
RHEL 8.2 AUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 E4S
0:3.1.8-2.el8_2
fixed
RHEL 8.2 EUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 TUS
0:3.1.8-2.el8_2
fixed
dotnet-sdk-3.1
RHEL 8
0:3.1.108-2.el8_2
fixed
RHEL 8.2 AUS
0:3.1.108-2.el8_2
fixed
RHEL 8.2 E4S
0:3.1.108-2.el8_2
fixed
RHEL 8.2 EUS
0:3.1.108-2.el8_2
fixed
RHEL 8.2 TUS
0:3.1.108-2.el8_2
fixed
dotnet-targeting-pack-3.1
RHEL 8
0:3.1.8-2.el8_2
fixed
RHEL 8.2 AUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 E4S
0:3.1.8-2.el8_2
fixed
RHEL 8.2 EUS
0:3.1.8-2.el8_2
fixed
RHEL 8.2 TUS
0:3.1.8-2.el8_2
fixed
dotnet-templates-3.1
RHEL 8
0:3.1.108-2.el8_2
fixed
RHEL 8.2 AUS
0:3.1.108-2.el8_2
fixed
RHEL 8.2 E4S
0:3.1.108-2.el8_2
fixed
RHEL 8.2 EUS
0:3.1.108-2.el8_2
fixed
RHEL 8.2 TUS
0:3.1.108-2.el8_2
fixed
netstandard-targeting-pack-2.1
RHEL 8
0:3.1.108-2.el8_2
fixed
RHEL 8.2 AUS
0:3.1.108-2.el8_2
fixed
RHEL 8.2 E4S
0:3.1.108-2.el8_2
fixed
RHEL 8.2 EUS
0:3.1.108-2.el8_2
fixed
RHEL 8.2 TUS
0:3.1.108-2.el8_2
fixed