First published: Sat Aug 15 2015(Updated: )
The RyuJIT compiler in Microsoft .NET Framework 4.6 produces incorrect code during an attempt at optimization, which allows remote attackers to execute arbitrary code via a crafted .NET application, aka "RyuJIT Optimization Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-2479 and CVE-2015-2481.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft .NET Framework | =4.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-2480 has a severity rating of important, indicating potential significant impact on systems using the affected software.
To mitigate CVE-2015-2480, you should apply the latest security updates provided by Microsoft for the .NET Framework.
Exploitation of CVE-2015-2480 could allow remote attackers to execute arbitrary code on affected systems.
CVE-2015-2480 affects Microsoft .NET Framework version 4.6.
CVE-2015-2480 can be exploited through a crafted .NET application designed to take advantage of the RyuJIT compiler's optimization flaws.