CVE-2011-0347 Information
Description
Microsoft Internet Explorer on Windows XP allows remote attackers to trigger an incorrect GUI display and have unspecified other impact via vectors related to the DOM implementation as demonstrated by cross_fuzz.
Reference
http://archives.neohapsis.com/archives/fulldisclosure/2010-12/0698.html http://blogs.technet.com/b/srd/archive/2011/01/07/assessing-the-risk-of-public-issues-currently-being-tracked-by-the-msrc.aspx http://lcamtuf.blogspot.com/2011/01/announcing-crossfuzz-potential-0-day-in.html http://lcamtuf.coredump.cx/cross_fuzz/fuzzer_timeline.txt http://lcamtuf.coredump.cx/cross_fuzz/msie_display.jpg http://www.microsoft.com/technet/security/advisory/2490606.mspx http://www.securityfocus.com/archive/1/515506/100/0/threaded https://exchange.xforce.ibmcloud.com/vulnerabilities/64571 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A12514
Share on: