← All CVEs

CVE-2011-1845

high · 7.8

Multiple memory leaks in the DataGrid control implementation in Microsoft Silverlight 4 before 4.0.60310.0 allow remote attackers to cause a denial of service (memory consumption) via an application involving (1) subscriptions to an INotifyDataErrorInfo.ErrorsChanged event or (2) a TextBlock or TextBox element.

7.8
CVSS
12.2%
EPSS (exploit prob.)
96th
EPSS percentile
2011-05-03
Published

AV:N/AC:L/Au:N/C:N/I:N/A:C

Weaknesses

CWE-399

Affected products

VendorProductAffected versions
microsoftsilverlight<= 4.0.60129.0
microsoftsilverlight2.0.31005.00
microsoftsilverlight2.0.40115.00
microsoftsilverlight3.0.40624.00
microsoftsilverlight3.0.40723.0
microsoftsilverlight3.0.40818.0
microsoftsilverlight3.0.50106.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2011-1845