CVE-2015-1714: Buffer Overflow
Published May 13, 2015
·Updated
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
Affected Software
2 affected components
Microsoft Internet Explorer=10
Microsoft Internet Explorer=11
Event History
May 13, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
Which Internet Explorer versions are affected?
The affected versions identified are Microsoft Internet Explorer 10 and Internet Explorer 11.
2
What does an attacker need to exploit this issue?
An attacker can exploit the vulnerability remotely by using a crafted web site. No authentication is required according to the supplied attack vector.
3
What impact can successful exploitation have?
Successful exploitation can allow arbitrary code execution or cause a denial of service through memory corruption. The provided severity vector indicates impacts to confidentiality, integrity, and availability.