vendor:
Internet Explorer
by:
Marcin Ressel
7.5
CVSS
HIGH
Use-After-Free
416
CWE
Product Name: Internet Explorer
Affected Version From: 11.0.9600.18638
Affected Version To: 11.0.9600.18638
Patch Exists: NO
Related CWE:
CPE: a:microsoft:internet_explorer:11.0.9600.18638
Platforms Tested: Windows 7
2017
Internet Explorer 11 CMarkup::DestroySplayTree Use-After-Free
This exploit targets Internet Explorer 11 and specifically the CMarkup::DestroySplayTree function. It causes a use-after-free vulnerability, leading to an access violation exception. This vulnerability allows an attacker to execute arbitrary code or crash the application.
Mitigation:
Apply the latest security patches and updates provided by Microsoft. Avoid using Internet Explorer 11 and switch to a more secure web browser.