CVE-2014-2802: Buffer Overflow
Published Jul 8, 2014
·Updated
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-2787, CVE-2014-2790, and CVE-2014-2806.
Affected Software
1 affected component
Microsoft Internet Explorer=11
Event History
Jul 8, 2014
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
Who is exposed to exploitation?
Users running Microsoft Internet Explorer 11 are exposed if they can be induced to visit a crafted web site. The vulnerability is remotely exploitable and requires no authentication.
2
What could an attacker achieve?
An attacker could execute arbitrary code or cause a denial of service through memory corruption. Exploitation requires a crafted web site and is rated critical with impacts to confidentiality, integrity, and availability.