CVE-2014-2757: Buffer Overflow
Published Jun 11, 2014
·Updated
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0282, CVE-2014-1775, CVE-2014-1779, CVE-2014-1799, and CVE-2014-1803.
Affected Software
6 affected components
Microsoft Internet Explorer=6
Microsoft Internet Explorer=7
Microsoft Internet Explorer=8
Microsoft Internet Explorer=9
Microsoft Internet Explorer=10
Microsoft Internet Explorer=11
Event History
Jun 11, 2014
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
Which Internet Explorer versions are affected?
Microsoft Internet Explorer versions 6 through 11 are affected.
2
What must an attacker do to exploit this issue?
An attacker must entice a target to access a crafted web site. The vulnerability is remotely exploitable and does not require authentication.
3
What is the potential impact of successful exploitation?
Successful exploitation can allow arbitrary code execution or cause a denial of service through memory corruption.