Microsoft Internet Explorer CVE-2014-4132 Remote Memory Corruption Vulnerability
BID:70334
Info
Microsoft Internet Explorer CVE-2014-4132 Remote Memory Corruption Vulnerability
| Bugtraq ID: | 70334 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2014-4132 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 14 2014 12:00AM |
| Updated: | Mar 19 2015 08:33AM |
| Credit: | Zhibin Hu of Qihoo 360 and José A. Vázquez of Yenteasy - Security Research, working with VeriSign iDefense Labs |
| Vulnerable: |
Microsoft Internet Explorer 11 Avaya Messaging Application Server 5.2.1 Avaya Messaging Application Server 5.0.1 Avaya Messaging Application Server 5.2 Avaya Messaging Application Server 5.0 Avaya Meeting Exchange - Webportal 6.2 Avaya Meeting Exchange - Webportal 5.0.1 Avaya Meeting Exchange - Webportal 5.0 Avaya Meeting Exchange - Web Conferencing Server 6.2 Avaya Meeting Exchange - Web Conferencing Server 5.0.1 Avaya Meeting Exchange - Web Conferencing Server 5.0 Avaya Meeting Exchange - Streaming Server 6.2 Avaya Meeting Exchange - Streaming Server 5.0.1 Avaya Meeting Exchange - Streaming Server 5.0 Avaya Meeting Exchange - Recording Server 6.2 Avaya Meeting Exchange - Recording Server 5.0.1 Avaya Meeting Exchange - Recording Server 5.0 Avaya Meeting Exchange - Client Registration Server 6.2 Avaya Meeting Exchange - Client Registration Server 5.0.1 Avaya Meeting Exchange - Client Registration Server 5.0 Avaya Communication Server 1000 Telephony Manager 4.0.1 Avaya Communication Server 1000 Telephony Manager 3.0.1 Avaya Communication Server 1000 Telephony Manager 4.0 Avaya Communication Server 1000 Telephony Manager 3.0 Avaya CallPilot 5.1 Avaya CallPilot 4.0.1 Avaya CallPilot 4.0 Avaya Aura Conferencing Standard Edition 6.0 |
| Not Vulnerable: | |
Exploit / POC
Microsoft Internet Explorer CVE-2014-4132 Remote Memory Corruption Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Microsoft Internet Explorer CVE-2014-4132 Remote Memory Corruption Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Microsoft Internet Explorer 11
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Microsoft Internet Explorer 11
-
Microsoft Cumulative Security Update for Internet Explorer 11 for Windows 7 (KB2987107)
http://www.microsoft.com/downloads/details.aspx?FamilyID=6f7630b4-5888 -4e27-ab34-acc09a09146e -
Microsoft Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2987107)
http://www.microsoft.com/downloads/details.aspx?FamilyID=ddd03c82-7d6a -452a-849f-24cf1d7f1908 -
Microsoft Cumulative Security Update for Internet Explorer 11 for Windows 8.1 (KB2987107)
http://www.microsoft.com/downloads/details.aspx?FamilyID=e2e26909-2a1d -4e95-98df-435010882f77 -
Microsoft Cumulative Security Update for Internet Explorer 11 for Windows 8.1 for x64-based Systems (KB2987107
http://www.microsoft.com/downloads/details.aspx?FamilyID=47a5bf9d-6ce3 -49ef-bf07-863716917eeb -
Microsoft Cumulative Security Update for Internet Explorer 11 for Windows Server 2008 R2 for x64-based Systems
http://www.microsoft.com/downloads/details.aspx?FamilyID=93a6b92a-7aee -42a8-a4ea-fc7eeb897194 -
Microsoft Cumulative Security Update for Internet Explorer 11 for Windows Server 2012 R2 (KB2987107)
http://www.microsoft.com/downloads/details.aspx?FamilyID=d60b1064-a617 -4ebc-b41a-fe53d9deb519
References
Microsoft Internet Explorer CVE-2014-4132 Remote Memory Corruption Vulnerability
References:
References: