CVE-2009-3671

Description

Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka Uninitialized Memory Corruption Vulnerability, a different vulnerability than CVE-2009-3674.

Risk Information

Base Score
8.1
MODERATE
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
56.494

Associated Vulnerability

VulnerabilityOS Platform
Cumulative Security Update for Internet Explorer 5.01 Service Pack 4 (KB976325)Windows
Update for Internet Explorer 6 SP1 (KB976325)Windows
Cumulative Security Update for Internet Explorer for Windows XP (KB976325)Windows
Cumulative Security Update for Internet Explorer for Windows XP (KB976325) Windows
Cumulative Security Update for Internet Explorer for Windows Server 2003 (KB976325)Windows
Cumulative Security Update for Internet Explorer 7 for Windows XP (KB976325)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 (KB976325)Windows
Cumulative Security Update for Internet Explorer 7 in Windows Vista (KB976325) x86 based systemsWindows
Cumulative Security Update for Internet Explorer 7 in Windows Vista (KB976325) x86 based systems for SP1Windows
Cumulative Security Update for Internet Explorer 7 in Windows Vista (KB976325) Windows
Cumulative Security Update for Internet Explorer 7 in Windows Server 2008 (KB976325) x86 based systemsWindows
Cumulative Security Update for Internet Explorer 7 in Windows Server 2008 (KB976325)Windows
Cumulative Security Update for Internet Explorer 7 for Windows XP x64 Edition (KB976325)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 x64 Edition (KB976325) Windows
Cumulative Security Update for Internet Explorer 7 in Windows Vista x64 Edition (KB976325)Windows
Cumulative Security Update for Internet Explorer 7 in Windows Vista x64 Edition (KB976325) for SP1Windows
Cumulative Security Update for Internet Explorer 7 in Windows Vista x64 Edition (KB976325) for SP2Windows
Cumulative Security Update for Internet Explorer 7 in Windows Server 2008 x64 Edition (KB976325)Windows
Cumulative Security Update for Internet Explorer 7 in Windows Server 2008 x64 Edition (KB976325) for SP2Windows
Cumulative Security Update for Internet Explorer 8 for Windows XP (KB975364) x86 based systemsWindows
Cumulative Security Update for Internet Explorer 8 for Windows XP (KB975364) x86 based systems for SP3Windows
Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 (KB976325)Windows
Cumulative Security Update for Internet Explorer 8 in Windows Vista (KB976325) x86 based systemsWindows
Cumulative Security Update for Internet Explorer 8 in Windows Vista (KB976325) x86 based systems for SP1Windows
Cumulative Security Update for Internet Explorer 8 in Windows Vista (KB976325) x86 based systems for SP2Windows
Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 (KB976325) x86 based systemsWindows
Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 (KB976325) x86 based systems for SP2Windows
Cumulative Security Update for Internet Explorer 8 in Windows 7 (KB976325)Windows
Cumulative Security Update for Internet Explorer 8 for Windows XP x64 Edition (KB976325)Windows
Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 x64 Edition (KB976325)Windows
Cumulative Security Update for Internet Explorer 8 in Windows Vista x64 Edition (KB976325)Windows
http://www.microsoft.com/downloads/details.aspx?familyid=1e466b48-422f-4c80-8fdf-ba61111942b1&displaylang=enWindows
Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 x64 Edition (KB976325)Windows
Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 x64 Edition (KB976325) for SP2Windows
Cumulative Security Update for Internet Explorer 8 in Windows 7 x64 Edition (KB976325)Windows
Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 R2 x64 Edition (KB976325)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-7949Cumulative Security Update for Internet Explorer for Windows XP (KB976325)
PATCH-7950Cumulative Security Update for Internet Explorer for Windows Server 2003 (KB976325)
PATCH-7955Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 (KB976325)
PATCH-7957Cumulative Security Update for Internet Explorer 7 in Windows Vista (KB976325)
PATCH-7959Cumulative Security Update for Internet Explorer 7 in Windows Server 2008 (KB976325)
PATCH-7961Cumulative Security Update for Internet Explorer 7 for Windows XP x64 Edition (KB976325)
PATCH-7965Cumulative Security Update for Internet Explorer 7 in Windows Vista x64 Edition (KB976325)
PATCH-7966Cumulative Security Update for Internet Explorer 7 in Windows Server 2008 x64 Edition (KB976325)
PATCH-7967Cumulative Security Update for Internet Explorer 7 in Windows Server 2008 x64 Edition (KB976325)
PATCH-7968Cumulative Security Update for Internet Explorer 8 for Windows XP (KB976325)
PATCH-7969Cumulative Security Update for Internet Explorer 8 for Windows XP (KB976325)
PATCH-7970Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 (KB976325)
PATCH-7972Cumulative Security Update for Internet Explorer 8 in Windows Vista (KB976325)
PATCH-7973Cumulative Security Update for Internet Explorer 8 in Windows Vista (KB976325)
PATCH-7974Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 (KB976325)
PATCH-7975Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 (KB976325)
PATCH-7976Cumulative Security Update for Internet Explorer 8 in Windows 7 (KB976325)
PATCH-7977Cumulative Security Update for Internet Explorer 8 for Windows XP x64 Edition (KB976325)
PATCH-7978Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 x64 Edition (KB976325)
PATCH-7980Cumulative Security Update for Internet Explorer 8 in Windows Vista x64 Edition (KB976325)
PATCH-7981http://www.microsoft.com/downloads/details.aspx?familyid=1e466b48-422f-4c80-8fdf-ba61111942b1&displaylang=en
PATCH-7982Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 x64 Edition (KB976325)
PATCH-7983Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 x64 Edition (KB976325)
PATCH-7984Cumulative Security Update for Internet Explorer 8 in Windows 7 x64 Edition (KB976325)
PATCH-7985Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 R2 x64 Edition (KB976325)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234