Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.0 SP2, 3.5, and 3.5.1 does not properly implement the ASLR protection mechanism, which allows remote attackers to obtain sensitive address information via a crafted web site, aka ".NET ASLR Vulnerability."
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-08-12 14:55
Updated : 2018-10-12 15:06
NVD link : CVE-2014-4062
Mitre link : CVE-2014-4062
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
microsoft
- .net_framework