Update 3.1.4.md

This commit is contained in:
Rahul Bhandari 2020-05-13 11:26:23 -07:00 committed by GitHub
parent dcf8cc7a47
commit 248b54f9da
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -72,6 +72,8 @@ Microsoft is aware of a denial of service vulnerability which exists when .NET C
A remote unauthenticated attacker could exploit this vulnerability by issuing specially crafted requests to the .NET Core application.
For further information visit [Github Announcement](https://github.com/dotnet/announcements/issues/156)
### [CVE-2020-1161: ASP.NET Core Denial of Service Vulnerability](https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2020-1161)
Microsoft is releasing this security advisory to provide information about a vulnerability in ASP.NET Core. This advisory also provides guidance on what developers can do to update their applications to remove this vulnerability.
@ -82,6 +84,8 @@ A remote unauthenticated attacker could exploit this vulnerability by issuing sp
The update addresses the vulnerability by correcting how the ASP.NET Core web application handles web requests.
For further information visit [Github Announcement](https://github.com/aspnet/Announcements/issues/416)
### Additional fixes in this release
* [CoreCLR](https://github.com/dotnet/coreclr/issues?utf8=%E2%9C%93&q=milestone%3A3.1.4+label%3Aservicing-approved)