CVE-2012-0172: Code Injection
Published Apr 10, 2012
·Updated
Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, aka "VML Style Remote Code Execution Vulnerability."
Affected Software
3 affected components
Microsoft Internet Explorer=6
Microsoft Internet Explorer=7
Microsoft Internet Explorer=8
Event History
Apr 10, 2012
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-0172?
CVE-2012-0172 has a critical severity rating, as it can lead to remote code execution on affected systems.
2
How do I fix CVE-2012-0172?
To fix CVE-2012-0172, users should apply the latest security updates provided by Microsoft.
3
Which versions of Internet Explorer are affected by CVE-2012-0172?
CVE-2012-0172 affects Internet Explorer versions 6, 7, and 8.
4
What type of vulnerability is CVE-2012-0172?
CVE-2012-0172 is classified as a remote code execution vulnerability.
5
What are the potential risks of CVE-2012-0172?
The potential risks of CVE-2012-0172 include an attacker being able to execute arbitrary code on the affected system.