CVE-2010-0249
CVE-2010-0249
In short
Internet Explorer has a flaw where it incorrectly handles deleted objects in memory, allowing attackers to run malicious code when you visit a specially crafted webpage. This vulnerability was actively exploited to attack organizations in late 2009.
Technical detail
Use-after-free vulnerability in IE 6–8 on multiple Windows versions where improper object lifecycle management allows remote code execution via crafted HTML. Attack vector is network-based (malicious webpage), requiring user interaction to visit the page; impacts confidentiality, integrity, and availability of the affected system.
Summary generated and translated by AI from the official description.
Use-after-free vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 on Windows 2000 SP4; Windows XP SP2 and SP3; Windows Server 2003 SP2; Windows Vista Gold, SP1, and SP2; Windows Server 2008 Gold, SP2, and R2; and Windows 7 allows remote attackers to execute arbitrary code by accessing a pointer associated with a deleted object, related to incorrectly initialized memory and improper handling of objects in memory, as exploited in the wild in December 2009 and January 2010 during Operation Aurora, aka "HTML Object Memory Corruption Vulnerability."
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected products
n/a · n/apublic PoCs found — 3
cve_referencewww.exploit-db.com/exploits/11167unverifiedexploitdbwww.exploit-db.com/exploits/16599unverifiedexploitdbwww.exploit-db.com/exploits/11167unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://blogs.technet.com/msrc/archive/2010/01/14/security-advisory-979352.aspxhttp://news.cnet.com/8301-27080_3-10435232-245.htmlhttp://osvdb.org/61697https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-002http://securitytracker.com/id?1023462https://exchange.xforce.ibmcloud.com/vulnerabilities/55642https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6835http://support.microsoft.com/kb/979352https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2010-0249http://www.exploit-db.com/exploits/11167http://www.kb.cert.org/vuls/id/492515http://www.microsoft.com/technet/security/advisory/979352.mspx