Lucene search

K
cveMitreCVE-2011-0992
HistoryApr 13, 2011 - 9:55 p.m.

CVE-2011-0992

2011-04-1321:55:00
CWE-399
mitre
web.nvd.nist.gov
40
cve-2011-0992
mono
moonlight
vulnerability
remote attacker
dos
denial of service
sensitive information

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:N/A:P

AI Score

7.2

Confidence

High

EPSS

0.023

Percentile

89.7%

Use-after-free vulnerability in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, allows remote attackers to cause a denial of service (plugin crash) or obtain sensitive information via vectors related to member data in a resurrected MonoThread instance.

Affected configurations

Nvd
Node
monomono
OR
novellmoonlightMatch2.0
OR
novellmoonlightMatch2.3.0
OR
novellmoonlightMatch2.4
OR
novellmoonlightMatch2.31
OR
novellmoonlightMatch3.0
OR
novellmoonlightMatch3.99
VendorProductVersionCPE
monomono*cpe:2.3:a:mono:mono:*:*:*:*:*:*:*:*
novellmoonlight2.0cpe:2.3:a:novell:moonlight:2.0:*:*:*:*:*:*:*
novellmoonlight2.3.0cpe:2.3:a:novell:moonlight:2.3.0:*:*:*:*:*:*:*
novellmoonlight2.4cpe:2.3:a:novell:moonlight:2.4:*:*:*:*:*:*:*
novellmoonlight2.31cpe:2.3:a:novell:moonlight:2.31:*:*:*:*:*:*:*
novellmoonlight3.0cpe:2.3:a:novell:moonlight:3.0:*:*:*:*:*:*:*
novellmoonlight3.99cpe:2.3:a:novell:moonlight:3.99:*:*:*:*:*:*:*

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:N/A:P

AI Score

7.2

Confidence

High

EPSS

0.023

Percentile

89.7%