// For flags

CVE-2011-0990

 

Severity Score

5.8
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Race condition in the FastCopy optimization in the Array.Copy method in metadata/icall.c in Mono, when Moonlight 2.x before 2.4.1 or 3.x before 3.99.3 is used, allows remote attackers to trigger a buffer overflow and modify internal data structures, and cause a denial of service (plugin crash) or corrupt the internal state of the security manager, via a crafted media file in which a thread makes a change after a type check but before a copy action.

Condición de carrera en la optimización de FastCopy en el método Array.Copy en metadata/icall.c de Mono, cuando se utiliza Moonlight 2.x anterior a 2.4.1 o 3.x anterior a 3.99.3, permite a atacantes remotos provocar un desbordamiento del búfer y modificar las estructuras internas de datos, también permite provocar una denegación de servicio (caída del plugin) o corromper el estado interno del gestor de seguridad mediante un fichero media manipulado, en el que un hilo realiza un cambio después de una comprobación de escritura pero antes de una acción de copiado.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2011-02-14 CVE Reserved
  • 2011-04-13 CVE Published
  • 2023-12-02 EPSS Updated
  • 2024-08-06 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Mono
Search vendor "Mono"
Mono
Search vendor "Mono" for product "Mono"
*-
Affected
Novell
Search vendor "Novell"
Moonlight
Search vendor "Novell" for product "Moonlight"
2.0
Search vendor "Novell" for product "Moonlight" and version "2.0"
-
Affected
Novell
Search vendor "Novell"
Moonlight
Search vendor "Novell" for product "Moonlight"
2.3.0
Search vendor "Novell" for product "Moonlight" and version "2.3.0"
-
Affected
Novell
Search vendor "Novell"
Moonlight
Search vendor "Novell" for product "Moonlight"
2.4
Search vendor "Novell" for product "Moonlight" and version "2.4"
-
Affected
Novell
Search vendor "Novell"
Moonlight
Search vendor "Novell" for product "Moonlight"
2.31
Search vendor "Novell" for product "Moonlight" and version "2.31"
-
Affected
Novell
Search vendor "Novell"
Moonlight
Search vendor "Novell" for product "Moonlight"
3.0
Search vendor "Novell" for product "Moonlight" and version "3.0"
-
Affected
Novell
Search vendor "Novell"
Moonlight
Search vendor "Novell" for product "Moonlight"
3.99
Search vendor "Novell" for product "Moonlight" and version "3.99"
-
Affected