CVE-2014-0277: Buffer Overflow
Published Feb 12, 2014
·Updated
Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0278 and CVE-2014-0279.
Affected Software
1 affected component
Microsoft Internet Explorer=8
Event History
Feb 12, 2014
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Data Sourced
via NVD·04:50 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What attacker interaction is required to exploit this issue?
An attacker needs to entice a user into visiting a crafted website. The vulnerability is remotely reachable and does not require attacker authentication.
2
Which Internet Explorer version is identified as affected?
The provided information identifies Microsoft Internet Explorer 8 as affected.
3
What impact can successful exploitation have?
Successful exploitation can result in arbitrary code execution or a denial of service caused by memory corruption. The listed impact includes compromise of confidentiality, integrity, and availability.