Security Advisory
CVE-2015-2440
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Microsoft XML Core Services 3.0, 5.0, and 6.0 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "MSXML Information Disclosure Vulnerability."