First published: Wed Aug 15 2012(Updated: )
Integer overflow in Microsoft Internet Explorer 8 and 9, JScript 5.8, and VBScript 5.8 on 64-bit platforms allows remote attackers to execute arbitrary code by leveraging an incorrect size calculation during object copying, aka "JavaScript Integer Overflow Remote Code Execution Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =8 | |
Internet Explorer | =9 | |
Microsoft JScript | =5.8 | |
Microsoft VBScript | =5.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2523 is rated as critical due to its potential for remote code execution.
To fix CVE-2012-2523, users should apply the Microsoft security updates released in August 2012.
CVE-2012-2523 affects Microsoft Internet Explorer versions 8 and 9, as well as Microsoft JScript and VBScript 5.8 on 64-bit platforms.
CVE-2012-2523 can be exploited by remote attackers through specially crafted web content.
While the best solution is to apply the security updates, disabling active scripting in the browser can serve as a temporary workaround.