CVE-2014-2782: Buffer Overflow
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1773, CVE-2014-1783, CVE-2014-1784, CVE-2014-1786, CVE-2014-1795, CVE-2014-1805, CVE-2014-2758, CVE-2014-2759, CVE-2014-2765, CVE-2014-2766, and CVE-2014-2775.
Affected Software
Event History
Frequently Asked Questions
Which Internet Explorer versions are affected?
Microsoft Internet Explorer 9 through 11 are affected.
What does an attacker need to do to exploit this issue?
An attacker can trigger the vulnerability remotely using a crafted web site. No authentication is required according to the provided vector.
What impact can exploitation have?
Successful exploitation can allow arbitrary code execution or cause a denial of service through memory corruption. The provided severity vector indicates impacts to confidentiality, integrity, and availability.