CVE-2015-6166: Buffer Overflow
Published Dec 9, 2015
·Updated
Microsoft Silverlight 5 before 5.1.41105.00 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read or write access) via unspecified open and close requests, aka "Microsoft Silverlight RCE Vulnerability."
Affected Software
1 affected component
Microsoft Silverlight=5.0
Event History
Dec 9, 2015
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6166?
CVE-2015-6166 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2015-6166?
To mitigate CVE-2015-6166, update Microsoft Silverlight to version 5.1.41105.00 or later.
3
What are the potential impacts of CVE-2015-6166?
CVE-2015-6166 can lead to arbitrary code execution or a denial of service through out-of-bounds access.
4
Who is affected by CVE-2015-6166?
CVE-2015-6166 affects users of Microsoft Silverlight version 5.0 and earlier.
5
When was CVE-2015-6166 disclosed?
CVE-2015-6166 was disclosed in November 2015 as part of Microsoft's monthly security updates.