CVE-2013-3143: Code Injection
Published Jul 10, 2013
·Updated
Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3161.
Affected Software
2 affected components
Microsoft Internet Explorer=9
Microsoft Internet Explorer=10
Event History
Jul 10, 2013
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-3143?
CVE-2013-3143 has a critical severity score of 9.3.
2
What vulnerabilities are associated with CVE-2013-3143?
CVE-2013-3143 involves memory corruption vulnerabilities that can lead to arbitrary code execution or denial of service.
3
How do I fix CVE-2013-3143?
To mitigate CVE-2013-3143, users should update to a patched version of Microsoft Internet Explorer.
4
Which versions of Internet Explorer are affected by CVE-2013-3143?
CVE-2013-3143 affects Microsoft Internet Explorer versions 9 and 10.
5
Can CVE-2013-3143 be exploited without user interaction?
Yes, CVE-2013-3143 can be exploited through crafted websites without requiring any authentication from the user.