E07-60f01
CVSS:
6.8 (AV:N/AC:M/Au:N/C:P/I:P/A:P)
False Positive:
t
Variants:
1
Year:
2007
Description
Microsoft Internet Explorer contains a memory corruption vulnerability. If an element object is created with no variable referencing it, the memory will be freed during garbage collection. If cloneNode is then called on that object, which contains a pointer to the now freed memory, memory corruption could occur. Successful exploitation could lead to execution of arbitrary code or abnormal termination of Internet Explorer.
CVE
References
MSB
BID
ExploitDB
Secunia
Security Tracker
Metasploit
ZDI
OSVDB
{39119}