← Back

CVE-2009-3671

nvd nist
Published: Dec 9, 2009Modified: Apr 23, 2026

JSON object

Loading...
8.1
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.2 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-3674.

Affected (23)

7 products
Internet Explorer
Windows 2000
Windows Xp
Windows Server 2008
Windows 7
Windows Server 2003
Windows Vista
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 5.0.1 sp4
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Version 6 sp1
All versions
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Version 6
All versions
Configuration D
4 vulnerable
Vulnerable SoftwareAffected Versions
Version 7
Microsoft
All versions
All versions
All versions
Configuration E
14 vulnerable
Vulnerable SoftwareAffected Versions
Version 8
All versions
All versions
Microsoft
All versions
All versions
All versions
All versions
All versions
All versions
Microsoft
All versions
All versions
All versions
Microsoft
All versions
All versions

Timeline

No history available yet.