Vulnerabilities > CVE-2011-1845 - Resource Management Errors vulnerability in Microsoft Silverlight

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
low complexity
microsoft
CWE-399
nessus

Summary

Multiple memory leaks in the DataGrid control implementation in Microsoft Silverlight 4 before 4.0.60310.0 allow remote attackers to cause a denial of service (memory consumption) via an application involving (1) subscriptions to an INotifyDataErrorInfo.ErrorsChanged event or (2) a TextBlock or TextBox element.

Common Weakness Enumeration (CWE)

Nessus

NASL familyWindows
NASL idSMB_KB2526954.NASL
descriptionThe remote Windows host is running a version of Microsoft Silverlight that is affected by multiple vulnerabilities : - A memory leak exists relating to a popup control and a custom
last seen2020-06-01
modified2020-06-02
plugin id53830
published2011-05-06
reporterThis script is Copyright (C) 2011-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/53830
titleMS KB2526954: Microsoft Silverlight 4.0 < 4.0.60310 Multiple Vulnerabilities