imPC@ndo IT

Tracker / CVE-2010-0492

CVE-2010-0492

High 8.1

Use-after-free vulnerability in mstime.dll in Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code via vectors related to the TIME2 behavior, the CTimeAction object, and destruction of markup, leading to memory corruption, aka "HTML Object Memory Corruption Vulnerability."

Affected products and versions

microsoft internet_explorer
microsoft windows_2003_server
microsoft windows_7
microsoft windows_server_2003
microsoft windows_server_2008
microsoft windows_vista
microsoft windows_xp

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References