Microsoft Internet Explorer Expression Objects Memory Corruption

Strike ID:
E07-60e01
CVSS:
9.3 (AV:N/AC:M/Au:N/C:C/I:C/A:C)
False Positive:
f
Variants:
1
Year:
2007

Description

This strike exploits a vulnerability in Microsoft Internet Explorer. If an object used for expressions is given a value or assignment to a property multiple times and then later freed only one of the references is removed. This use after free condition can cause memory corruption when trying to call the property later because of the invalid pointer dereferencing.

CVE

Bid