HTTP: Microsoft Internet Explorer CVE-2016-3292 Memory Corruption

This signature detects attempts to exploit a known vulnerability against Microsoft Internet Explorer. A successful attack can lead to memory corruption and arbitrary code execution.

Extended Description

Microsoft Internet Explorer 10 and 11 mishandles integrity settings and zone settings, which allows remote attackers to bypass a sandbox protection mechanism via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability."

Affected Products

Microsoft internet_explorer

References

CVE: CVE-2016-3292

Short Name
HTTP:STC:IE:CVE-2016-3292-MC
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2016-3292 Corruption Explorer Internet Memory Microsoft
Release Date
09/13/2016
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3415
False Positive
Unknown
Vendors

Microsoft

CVSS Score

5.1

Found a potential security threat?