Blog | G5 Cyber Security

Microsoft Says IE8 Weakness Not an Exploitable Flaw

Microsoft on Friday said a weakness in Internet Explorer 8 is not an exploitable vulnerability, but a technique for bypassing ASLR Microsoft added to recent versions of Windows and Internet Explorer in order to prevent some specific memory-based attacks. A security researcher recently published information on a flaw he found in mshtml.dll, the HTML viewer in IE 8. He said in his advisory that the problem could be exploited to leak a memory pointer, which, combined with some other data, could allow and attacker to run code on a remote machine.

Source: https://threatpost.com/microsoft-says-ie8-weakness-not-exploitable-flaw-070910/74195/

Exit mobile version