MS.IE.MSXML3.Double.Free

description-logoDescription

This indicates an attack attempt to exploit a Double Free vulnerability in Microsoft Internet Explorer.
The vulnerability is caused by an error in the msxml3.dll when processing certain types of document structures. A remote attacker can exploit this by enticing a user to visit a malicious website using a vulnerable version of Microsoft Internet Explorer. Successful exploitation may allow the attacker to execute arbitrary code on the victim's machine.

affected-products-logoAffected Products

Microsoft Internet Explorer 11 (Windows 8)
Microsoft Internet Explorer 6 (Windows XP SP2)

Impact logoImpact

System Compromise: Remote attackers can execute arbitrary script code within the context of the target user's browser.

recomended-action-logoRecommended Actions

Disable this ActiveX Control by setting its kill bit, by the method shown on the website:
http://support.microsoft.com/kb/240797.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2023-10-12 25.655 Sig Added
2023-10-04 25.650 Name:MS.
IE.
0day.
40416:MS.
IE.
MSXML3.
Double.
Free