CVE-2009-3267: Medium severity internet explorer vulnerability
Microsoft Internet Explorer 6 through 6.0.2900.2180, and 7.0.6000.16711, allows remote attackers to cause a denial of service (CPU consumption) via an automatically submitted form containing a KEYGEN element, a related issue to CVE-2009-1828.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3267?
CVE-2009-3267 has a severity rating that indicates it can lead to a denial of service due to high CPU consumption.
How does CVE-2009-3267 affect Internet Explorer?
CVE-2009-3267 allows remote attackers to exploit Internet Explorer versions 6 and 7 using an automatically submitted form with a KEYGEN element.
What versions of Internet Explorer are affected by CVE-2009-3267?
CVE-2009-3267 affects Microsoft Internet Explorer versions 6.0 through 6.0.2900.2180 and 7.0.6000.16711.
How can CVE-2009-3267 be mitigated?
Mitigating CVE-2009-3267 involves updating Internet Explorer to the latest version available.
Is there a patch for CVE-2009-3267?
Microsoft has not released a specific patch for CVE-2009-3267, hence upgrading to a non-vulnerable version is the recommended action.