Release DateAug 15, 2008 |
Severitycritical |
ImpactSystem compromise. |
DescriptionThis indicates an attack attempt towards a memory corruption vulnerability In Microsoft Internet Explorer.The vulnerability is caused by accessing uninitialized memory in certain situations. An attacker may exploit this to cause denial of service or remote code execution. |
Affected ProductsMicrosoft Internet Explorer 6Microsoft Internet Explorer 7 |
Recommended ActionsPlease refer to the following website for the latest update or patch:http://www.microsoft.com/technet/security/bulletin/MS08-045.mspx |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2008-2254 |
Reference/shttp://www.frsirt.com/english/advisories/2008/2349 (FrSIRT)http://www.microsoft.com/technet/security/Bulletin/ms08-045.mspx (MS-ID) |