CVE-2015-1705: Buffer Overflow
Published May 13, 2015
·Updated
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-1689.
Affected Software
3 affected components
Microsoft Internet Explorer=9
Microsoft Internet Explorer=10
Microsoft Internet Explorer=11
Event History
May 13, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
Which Internet Explorer versions are affected?
Microsoft Internet Explorer versions 9 through 11 are affected.
2
Does exploitation require an attacker to authenticate or have local access?
No. The vulnerability is remotely reachable and requires no authentication, but exploitation requires a crafted web site.
3
What could a successful exploit allow?
A successful exploit could allow arbitrary code execution or cause a denial of service through memory corruption.