CVE-2011-1998: Critical severity internet explorer vulnerability
Published Oct 12, 2011
·Updated
Microsoft Internet Explorer 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that was not properly initialized, aka "Jscript9.dll Remote Code Execution Vulnerability."
Affected Software
7 affected components
Microsoft Internet Explorer=9
Microsoft Windows 7
Microsoft Windows 7=sp1
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=r2
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Vista=sp2
Remediation
Event History
Oct 12, 2011
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Data Sourced
02:52 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2011-1998?
CVE-2011-1998 has a critical severity level due to its potential for remote code execution.
2
How do I fix CVE-2011-1998?
To fix CVE-2011-1998, apply the relevant Microsoft security updates provided in the MS11-081 bulletin.
3
What versions of Internet Explorer are affected by CVE-2011-1998?
CVE-2011-1998 specifically affects Microsoft Internet Explorer version 9.
4
Can CVE-2011-1998 be exploited remotely?
Yes, CVE-2011-1998 can be exploited remotely by attackers through malicious web content.
5
What are the risks of not patching CVE-2011-1998?
Not patching CVE-2011-1998 exposes systems to the risk of arbitrary code execution and potential full system compromise.