HTTP: Microsoft Silverlight Memory Corruption Vulnerability

This signature detects an attempt to exploit a known vulnerability in Microsoft Silverlight. An attacker can create a malicious Web-page, that, when viewed by a user, can result in a remote code execution on the user's computer.

Extended Description

Microsoft Silverlight ActiveX control is prone to a remote memory-corruption vulnerability. An attacker can exploit this issue by enticing an unsuspecting user to view a malicious webpage. Successful exploits will allow the attacker to execute arbitrary code within the context of the application (typically Internet Explorer) that uses the ActiveX control.

Affected Products

Microsoft silverlight

References

BugTraq: 42138

CVE: CVE-2010-0019

Short Name
HTTP:STC:SILVERLIGHT-MEM-CORR
Severity
Major
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
CVE-2010-0019 Corruption Memory Microsoft Silverlight Vulnerability bid:42138
Release Date
08/10/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Rarely
Vendors

Microsoft

CVSS Score

9.3

Found a potential security threat?