CVE-2010-2558

Microsoft Internet Explorer 6, 7, and 8 - Remote Code Execution via Race Condition

Title source: llm
STIX 2.1

Description

Race condition in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to an object in memory, aka "Race Condition Memory Corruption Vulnerability."

References (3)

Core 3
Core References
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA10-222A.html
Patch, Vendor Advisory vendor-advisory x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-053

Scores

EPSS 0.2104
EPSS Percentile 97.3%

Details

CWE
CWE-362
Status published
Products (3)
microsoft/internet_explorer 6
microsoft/internet_explorer 7
microsoft/internet_explorer 8
Published Aug 11, 2010
Tracked Since Feb 18, 2026