MS.IE.MSXML3.Double.Free
Description
This indicates an attack attempt to exploit a Double Free vulnerability in Microsoft Internet Explorer.
The vulnerability is caused by an error in the msxml3.dll when processing certain types of document structures. A remote attacker can exploit this by enticing a user to visit a malicious website using a vulnerable version of Microsoft Internet Explorer. Successful exploitation may allow the attacker to execute arbitrary code on the victim's machine.
Affected Products
Microsoft Internet Explorer 11 (Windows 8)
Microsoft Internet Explorer 6 (Windows XP SP2)
Impact
System Compromise: Remote attackers can execute arbitrary script code within the context of the target user's browser.
Recommended Actions
Disable this ActiveX Control by setting its kill bit, by the method shown on the website:
http://support.microsoft.com/kb/240797.
Telemetry
Coverage
IPS (Regular DB) | |
IPS (Extended DB) |