CVE-2009-2530: Code Injection
Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-2531.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2530?
CVE-2009-2530 has a critical severity level due to the potential for remote code execution.
How do I fix CVE-2009-2530?
To fix CVE-2009-2530, it is recommended to apply the security updates provided by Microsoft.
Which versions of Internet Explorer are affected by CVE-2009-2530?
CVE-2009-2530 affects Internet Explorer versions 5.01, 6, 7, and 8.
What type of attack can exploit CVE-2009-2530?
CVE-2009-2530 can be exploited through remote attacks that lead to memory corruption.
Is Windows Vista affected by CVE-2009-2530?
Yes, Windows Vista is affected by CVE-2009-2530 if it runs an incompatible version of Internet Explorer.