Use-after-free vulnerability in Microsoft Internet Explorer 6 SP1, 6 SP2, and and 7 allows remote attackers to execute arbitrary code by assigning malformed values to certain properties, as demonstrated using the by property of an animateMotion SVG element, aka "Property Memory Corruption Vulnerability."
2008-02-12T23:00:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv3.1: 8.8 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | internet_explorer | 6 | Yes |
Operating System | microsoft | windows_2000 | - | No |
Application | microsoft | internet_explorer | 6 | Yes |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_2003_server | - | No |
Operating System | microsoft | windows_server_2003 | * | No |
Operating System | microsoft | windows_server_2003 | * | No |
Operating System | microsoft | windows_xp | * | No |
Operating System | microsoft | windows_xp | - | No |
Operating System | microsoft | windows_xp | - | No |
Application | microsoft | internet_explorer | 7 | Yes |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_2003_server | * | No |
Operating System | microsoft | windows_vista | * | No |
Operating System | microsoft | windows_vista | * | No |
Operating System | microsoft | windows_xp | * | No |
Operating System | microsoft | windows_xp | - | No |
Operating System | microsoft | windows_xp | - | No |