vendor:
Internet Explorer
by:
Unknown
7.5
CVSS
HIGH
Use-after-free
416
CWE
Product Name: Internet Explorer
Affected Version From: IE11
Affected Version To: IE11
Patch Exists: Unknown
Related CWE: Unknown
CPE: a:microsoft:internet_explorer
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 7 64-bit
Unknown
Use-after-free vulnerability in Internet Explorer
There is a Use-after-free vulnerability in Internet Explorer that could potentially be used for memory disclosure. This was tested on IE11 running on Window 7 64-bit with the latest patches applied. Note that the PoC was tested in a 64-bit tab process via TabProcGrowth=0 registry flag and the page heap was enabled for iexplore.exe (The PoC is somewhat unreliable so applying these settings might help with reproducing). The PoC code is provided in the text.
Mitigation:
Apply the latest patches and enable the page heap for iexplore.exe.