MS.IE.Heartbeat.ActiveX.Control.Buffer.Overflow

description-logoDescription

It indicates a possible exploit of Heap-based buffer overflow vulnerability in Microsoft Internet Explorer


A Heap-based buffer overflow vulnerability is reported in Microsoft Internet Explorer that may allow an attacker to execute arbitrary code on the vulnerable system. This is due to Hrtbeat.ocx (Heartbeat) ActiveX control for Internet Explorer failure to sanitize SetupData parameter while initializing web pages parameters. For exploiting this an attacker may persuade a victim to visit a malformed web page, and execute arbitrary code on the vulnerable system leading to system compromise.

affected-products-logoAffected Products

Microsoft Internet Explorer 6.0 SP2 and earlier versions.

Impact logoImpact

Compromise of the affected system.

recomended-action-logoRecommended Actions

Apply Microsoft cumulative update KB834707.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-12-11 16.978