CVE Vulnerabilities

CVE-2015-1672

Published: May 13, 2015 | Modified: Oct 12, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, and 4.5.2 allows remote attackers to cause a denial of service (recursion and performance degradation) via crafted encrypted data in an XML document, aka .NET XML Decryption Denial of Service Vulnerability.

Affected Software

Name Vendor Start Version End Version
.net_framework Microsoft 2.0-sp2 (including) 2.0-sp2 (including)
.net_framework Microsoft 3.5 (including) 3.5 (including)
.net_framework Microsoft 3.5.1 (including) 3.5.1 (including)
.net_framework Microsoft 4.0 (including) 4.0 (including)
.net_framework Microsoft 4.5 (including) 4.5 (including)
.net_framework Microsoft 4.5.1 (including) 4.5.1 (including)
.net_framework Microsoft 4.5.2 (including) 4.5.2 (including)

References