CVE-2015-6125

Windows Server 2008 and 2012 - Use-After-Free in DNS Server

Title source: llm
STIX 2.1

Description

Use-after-free vulnerability in the DNS server in Microsoft Windows Server 2008 SP2 and R2 SP1 and Server 2012 Gold and R2 allows remote attackers to execute arbitrary code via crafted requests, aka "Windows DNS Use After Free Vulnerability."

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1034323

Scores

EPSS 0.2961
EPSS Percentile 98.0%

Details

Status published
Products (4)
microsoft/windows_server_2008
microsoft/windows_server_2008 r2 sp1
microsoft/windows_server_2012
microsoft/windows_server_2012 r2 (3 CPE variants)
Published Dec 09, 2015
Tracked Since Feb 18, 2026