Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-0989

Опубликовано: 13 апр. 2011
Источник: ubuntu
Приоритет: negligible
EPSS Низкий
CVSS2: 5.8

Описание

The RuntimeHelpers.InitializeArray method in metadata/icall.c in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, does not properly restrict data types, which allows remote attackers to modify internal read-only data structures, and cause a denial of service (plugin crash) or corrupt the internal state of the security manager, via a crafted media file, as demonstrated by modifying a C# struct.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

hardy

ignored

end of life
karmic

ignored

end of life
lucid

ignored

end of life
maverick

ignored

end of life
natty

ignored

end of life
oneiric

not-affected

2.10.5-1
precise

not-affected

quantal

not-affected

Показывать по

Ссылки на источники

EPSS

Процентиль: 76%
0.00973
Низкий

5.8 Medium

CVSS2

Связанные уязвимости

nvd
больше 14 лет назад

The RuntimeHelpers.InitializeArray method in metadata/icall.c in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, does not properly restrict data types, which allows remote attackers to modify internal read-only data structures, and cause a denial of service (plugin crash) or corrupt the internal state of the security manager, via a crafted media file, as demonstrated by modifying a C# struct.

debian
больше 14 лет назад

The RuntimeHelpers.InitializeArray method in metadata/icall.c in Mono, ...

github
больше 3 лет назад

The RuntimeHelpers.InitializeArray method in metadata/icall.c in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, does not properly restrict data types, which allows remote attackers to modify internal read-only data structures, and cause a denial of service (plugin crash) or corrupt the internal state of the security manager, via a crafted media file, as demonstrated by modifying a C# struct.

EPSS

Процентиль: 76%
0.00973
Низкий

5.8 Medium

CVSS2