CVE-2014-1765

Microsoft Internet Explorer <11 - Use After Free

Title source: llm
STIX 2.1

Description

Multiple use-after-free vulnerabilities in Microsoft Internet Explorer 6 through 11 allow remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by Sebastian Apelt and Andreas Schmidt during a Pwn2Own competition at CanSecWest 2014.

References (5)

Core 5
Core References
Press/Media Coverage x_refsource_misc
http://twitter.com/thezdi/statuses/444216845734666240
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/59775
VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1030532

Scores

EPSS 0.1565
EPSS Percentile 96.5%

Details

CWE
CWE-399
Status published
Products (6)
microsoft/internet_explorer 6
microsoft/internet_explorer 7
microsoft/internet_explorer 8
microsoft/internet_explorer 9
microsoft/internet_explorer 10
microsoft/internet_explorer 11
Published Apr 27, 2014
Tracked Since Feb 18, 2026