CVE-2014-0319: High severity Microsoft Silverlight vulnerability
Published Mar 12, 2014
·Updated
Microsoft Silverlight 5 before 5.1.30214.0 and Silverlight 5 Developer Runtime before 5.1.30214.0 allow attackers to bypass the DEP and ASLR protection mechanisms via unspecified vectors, aka "Silverlight DEP/ASLR Bypass Vulnerability."
Affected Software
8 affected components
Microsoft Silverlight=5.0.60401.0
Microsoft Silverlight=5.0.60818.0
Microsoft Silverlight=5.0.60818.0-rc
Microsoft Silverlight=5.0.61118.0
Microsoft Silverlight=5.1.10411.0
Microsoft Silverlight=5.1.20125.0
Microsoft Silverlight=5.1.20513.0
Microsoft Silverlight=5.1.20913.0
Event History
Mar 12, 2014
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-0319?
CVE-2014-0319 has a severity rating of Critical, indicating a significant risk to affected systems.
2
How do I fix CVE-2014-0319?
To fix CVE-2014-0319, update Microsoft Silverlight to version 5.1.30214.0 or later.
3
What systems are affected by CVE-2014-0319?
CVE-2014-0319 affects Microsoft Silverlight versions prior to 5.1.30214.0.
4
What are the implications of CVE-2014-0319?
CVE-2014-0319 allows attackers to bypass Data Execution Prevention (DEP) and Address Space Layout Randomization (ASLR) protections.
5
Is there a workaround for CVE-2014-0319 until it is patched?
Currently, there are no known workarounds for CVE-2014-0319; patching is necessary to mitigate the vulnerability.