CVE-2015-6136
Microsoft Windows VBScript Split Function Use-After-Free Information Disclosure Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 engines, as used in Internet Explorer 8 through 11 and other products, allow remote attackers to execute arbitrary code via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability."
Los motores de Microsoft (1) VBScript 5.7 y 5.8 y (2) JScript 5.7 y 5.8, como se utilizan en Internet Explorer 8 hasta la versión 11 y otros productos, permiten a atacantes remotos ejecutar código arbitrario a través de un sitio web manipulado, también conocida como 'Scripting Engine Memory Corruption Vulnerability'.
This vulnerability allows remote attackers to disclose the contents of memory on applications using the VBScript scripting language on vulnerable installations of Microsoft Windows. Microsoft Internet Explorer is an affected application. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific flaw exists within the implementation of the VBScript Split function. By supplying specially crafted parameters, an attacker can disclose the contents of memory. An attacker can use this information in conjunction with other vulnerabilities to execute code in the context of the process.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-08-14 CVE Reserved
- 2015-12-08 CVE Published
- 2024-08-06 CVE Updated
- 2024-11-15 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (10)
URL | Tag | Source |
---|---|---|
http://www.securitytracker.com/id/1034315 | Vdb Entry | |
http://www.securitytracker.com/id/1034317 | Vdb Entry | |
http://www.zerodayinitiative.com/advisories/ZDI-15-591 | X_refsource_misc | |
http://www.zerodayinitiative.com/advisories/ZDI-15-592 | X_refsource_misc | |
http://www.zerodayinitiative.com/advisories/ZDI-15-593 | X_refsource_misc | |
http://www.zerodayinitiative.com/advisories/ZDI-15-594 | X_refsource_misc | |
http://www.zerodayinitiative.com/advisories/ZDI-15-595 | X_refsource_misc | |
http://www.zerodayinitiative.com/advisories/ZDI-15-597 | X_refsource_misc |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Microsoft Search vendor "Microsoft" | Jscript Search vendor "Microsoft" for product "Jscript" | 5.7 Search vendor "Microsoft" for product "Jscript" and version "5.7" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 8 Search vendor "Microsoft" for product "Internet Explorer" and version "8" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Jscript Search vendor "Microsoft" for product "Jscript" | 5.7 Search vendor "Microsoft" for product "Jscript" and version "5.7" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 9 Search vendor "Microsoft" for product "Internet Explorer" and version "9" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Jscript Search vendor "Microsoft" for product "Jscript" | 5.7 Search vendor "Microsoft" for product "Jscript" and version "5.7" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 10 Search vendor "Microsoft" for product "Internet Explorer" and version "10" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Jscript Search vendor "Microsoft" for product "Jscript" | 5.7 Search vendor "Microsoft" for product "Jscript" and version "5.7" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 11 Search vendor "Microsoft" for product "Internet Explorer" and version "11" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Jscript Search vendor "Microsoft" for product "Jscript" | 5.8 Search vendor "Microsoft" for product "Jscript" and version "5.8" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 8 Search vendor "Microsoft" for product "Internet Explorer" and version "8" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Jscript Search vendor "Microsoft" for product "Jscript" | 5.8 Search vendor "Microsoft" for product "Jscript" and version "5.8" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 9 Search vendor "Microsoft" for product "Internet Explorer" and version "9" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Jscript Search vendor "Microsoft" for product "Jscript" | 5.8 Search vendor "Microsoft" for product "Jscript" and version "5.8" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 10 Search vendor "Microsoft" for product "Internet Explorer" and version "10" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Jscript Search vendor "Microsoft" for product "Jscript" | 5.8 Search vendor "Microsoft" for product "Jscript" and version "5.8" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 11 Search vendor "Microsoft" for product "Internet Explorer" and version "11" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Vbscript Search vendor "Microsoft" for product "Vbscript" | 5.7 Search vendor "Microsoft" for product "Vbscript" and version "5.7" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 8 Search vendor "Microsoft" for product "Internet Explorer" and version "8" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Vbscript Search vendor "Microsoft" for product "Vbscript" | 5.7 Search vendor "Microsoft" for product "Vbscript" and version "5.7" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 9 Search vendor "Microsoft" for product "Internet Explorer" and version "9" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Vbscript Search vendor "Microsoft" for product "Vbscript" | 5.7 Search vendor "Microsoft" for product "Vbscript" and version "5.7" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 10 Search vendor "Microsoft" for product "Internet Explorer" and version "10" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Vbscript Search vendor "Microsoft" for product "Vbscript" | 5.7 Search vendor "Microsoft" for product "Vbscript" and version "5.7" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 11 Search vendor "Microsoft" for product "Internet Explorer" and version "11" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Vbscript Search vendor "Microsoft" for product "Vbscript" | 5.8 Search vendor "Microsoft" for product "Vbscript" and version "5.8" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 8 Search vendor "Microsoft" for product "Internet Explorer" and version "8" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Vbscript Search vendor "Microsoft" for product "Vbscript" | 5.8 Search vendor "Microsoft" for product "Vbscript" and version "5.8" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 9 Search vendor "Microsoft" for product "Internet Explorer" and version "9" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Vbscript Search vendor "Microsoft" for product "Vbscript" | 5.8 Search vendor "Microsoft" for product "Vbscript" and version "5.8" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 10 Search vendor "Microsoft" for product "Internet Explorer" and version "10" | - |
Safe
|
Microsoft Search vendor "Microsoft" | Vbscript Search vendor "Microsoft" for product "Vbscript" | 5.8 Search vendor "Microsoft" for product "Vbscript" and version "5.8" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Internet Explorer Search vendor "Microsoft" for product "Internet Explorer" | 11 Search vendor "Microsoft" for product "Internet Explorer" and version "11" | - |
Safe
|