PT-2006-2519 · Microsoft · .Net Framework
Published
2006-03-30
·
Updated
2017-07-20
·
CVE-2006-1511
CVSS v2.0
5.1
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
Microsoft .NET Framework versions 1.0 through 1.1
Description:
A buffer overflow issue exists in the ILASM assembler of the Microsoft .NET Framework, potentially allowing attackers to execute arbitrary code. This can be achieved through a .il file that calls a function with a long name.
Recommendations:
For Microsoft .NET Framework versions 1.0 through 1.1, consider avoiding the use of .il files that call functions with long names until a fix is available. As a temporary workaround, restrict the execution of .il files from untrusted sources to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
.Net Framework