CVE-2012-0164: Medium severity microsoft .net framework 4 vulnerability
Microsoft .NET Framework 4 does not properly compare index values, which allows remote attackers to cause a denial of service (application hang) via crafted requests to a Windows Presentation Foundation (WPF) application, aka ".NET Framework Index Comparison Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0164?
CVE-2012-0164 has a severity rating that may allow attackers to cause a denial of service through application hangs.
How do I fix CVE-2012-0164?
To fix CVE-2012-0164, update the affected Microsoft .NET Framework to the latest version as recommended by Microsoft.
Which versions of Microsoft .NET Framework are affected by CVE-2012-0164?
CVE-2012-0164 specifically affects Microsoft .NET Framework version 4.0.
What type of attack does CVE-2012-0164 facilitate?
CVE-2012-0164 facilitates a denial of service attack by allowing remote attackers to make the application hang.
Is there a workaround for CVE-2012-0164?
There are no official workarounds for CVE-2012-0164; the recommended action is to install the security update.