HIGH
Microsoft Internet Explorer 6 SP1 and SP2, 7, and 8 allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, related to the CStyleSheet object and a free of the root container, aka "Memory Corruption Vulnerability."
Published Jun 8, 2010
9.3
HIGHCVSS 2.0
EPSS 33.06%
Description
Microsoft Internet Explorer 6 SP1 and SP2, 7, and 8 allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, related to the CStyleSheet object and a free of the root container, aka "Memory Corruption Vulnerability."
Affected products
No data.
Configuration 1
AND
- 8
Running on/with
OR
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- r2
- r2
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
Configuration 2
AND
- 6
Running on/with
- n/a
Configuration 3
AND
- 6
Running on/with
OR
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
Configuration 4
AND
- 7
Running on/with
OR
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (7)
- http://support.avaya.com/css/P8/documents/100089747 x_refsource_CONFIRM
- http://www.securityfocus.com/archive/1/511727/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/40417 vdb-entryx_refsource_BID
- http://www.us-cert.gov/cas/techalerts/TA10-159B.html third-party-advisoryx_refsource_CERTUS Government Resource
- http://www.zerodayinitiative.com/advisories/ZDI-10-102/ x_refsource_MISC
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-035 vendor-advisoryx_refsource_MS
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7406 vdb-entrysignaturex_refsource_OVAL
| Link | Providers | Tags |
|---|---|---|
| http://support.avaya.com/css/P8/documents/100089747 | x_refsource_CONFIRM | |
| http://www.securityfocus.com/archive/1/511727/100/0/threaded | mailing-listx_refsource_BUGTRAQ | |
| http://www.securityfocus.com/bid/40417 | vdb-entryx_refsource_BID | |
| http://www.us-cert.gov/cas/techalerts/TA10-159B.html | third-party-advisoryx_refsource_CERTUS Government Resource | |
| http://www.zerodayinitiative.com/advisories/ZDI-10-102/ | x_refsource_MISC | |
| https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-035 | vendor-advisoryx_refsource_MS | |
| https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7406 | vdb-entrysignaturex_refsource_OVAL |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner microsoft
Published Jun 8, 2010
Updated Aug 7, 2024
Reserved Apr 5, 2010
Link CVE-2010-1262
CISA Vulnrichment
Updated n/a