This application requires Javascript for optimal performance.

MS.IE.Freed.Object.Acess.Heap.Corruption

Release Date

Jun 11, 2009

Severity

critical

Impact

System Compromise: Remote attackers can gain control of vulnerable systems

Description

This indicates a possible attack against a heap-corruption vulnerability in Microsoft Internet Explorer.

The vulnerability is due to the software's inability to properly handle accessing uninitialized or deleted objects. Remote attackers may exploit this to execute arbitrary code.

Affected Products

Microsoft Internet Explorer 7.0
Other versions may also be infected

Recommended Actions

Apply patch, available from the web site:
http://www.microsoft.com/technet/security/Bulletin/ms09-019.mspx

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2009-1530

Reference/s

http://www.microsoft.com/technet/security/Bulletin/ms09-019.mspx (MS-ID)

Reference: VID-17506