CVE-2016-3206: Buffer Overflow
The Microsoft (1) JScript 5.8 and (2) VBScript 5.7 and 5.8 engines, as used in Internet Explorer 9 through 11 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3205 and CVE-2016-3207.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-3206?
CVE-2016-3206 has a critical severity rating, as it can allow remote code execution.
How do I fix CVE-2016-3206?
To fix CVE-2016-3206, apply the security updates provided by Microsoft for the affected JScript and VBScript engines.
What products are affected by CVE-2016-3206?
CVE-2016-3206 affects Microsoft JScript 5.8, Microsoft VBScript 5.7 and 5.8, and Internet Explorer versions 9, 10, and 11.
What are the potential impacts of CVE-2016-3206?
The potential impacts of CVE-2016-3206 include arbitrary code execution and denial of service due to memory corruption.
Can CVE-2016-3206 be exploited through a web browser?
Yes, CVE-2016-3206 can be exploited via a crafted website visited using the affected versions of Internet Explorer.