CVE-2009-0553: Critical severity Microsoft Internet Explorer vulnerability
Microsoft Internet Explorer 6 SP1, 6 and 7 on Windows XP SP2 and SP3, 6 and 7 on Windows Server 2003 SP1 and SP2, 7 on Windows Vista Gold and SP1, and 7 on Windows Server 2008 allows remote attackers to execute arbitrary code via a web page that triggers presence of an object in memory that was (1) not properly initialized or (2) deleted, aka "Uninitialized Memory Corruption Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-0553?
CVE-2009-0553 has a critical severity rating, as it allows remote attackers to execute arbitrary code.
How do I fix CVE-2009-0553?
To fix CVE-2009-0553, users should update to the latest version of Microsoft Internet Explorer or apply the relevant security updates provided by Microsoft.
What systems are affected by CVE-2009-0553?
CVE-2009-0553 affects Microsoft Internet Explorer versions 6 and 7 on Windows XP, Windows Server 2003, Windows Vista, and Windows Server 2008.
What types of attacks does CVE-2009-0553 allow?
CVE-2009-0553 allows remote attackers to execute arbitrary code, potentially leading to system compromise.
Is there a workaround for CVE-2009-0553?
While the best solution is to apply updates, users may mitigate risks by disabling active scripting in Internet Explorer until the vulnerability is addressed.