CVE-2011-0990
Published Apr 13, 2011
Last updated 7 years ago
Overview
- Description
- Race condition in the FastCopy optimization in the Array.Copy method in metadata/icall.c in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, allows remote attackers to trigger a buffer overflow and modify internal data structures, and cause a denial of service (plugin crash) or corrupt the internal state of the security manager, via a crafted media file in which a thread makes a change after a type check but before a copy action.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5.8
- Impact score
- 4.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-362
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:mono:mono:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E062208D-082B-4BFD-85CA-3848ECE6F8CF" }, { "criteria": "cpe:2.3:a:novell:moonlight:2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "711824C0-5BFC-4D3A-BAB2-84B8F20BDD7C" }, { "criteria": "cpe:2.3:a:novell:moonlight:2.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C74F2C01-7E26-474A-B8CA-EFCC5C91D83D" }, { "criteria": "cpe:2.3:a:novell:moonlight:2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "704EB745-3307-4903-8B3B-DCC6682EE228" }, { "criteria": "cpe:2.3:a:novell:moonlight:2.31:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DB7A6358-630E-43FA-B2B8-C99A8808BB09" }, { "criteria": "cpe:2.3:a:novell:moonlight:3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AADDCD5B-D116-4BFC-BD2B-4EB6F4470359" }, { "criteria": "cpe:2.3:a:novell:moonlight:3.99:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "21676825-737D-4071-A7F1-BFB6047215F1" } ], "operator": "OR" } ] } ]