CVE-2014-1776: Microsoft Internet Explorer Memory Corruption Vulnerability
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to the CMarkup::IsConnectedToPrimaryMarkup function, as exploited in the wild in April 2014. NOTE: this issue originally emphasized VGX.DLL, but Microsoft clarified that "VGX.DLL does not contain the vulnerable code leveraged in this exploit. Disabling VGX.DLL is an exploit-specific workaround that provides an immediate, effective workaround to help block known attacks."
Other sources
Microsoft Internet Explorer contains a memory corruption vulnerability that allows remote attackers to execute code in the context of the current user.
— CISA
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Disable VGX.DLL as an exploit-specific workaround to block known attacks (noting Microsoft clarified that VGX.DLL does not contain the vulnerable code leveraged in the exploit).
Event History
Frequently Asked Questions
What is the severity of CVE-2014-1776?
CVE-2014-1776 is rated as critical due to its potential for remote code execution and memory corruption.
How do I fix CVE-2014-1776?
To mitigate CVE-2014-1776, users should update Internet Explorer to the latest version provided by Microsoft.
Which versions of Internet Explorer are affected by CVE-2014-1776?
CVE-2014-1776 affects Internet Explorer versions 6 through 11.
Can CVE-2014-1776 lead to a denial of service?
Yes, CVE-2014-1776 can cause a denial of service due to memory corruption.
Is CVE-2014-1776 actively exploited in the wild?
Yes, CVE-2014-1776 was reported to be actively exploited in the wild as of April 2014.