‫ Microsoft Internet Explorer CMarkup Use-After-Free Vulnerability

IRCAD2014023148
ID: IRCAD2014023148
Release Date: 2014-01-17
Criticality level: Highly critical
Software:

Microsoft Internet Explorer 10.x

Microsoft Internet Explorer 9.x

Description:

A vulnerability has been reported in Microsoft Internet Explorer, which can be exploited by malicious people to compromise a user's system.

The vulnerability is caused due to a use-after-free error when handling CMarkup objects and can be exploited to corrupt memory.

Successful exploitation allows execution of arbitrary code.

Solution
Apply FixIt.
 
References:
Microsoft (KB2934088):
FireEye:
US-CERT (VU#732479):
Secunia:
 

نظرات

بدون نظر
شما برای نظر دادن باید وارد شوید

نوشته

 
تاریخ ایجاد: 4 اسفند 1392

امتیاز

امتیاز شما
تعداد امتیازها:0