CVE-2010-4254

Mono, when Moonlight before 2.3.0.1 or 2.99.x before 2.99.0.10 is used, does not properly validate arguments to generic methods, which allows remote attackers to bypass generic constraints, and possibly execute arbitrary code, via a crafted method call.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:mono:mono:*:*:*:*:*:*:*:*
OR cpe:2.3:a:novell:moonlight:*:*:*:*:*:*:*:*
cpe:2.3:a:novell:moonlight:2.99.0:*:*:*:*:*:*:*
cpe:2.3:a:novell:moonlight:2.99.1:*:*:*:*:*:*:*
cpe:2.3:a:novell:moonlight:2.99.2:*:*:*:*:*:*:*
cpe:2.3:a:novell:moonlight:2.99.7:*:*:*:*:*:*:*
cpe:2.3:a:novell:moonlight:2.99.9:*:*:*:*:*:*:*

History

No history.

Information

Published : 2010-12-06 13:44

Updated : 2024-02-04 17:54


NVD link : CVE-2010-4254

Mitre link : CVE-2010-4254

CVE.ORG link : CVE-2010-4254


JSON object : View

Products Affected

novell

  • moonlight

mono

  • mono
CWE
CWE-20

Improper Input Validation