CVE-2012-2522: Code Injection
Published Aug 15, 2012
·Updated
Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a malformed virtual function table after this table's deletion, aka "Virtual Function Table Corruption Remote Code Execution Vulnerability."
Affected Software
4 affected components
Microsoft Internet Explorer=6
Microsoft Internet Explorer=7
Microsoft Internet Explorer=8
Microsoft Internet Explorer=9
Event History
Aug 15, 2012
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-2522?
CVE-2012-2522 has a high severity rating due to its potential for remote code execution.
2
How do I fix CVE-2012-2522?
To fix CVE-2012-2522, it is recommended to apply the Microsoft security updates provided in MS12-052.
3
Which versions of Internet Explorer are affected by CVE-2012-2522?
CVE-2012-2522 affects Microsoft Internet Explorer versions 6, 7, 8, and 9.
4
What type of vulnerability is CVE-2012-2522?
CVE-2012-2522 is a remote code execution vulnerability caused by improper handling of objects in memory.
5
Can CVE-2012-2522 be exploited without user interaction?
Yes, CVE-2012-2522 can be exploited remotely without requiring user interaction.