CVE-2015-0071: Microsoft Internet Explorer ASLR Bypass Vulnerability
Microsoft Internet Explorer 9 through 11 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "Internet Explorer ASLR Bypass Vulnerability."
Other sources
Microsoft Internet Explorer allows remote attackers to bypass the address space layout randomization (ASLR) protection mechanism via a crafted web site.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0071?
CVE-2015-0071 is classified as a critical vulnerability due to its capability to allow unauthorized remote code execution.
How do I fix CVE-2015-0071?
To fix CVE-2015-0071, apply the latest security updates from Microsoft for Internet Explorer.
Which versions of Internet Explorer are affected by CVE-2015-0071?
CVE-2015-0071 affects Internet Explorer versions 9, 10, and 11.
Can CVE-2015-0071 be exploited remotely?
Yes, CVE-2015-0071 can be exploited remotely through crafted websites.
What protections are bypassed by CVE-2015-0071?
CVE-2015-0071 bypasses the Address Space Layout Randomization (ASLR) protection mechanism.