CVE-2009-3673
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD
Description
Microsoft Internet Explorer 7 and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability."
Affected (23)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.0.1 sp4 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6 sp1 | |
| All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6 | |
| All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 7 | |
| All versions | |
| All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 8 | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions |
References (8)
Source: secure@microsoft.com
Source: secure@microsoft.com
US Government Resource
Source: secure@microsoft.com
Source: secure@microsoft.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.