CVE-2012-0012: Medium severity Microsoft Internet Explorer vulnerability
Published Feb 14, 2012
·Updated
Microsoft Internet Explorer 9 does not properly handle the creation and initialization of string objects, which allows remote attackers to read data from arbitrary process-memory locations via a crafted web site, aka "Null Byte Information Disclosure Vulnerability."
Affected Software
7 affected components
Microsoft Internet Explorer=9
Microsoft Windows 7
Microsoft Windows 7=sp1
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=r2
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Vista=sp2
Remediation
Event History
Feb 14, 2012
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description