PT-2010-1844 · Microsoft+1 · Windows+2
Carsten Book
·
Published
2010-08-11
·
Updated
2018-10-12
·
CVE-2010-0019
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Silverlight versions prior to 3.0.50611.0 on Windows
Microsoft Silverlight versions prior to 3.0.41130.0 on Mac OS X
Description
The issue arises from improper handling of pointers, allowing remote attackers to execute arbitrary code or cause a denial of service due to memory corruption and framework outage via a crafted web site.
Recommendations
For Microsoft Silverlight on Windows, update to version 3.0.50611.0 or later.
For Microsoft Silverlight on Mac OS X, update to version 3.0.41130.0 or later.
Fix
RCE
DoS
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Macos X
Silverlight
Windows