CVE-2015-6052: Infoleak
The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 engines, as used in Internet Explorer 8 through 11 and other products, allow remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "VBScript and JScript ASLR Bypass."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6052?
CVE-2015-6052 is classified as critical due to its potential for exploitation and impact on system security.
How do I fix CVE-2015-6052?
To fix CVE-2015-6052, apply the relevant Microsoft security updates for VBScript and JScript as outlined in the official bulletins.
What products are affected by CVE-2015-6052?
CVE-2015-6052 affects Microsoft VBScript and JScript engines, and Internet Explorer versions 8 through 11.
Can CVE-2015-6052 be exploited remotely?
Yes, CVE-2015-6052 allows remote attackers to bypass ASLR by leveraging a crafted website.
What systems are at higher risk for CVE-2015-6052?
Systems running unpatched versions of Internet Explorer 8, 9, 10, or 11 are at higher risk for exploitation of CVE-2015-6052.