Intrusion Prevention

MS.NET.Framework.No.ASLR.DLL.Security.Bypass

Description

This indicates an attack attempt to exploit a Security Bypass vulnerability in Microsoft .Net Framework.
The vulnerability is due to lack of ASLR security feature in the the vulnerable DLL. An attacker can use this vulnerability to bypass security features the vulnerable machine leading to other attacks.

Affected Products

Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.5
Microsoft .NET Framework 3.5.1

Impact

Security Bypass: Remote attackers can bypass security checks of vulnerable systems

Recommended Actions

Apply the most recent upgrade or patch from the vendor.
https://technet.microsoft.com/en-us/library/security/MS15-118

CVE References

CVE-2015-6115