CVE-2014-2806: Buffer Overflow
Published Jul 8, 2014
·Updated
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-2787, CVE-2014-2790, and CVE-2014-2802.
Affected Software
1 affected component
Microsoft Internet Explorer=11
Event History
Jul 8, 2014
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What systems are exposed to this issue?
Systems using Microsoft Internet Explorer 11 are exposed when a user visits a crafted web site. The vulnerability is remotely exploitable and does not require attacker authentication.
2
What can an attacker achieve?
An attacker can trigger memory corruption through a crafted web site, potentially resulting in arbitrary code execution or a denial of service. The listed impact includes compromise of confidentiality, integrity, and availability.