First published: Fri Mar 17 2017(Updated: )
Microsoft Internet Explorer 9 through 11 allow remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability." This vulnerability is different from those described in CVE-2017-0011, CVE-2017-0017, CVE-2017-0065, and CVE-2017-0068.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =9 | |
Internet Explorer | =10 | |
Internet Explorer | =11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-0009 has a severity rating of important due to its potential for information disclosure.
To mitigate CVE-2017-0009, it is recommended to update Internet Explorer to the latest version available.
CVE-2017-0009 affects Microsoft Internet Explorer versions 9, 10, and 11.
CVE-2017-0009 is classified as a memory corruption vulnerability that allows for information disclosure.
Yes, CVE-2017-0009 can be exploited remotely via a crafted web site.