CVE-2010-0492: Code Injection
Use-after-free vulnerability in mstime.dll in Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code via vectors related to the TIME2 behavior, the CTimeAction object, and destruction of markup, leading to memory corruption, aka "HTML Object Memory Corruption Vulnerability."
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0492?
CVE-2010-0492 is categorized as a critical severity vulnerability due to its ability to allow remote code execution.
How do I fix CVE-2010-0492?
You can fix CVE-2010-0492 by applying the latest security updates provided by Microsoft for affected Internet Explorer and Windows versions.
What software is affected by CVE-2010-0492?
CVE-2010-0492 affects Microsoft Internet Explorer 8 and various versions of Windows including Windows XP, Vista, 7, and 2003 Server.
What potential risks are associated with CVE-2010-0492?
The risks associated with CVE-2010-0492 include remote code execution that could lead to system compromise and unauthorized access to sensitive information.
Are there any known exploits for CVE-2010-0492?
Yes, there are known exploits for CVE-2010-0492 that target users of the affected versions of Internet Explorer.