CVE-2008-3476: Critical severity internet explorer vulnerability
Microsoft Internet Explorer 5.01 SP4 and 6 does not properly handle errors associated with access to uninitialized memory, which allows remote attackers to execute arbitrary code via a crafted HTML document, aka "HTML Objects Memory Corruption Vulnerability."
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3476?
CVE-2008-3476 is rated as critical due to its potential to allow remote code execution via crafted HTML documents.
How do I fix CVE-2008-3476?
To fix CVE-2008-3476, users should upgrade to a newer version of Internet Explorer, as Microsoft has released updates to address this vulnerability.
What versions of Internet Explorer are affected by CVE-2008-3476?
CVE-2008-3476 affects Microsoft Internet Explorer versions 5.01 SP4 and 6, including 6 SP1 and 7.
Can my system be exploited by CVE-2008-3476 if it runs Windows 2000 or Windows XP?
Yes, systems running Windows 2000 or Windows XP with the affected versions of Internet Explorer may be vulnerable to CVE-2008-3476.
Are there any known exploits associated with CVE-2008-3476?
Yes, there are reports of exploits targeting CVE-2008-3476 that could allow attackers to execute arbitrary code.