(MS13-022) Vulnerability in Silverlight Could Allow Remote Code Execution (2814124)
Data de publicação: 28 fevereiro 2014
Schweregrad: : Crítico
Identificador(es) CVE: : CVE-2013-0074
Data do informe: 28 fevereiro 2014
Descrição
This patch addresses a vulnerability found in Microsoft Silverlight. It can allow remote code execution when exploited via a specially crafted Silverlight application hosted on websites. Attackers can use a wide-arrayed of means such as compromised websites hosting ads and content or lure users via spammed message to visit a website that could exploit the said vulnerability.
Solução
Software infectado e versão:
- Microsoft Silverlight 5 when installed on Mac
- Microsoft Silverlight 5 Developer Runtime when installed on Mac
- Microsoft Silverlight 5 when installed on all supported releases of Microsoft Windows clients
- Microsoft Silverlight 5 Developer Runtime when installed on all supported releases of Microsoft Windows clients
- Microsoft Silverlight 5 when installed on all supported releases of Microsoft Windows servers
- Microsoft Silverlight 5 Developer Runtime when installed on all supported releases of Microsoft Windows servers