Description
Microsoft Internet Explorer on Windows XP allows remote attackers to trigger an incorrect GUI display and have unspecified other impact via vectors related to the DOM implementation, as demonstrated by cross_fuzz.
References (9)
Core 9
Core References
Various Sources x_refsource_misc
http://lcamtuf.blogspot.com/2011/01/announcing-crossfuzz-potential-0-day-in.html
Various Sources x_refsource_misc
http://blogs.technet.com/b/srd/archive/2011/01/07/assessing-the-risk-of-public-issues-currently-being-tracked-by-the-msrc.aspx
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/64571
Third Party Advisory mailing-list
x_refsource_fulldisc
http://archives.neohapsis.com/archives/fulldisclosure/2010-12/0698.html
Third Party Advisory, VDB Entry mailing-list
x_refsource_bugtraq
http://www.securityfocus.com/archive/1/515506/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry
signature
x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12514
Vendor Advisory x_refsource_misc
http://www.microsoft.com/technet/security/advisory/2490606.mspx
Various Sources x_refsource_misc
http://lcamtuf.coredump.cx/cross_fuzz/fuzzer_timeline.txt
Various Sources x_refsource_misc
http://lcamtuf.coredump.cx/cross_fuzz/msie_display.jpg
Scores
EPSS
0.2229
EPSS Percentile
97.4%
Details
Status
published
Products (1)
microsoft/internet_explorer
Published
Jan 07, 2011
Tracked Since
Feb 18, 2026