CVE-2015-6125
Windows Server 2008 and 2012 - Use-After-Free in DNS Server
Title source: llmDescription
Use-after-free vulnerability in the DNS server in Microsoft Windows Server 2008 SP2 and R2 SP1 and Server 2012 Gold and R2 allows remote attackers to execute arbitrary code via crafted requests, aka "Windows DNS Use After Free Vulnerability."
References (2)
Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1034323
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-127
Scores
EPSS
0.2961
EPSS Percentile
98.0%
Details
Status
published
Products (4)
microsoft/windows_server_2008
microsoft/windows_server_2008
r2 sp1
microsoft/windows_server_2012
microsoft/windows_server_2012
r2 (3 CPE variants)
Published
Dec 09, 2015
Tracked Since
Feb 18, 2026