Microsoft Internet Explorer Multiple Remote Code Execution Vulnerabilities
BID:46821
Info
Microsoft Internet Explorer Multiple Remote Code Execution Vulnerabilities
| Bugtraq ID: | 46821 |
| Class: | Unknown |
| CVE: |
CVE-2011-1345 CVE-2011-1346 CVE-2011-1347 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 09 2011 12:00AM |
| Updated: | Apr 15 2011 02:34PM |
| Credit: | Stephen Fewer |
| Vulnerable: |
Microsoft Internet Explorer 8 Microsoft Internet Explorer 7.0 Microsoft Internet Explorer 6.0 SP2 Microsoft Internet Explorer 6.0 SP1 Microsoft Internet Explorer 6.0 Avaya Messaging Application Server 5 Avaya Messaging Application Server 4 Avaya Meeting Exchange - Webportal 0 Avaya Meeting Exchange - Web Conferencing Server 0 Avaya Meeting Exchange - Streaming Server 0 Avaya Meeting Exchange - Recording Server 0 Avaya Meeting Exchange - Client Registration Server 0 Avaya Meeting Exchange 5.0 .0.52 Avaya Meeting Exchange 5.2 SP2 Avaya Meeting Exchange 5.2 SP1 Avaya Meeting Exchange 5.2 Avaya Meeting Exchange 5.1 SP1 Avaya Meeting Exchange 5.1 Avaya Meeting Exchange 5.0 SP2 Avaya Meeting Exchange 5.0 SP1 Avaya Meeting Exchange 5.0 Avaya Communication Server 1000 Telephony Manager 4.0 Avaya Communication Server 1000 Telephony Manager 3.0 Avaya CallPilot 5.0 Avaya CallPilot 4.0 Avaya Aura Conferencing 6.0 Standard Avaya Aura Conferencing 6.0 SP1 Standard |
| Not Vulnerable: | |
Discussion
Microsoft Internet Explorer Multiple Remote Code Execution Vulnerabilities
Microsoft Internet Explorer is prone to multiple remote code-execution vulnerabilities.
Successful exploits will allow an attacker to run arbitrary code in the context of the user running the application. Failed attacks may cause denial-of-service conditions.
Microsoft Internet Explorer is prone to multiple remote code-execution vulnerabilities.
Successful exploits will allow an attacker to run arbitrary code in the context of the user running the application. Failed attacks may cause denial-of-service conditions.
Exploit / POC
Microsoft Internet Explorer Multiple Remote Code Execution Vulnerabilities
These issues were demonstrated at the Pwn2Own 2011 contest.
Reports indicate that CVE-2011-1345 is actively being exploited in the wild in limited targeted attacks.
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service for CVE-2011-1345. This exploit is not otherwise publicly available or known to be circulating in the wild.
These issues were demonstrated at the Pwn2Own 2011 contest.
Reports indicate that CVE-2011-1345 is actively being exploited in the wild in limited targeted attacks.
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service for CVE-2011-1345. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Microsoft Internet Explorer Multiple Remote Code Execution Vulnerabilities
Solution:
The vendor released an update. Please see the reference for details.
Microsoft Internet Explorer 8
Microsoft Internet Explorer 6.0
Solution:
The vendor released an update. Please see the reference for details.
Microsoft Internet Explorer 8
-
Microsoft IE8-Windows6.0-KB2497640-x64.msu
http://www.microsoft.com/downloads/details.aspx?familyid=bc63b233-9db0 -4fb1-a61c-fa7e9e44ba10 -
Microsoft Windows6.1-KB2497640-x86.msu
http://www.microsoft.com/downloads/details.aspx?familyid=59676b71-8b9d -4230-a9e0-b20db3e3ec7e -
Microsoft IE8-WindowsXP-KB2497640-x86-ENU.exe
http://www.microsoft.com/downloads/details.aspx?familyid=689c5496-56c4 -48a6-9f3d-b5f5aaf3e566 -
Microsoft IE8-WindowsServer2003.WindowsXP-KB2497640-x64-ENU.exe
http://www.microsoft.com/downloads/details.aspx?familyid=6d3433ee-c2e1 -433f-a3d9-c049d66e2190 -
Microsoft IE8-WindowsServer2003-KB2497640-x86-ENU.exe
http://www.microsoft.com/downloads/details.aspx?familyid=45feb35b-b24e -4160-adb0-d0b7ae530e90 -
Microsoft Windows6.1-KB2497640-ia64.msu
http://www.microsoft.com/downloads/details.aspx?familyid=af6db318-fbec -4286-a3a7-4081620146e5 -
Microsoft Windows6.1-KB2497640-x64.msu
http://www.microsoft.com/downloads/details.aspx?familyid=3a998678-2678 -489e-8711-39322663147d -
Microsoft IE8-Windows6.0-KB2497640-x86.msu
http://www.microsoft.com/downloads/details.aspx?familyid=5ea94705-4f76 -4b0d-bbbc-afb5e75204bf
Microsoft Internet Explorer 6.0
-
Microsoft WindowsServer2003-KB2497640-x86-ENU.exe
http://www.microsoft.com/downloads/details.aspx?FamilyID=b902c58a-9e2f -4352-8d2f-fffda5344598 -
Microsoft WindowsServer2003.WindowsXP-KB2497640-x64-ENU.exe
http://www.microsoft.com/downloads/details.aspx?FamilyID=986f07ae-0fdc -4be2-8a74-5eb56d4300ef -
Microsoft WindowsXP-KB2497640-x86-ENU.exe
http://www.microsoft.com/downloads/details.aspx?FamilyID=c3a8cec0-f947 -4d4e-a6ae-c7f4f1f311b0 -
Microsoft WindowsServer2003-KB2497640-ia64-ENU.exe
http://www.microsoft.com/downloads/details.aspx?FamilyID=8afe86fc-58b4 -4a95-b047-c09138fa4f5e
References
Microsoft Internet Explorer Multiple Remote Code Execution Vulnerabilities
References:
References:
- (Pwn2Own) Microsoft Internet Explorer onPropertyChange Remote Code Execution Vul (Zero Day Initiative)
- Internet Explorer Homepage (Microsoft)
- Pwn2Own 2011: IE8 on Windows 7 hijacked with 3 vulnerabilities (Zero Day)
- VUPEN Security Research - Microsoft Internet Explorer Property Change Memory Cor ("VUPEN Security Research"
) - ASA-2011-094 MS11-018 Cumulative Security Update for Internet Explorer (2497640) (Avaya)
- Microsoft Security Bulletin MS11-018 (Microsoft)