First published: Wed May 09 2012(Updated: )
Microsoft .NET Framework 4 does not properly compare index values, which allows remote attackers to cause a denial of service (application hang) via crafted requests to a Windows Presentation Foundation (WPF) application, aka ".NET Framework Index Comparison Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft .NET Framework | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0164 has a severity rating that may allow attackers to cause a denial of service through application hangs.
To fix CVE-2012-0164, update the affected Microsoft .NET Framework to the latest version as recommended by Microsoft.
CVE-2012-0164 specifically affects Microsoft .NET Framework version 4.0.
CVE-2012-0164 facilitates a denial of service attack by allowing remote attackers to make the application hang.
There are no official workarounds for CVE-2012-0164; the recommended action is to install the security update.