CVE-2009-2668: High severity internet explorer vulnerability
Published Aug 5, 2009
·Updated
Microsoft Internet Explorer 6 through 6.0.2900.2180 and 7 through 7.0.6000.16473 allows remote attackers to cause a denial of service (CPU consumption) via an XML document composed of a long series of start-tags with no corresponding end-tags, a related issue to CVE-2009-1232.
Affected Software
2 affected components
Microsoft Internet Explorer=7
Microsoft Internet Explorer=6
Event History
Aug 5, 2009
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-2668?
CVE-2009-2668 has been categorized as a denial of service vulnerability.
2
How do I fix CVE-2009-2668?
To mitigate CVE-2009-2668, users should upgrade to a newer version of Internet Explorer that is not affected by this vulnerability.
3
Who is affected by CVE-2009-2668?
CVE-2009-2668 affects users of Microsoft Internet Explorer 6 and 7.
4
What type of attack does CVE-2009-2668 involve?
CVE-2009-2668 can be exploited through a specially crafted XML document to cause high CPU consumption.
5
When was CVE-2009-2668 disclosed?
CVE-2009-2668 was disclosed in July 2009.