<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic .NET DOS vulnarabilities CVE-2023-36042 in Management &amp; Governance</title>
    <link>https://community.qlik.com/t5/Management-Governance/NET-DOS-vulnarabilities-CVE-2023-36042/m-p/2416576#M30022</link>
    <description>&lt;P&gt;Hi, our customer is running Qlik Sense Enterprise May 2023 patch 11 and has performance and stability issues of Qlik when running a security/vulnerability scan on the infrastructure.&lt;/P&gt;
&lt;P&gt;This is the list of .net related issues found by the scanner: CVE-2023-36042, CVE-2024-21312, CVE-2024-0056, CVE-2024-0057&lt;/P&gt;
&lt;P&gt;Would patching to 13 fix this? Which version of .net is in Patch 13 for May 2023?&lt;/P&gt;
&lt;P&gt;In general is there a list of .net versions supplied by the Qlik installers?&lt;/P&gt;</description>
    <pubDate>Thu, 08 Feb 2024 11:41:34 GMT</pubDate>
    <dc:creator>dobak</dc:creator>
    <dc:date>2024-02-08T11:41:34Z</dc:date>
    <item>
      <title>.NET DOS vulnarabilities CVE-2023-36042</title>
      <link>https://community.qlik.com/t5/Management-Governance/NET-DOS-vulnarabilities-CVE-2023-36042/m-p/2416576#M30022</link>
      <description>&lt;P&gt;Hi, our customer is running Qlik Sense Enterprise May 2023 patch 11 and has performance and stability issues of Qlik when running a security/vulnerability scan on the infrastructure.&lt;/P&gt;
&lt;P&gt;This is the list of .net related issues found by the scanner: CVE-2023-36042, CVE-2024-21312, CVE-2024-0056, CVE-2024-0057&lt;/P&gt;
&lt;P&gt;Would patching to 13 fix this? Which version of .net is in Patch 13 for May 2023?&lt;/P&gt;
&lt;P&gt;In general is there a list of .net versions supplied by the Qlik installers?&lt;/P&gt;</description>
      <pubDate>Thu, 08 Feb 2024 11:41:34 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/NET-DOS-vulnarabilities-CVE-2023-36042/m-p/2416576#M30022</guid>
      <dc:creator>dobak</dc:creator>
      <dc:date>2024-02-08T11:41:34Z</dc:date>
    </item>
    <item>
      <title>Re: .NET DOS vulnarabilities CVE-2023-36042</title>
      <link>https://community.qlik.com/t5/Management-Governance/NET-DOS-vulnarabilities-CVE-2023-36042/m-p/2417563#M30023</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.qlik.com/t5/user/viewprofilepage/user-id/218817"&gt;@dobak&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;The supported .net framework for may 2023 Qlik Sense is &lt;STRONG&gt;4.8&lt;/STRONG&gt;. Please refer the system requirement for additional info.&lt;BR /&gt;&lt;A title="System requirements for Qlik Sense Enterprise" href="https://help.qlik.com/en-US/sense-admin/May2023/Subsystems/DeployAdministerQSE/Content/Sense_DeployAdminister/Common/system-requirements.htm" target="_self"&gt;System requirements for Qlik Sense Enterprise&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;However, I could not find the provided CVE reported in our forum so would request you to submit a case along with the report mentioned in the below article&lt;BR /&gt;&lt;A title="Qlik Security Vulnerability Policy " href="https://community.qlik.com/t5/Official-Support-Articles/Qlik-Security-Vulnerability-Policy/ta-p/1713629" target="_self"&gt;Qlik Security Vulnerability Policy &lt;/A&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I hope this helps!&lt;BR /&gt;&lt;BR /&gt;Best Regards,&lt;BR /&gt;Deeksha&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 12 Feb 2024 06:31:41 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/NET-DOS-vulnarabilities-CVE-2023-36042/m-p/2417563#M30023</guid>
      <dc:creator>Deeksha_JayaSapalya</dc:creator>
      <dc:date>2024-02-12T06:31:41Z</dc:date>
    </item>
    <item>
      <title>Re: .NET DOS vulnarabilities CVE-2023-36042</title>
      <link>https://community.qlik.com/t5/Management-Governance/NET-DOS-vulnarabilities-CVE-2023-36042/m-p/2419107#M30024</link>
      <description>&lt;P&gt;according to the answer from support this should be fixed from Nov 2023 + the latest patch.&lt;/P&gt;</description>
      <pubDate>Thu, 15 Feb 2024 07:55:32 GMT</pubDate>
      <guid>https://community.qlik.com/t5/Management-Governance/NET-DOS-vulnarabilities-CVE-2023-36042/m-p/2419107#M30024</guid>
      <dc:creator>dobak</dc:creator>
      <dc:date>2024-02-15T07:55:32Z</dc:date>
    </item>
  </channel>
</rss>

