CVE-2011-1255: Critical severity internet explorer vulnerability
The Timed Interactive Multimedia Extensions (aka HTML+TIME) implementation in Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "Time Element Memory Corruption Vulnerability."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1255?
CVE-2011-1255 has a high severity rating due to its potential for remote code execution.
How do I fix CVE-2011-1255?
To fix CVE-2011-1255, users should upgrade to a supported version of Internet Explorer or apply the latest security patches provided by Microsoft.
Which versions of Internet Explorer are affected by CVE-2011-1255?
CVE-2011-1255 affects Internet Explorer versions 6, 7, and 8.
Can CVE-2011-1255 be exploited remotely?
Yes, CVE-2011-1255 can be exploited remotely by attackers through malicious webpages.
Are there workarounds for CVE-2011-1255?
While the best solution is to update software, disabling Active Scripting in Internet Explorer can serve as a temporary workaround for CVE-2011-1255.