Security Advisory

CVE-2010-3328

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2010-10-13 18:00:00
Last updated 2024-08-07 03:03:19
Assigner microsoft
State PUBLISHED

Description

Use-after-free vulnerability in the CAttrArray::PrivateFind function in mshtml.dll in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code by setting an unspecified property of a stylesheet object, aka "Uninitialized Memory Corruption Vulnerability."