Back to search
CVE-2011-0992
Published: Apr 13, 2011
Modified: Aug 6, 2024
PUBLISHED
Description
Use-after-free vulnerability in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, allows remote attackers to cause a denial of service (plugin crash) or obtain sensitive information via vectors related to member data in a resurrected MonoThread instance.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
momo-monothread-info-disclosure(66627)
vdb-entry
x_refsource_XF
https://bugzilla.novell.com/show_bug.cgi?id=678515
x_refsource_CONFIRM
https://bugzilla.novell.com/show_bug.cgi?id=667077
x_refsource_CONFIRM
47208
vdb-entry
x_refsource_BID
[oss-security] 20110406 Moonlight release 2.4.1 with security fixes
mailing-list
x_refsource_MLIST
44002
third-party-advisory
x_refsource_SECUNIA
http://www.mono-project.com/Vulnerabilities
x_refsource_CONFIRM
https://bugzilla.redhat.com/show_bug.cgi?id=694933
x_refsource_CONFIRM
https://github.com/mono/mono/commit/722f9890f09aadfc37ae479e7d946d5fc5ef7b91
x_refsource_CONFIRM
44076
third-party-advisory
x_refsource_SECUNIA
[opensuse-updates] 20110408 openSUSE-SU-2011:0313-1 (critical): moonlight security update
mailing-list
x_refsource_MLIST
ADV-2011-0904
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now