CVE-2011-0347 Information

Description

Microsoft Internet Explorer on Windows XP allows remote attackers to trigger an incorrect GUI display and have unspecified other impact via vectors related to the DOM implementation as demonstrated by cross_fuzz.

Reference

http://archives.neohapsis.com/archives/fulldisclosure/2010-12/0698.html http://blogs.technet.com/b/srd/archive/2011/01/07/assessing-the-risk-of-public-issues-currently-being-tracked-by-the-msrc.aspx http://lcamtuf.blogspot.com/2011/01/announcing-crossfuzz-potential-0-day-in.html http://lcamtuf.coredump.cx/cross_fuzz/fuzzer_timeline.txt http://lcamtuf.coredump.cx/cross_fuzz/msie_display.jpg http://www.microsoft.com/technet/security/advisory/2490606.mspx http://www.securityfocus.com/archive/1/515506/100/0/threaded https://exchange.xforce.ibmcloud.com/vulnerabilities/64571 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A12514

Share on: