CVE-2011-1257: Race Condition
Published Aug 10, 2011
·Updated
Race condition in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors involving access to an object, aka "Window Open Race Condition Vulnerability."
Affected Software
14 affected components
Microsoft Internet Explorer=6
Microsoft Windows Server 2003=sp2
Microsoft Windows XP=sp2
Microsoft Windows XP=sp3
Microsoft Internet Explorer=7
Microsoft Windows Server 2008
Microsoft Windows Server 2008=sp2
Microsoft Windows Vista=sp1
Microsoft Windows Vista=sp2
Microsoft Windows XP=sp2
Microsoft Internet Explorer=8
Microsoft Windows 7
Microsoft Windows Server 2008=r2
Microsoft Windows Server 2008=r2-sp1
Remediation
Event History
Aug 10, 2011
CVE Published
via MITRE·09:16 PM
Data Sourced
via MITRE·09:16 PM
Description
Data Sourced
09:55 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2011-1257?
CVE-2011-1257 has a severity rating that indicates a critical risk of remote code execution and potential denial of service.
2
How do I fix CVE-2011-1257?
To fix CVE-2011-1257, apply the security update provided by Microsoft as outlined in their advisory.
3
Which versions of Internet Explorer are affected by CVE-2011-1257?
CVE-2011-1257 affects Microsoft Internet Explorer versions 6, 7, and 8.
4
Can CVE-2011-1257 lead to memory corruption?
Yes, CVE-2011-1257 has the potential to cause memory corruption due to its race condition.
5
What type of vulnerability is CVE-2011-1257 classified as?
CVE-2011-1257 is classified as a race condition vulnerability.