Skip to content

External Vulnerability in System.Net.WebSockets.Client

High
Lulalaby published GHSA-wj4j-gr3f-cfh7 Oct 7, 2021

Package

nuget DisCatSharp (NuGet)

Affected versions

<=9.8.3

Patched versions

9.8.4

Description

See https://nvd.nist.gov/vuln/detail/CVE-2017-0249 & https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-0249

We don't know what's the state from Microsoft side.
This is just a information that it could exist.
(Affects DSharpPlus btw too)

Severity

High
7.3
/ 10

CVSS base metrics

Attack vector
Network
Attack complexity
Low
Privileges required
None
User interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
Low
Availability
Low
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

CVE ID

CVE-2017-0249

Weaknesses

No CWEs