CVE-2015-6114: Infoleak
Published Dec 9, 2015
·Updated
Microsoft Silverlight 5 before 5.1.41105.00 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "Microsoft Silverlight Information Disclosure Vulnerability," a different vulnerability than CVE-2015-6165.
Affected Software
1 affected component
Microsoft Silverlight=5.0
Event History
Dec 9, 2015
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6114?
CVE-2015-6114 has a moderate severity rating as it allows attackers to bypass ASLR protection.
2
How do I fix CVE-2015-6114?
To fix CVE-2015-6114, update Microsoft Silverlight to version 5.1.41105.00 or later.
3
What software is affected by CVE-2015-6114?
CVE-2015-6114 specifically affects Microsoft Silverlight version 5.0.
4
What type of attack is facilitated by CVE-2015-6114?
CVE-2015-6114 facilitates attacks that can lead to information disclosure through a crafted web site.
5
Is CVE-2015-6114 related to any other vulnerabilities?
Yes, CVE-2015-6114 is related to CVE-2015-6165, but it is a different vulnerability.