CVE-2017-11886: Buffer Overflow
Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allow an attacker to execute arbitrary code in the context of the current user, due to how Internet Explorer handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability". This CVE ID is unique from CVE-2017-11889, CVE-2017-11890, CVE-2017-11893, CVE-2017-11894, CVE-2017-11895, CVE-2017-11901, CVE-2017-11903, CVE-2017-11905, CVE-2017-11907, CVE-2017-11908, CVE-2017-11909, CVE-2017-11910, CVE-2017-11911, CVE-2017-11912, CVE-2017-11913, CVE-2017-11914, CVE-2017-11916, CVE-2017-11918, and CVE-2017-11930.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-11886?
CVE-2017-11886 has been assigned a CVSS base score indicating a critical vulnerability that allows remote code execution in Internet Explorer.
How do I fix CVE-2017-11886?
To fix CVE-2017-11886, you should apply the latest security updates and patches from Microsoft for Internet Explorer.
Which versions of Internet Explorer are affected by CVE-2017-11886?
CVE-2017-11886 affects Microsoft Internet Explorer 11 and earlier versions.
What can an attacker do with CVE-2017-11886?
An attacker exploiting CVE-2017-11886 can execute arbitrary code in the context of the current user, potentially leading to escalated privileges.
Are all Windows versions vulnerable to CVE-2017-11886?
No, CVE-2017-11886 specifically affects Windows 7 SP1, Windows Server 2008 R2 SP1, and various other versions, excluding updated versions of Windows 10 and newer.