HTTP: Microsoft Internet Explorer 10 Buffer Overflow

This signature detects attempts to exploit a known vulnerability in Microsoft Internet Explorer 10. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the targeted application.

Extended Description

Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0321.

Affected Products

Microsoft internet_explorer

References

CVE: CVE-2014-0313

Short Name
HTTP:STC:IE:CVE-2014-0313-BOF
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
10 Buffer CVE-2014-0313 Explorer Internet Microsoft Overflow
Release Date
03/10/2014
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Unknown
Vendors

Microsoft

CVSS Score

9.3

Found a potential security threat?