CVE-2012-1524: Code Injection
Published Jul 10, 2012
·Updated
Microsoft Internet Explorer 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, aka "Attribute Remove Remote Code Execution Vulnerability."
Affected Software
17 affected components
All of the following
Microsoft Internet Explorer=9
Any of the following
Microsoft Windows 7
Microsoft Windows 7=sp1
Microsoft Windows 7=sp1
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=r2
Microsoft Windows Vista=sp2
Microsoft Internet Explorer=9
Microsoft Windows 7
Microsoft Windows 7=sp1
Microsoft Windows 7=sp1
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=r2
Microsoft Windows Vista=sp2
Microsoft Windows Vista=sp2
Event History
Jul 10, 2012
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-1524?
CVE-2012-1524 has a critical severity level as it allows remote attackers to execute arbitrary code on affected systems.
2
How do I fix CVE-2012-1524?
To fix CVE-2012-1524, ensure you apply the relevant Microsoft updates and patches as detailed in the security bulletins.
3
Which versions of Internet Explorer are affected by CVE-2012-1524?
CVE-2012-1524 specifically affects Internet Explorer 9.
4
Can CVE-2012-1524 impact my Windows operating system?
CVE-2012-1524 can impact Windows systems that run Internet Explorer 9, including Windows 7 and Windows Vista.
5
What type of vulnerability is CVE-2012-1524 classified as?
CVE-2012-1524 is classified as a remote code execution vulnerability in Microsoft Internet Explorer.