HTTP: Internet Explorer 8 DOM Uninitialized Memory

This signature detects attempts to exploit a known vulnerability in Microsoft Internet Explorer 8. An attacker can create a malicious Web site containing dangerous script construct, which if accessed by a victim, allows the attacker to gain control of the victim's client browser.

Extended Description

Microsoft Internet Explorer is prone to a remote code-execution vulnerability. Attackers can exploit this issue to execute arbitrary code in the context of the user running the application. Successful exploits will compromise the application and possibly the computer. Failed attacks may cause denial-of-service conditions.

Affected Products

Nortel_networks self-service_media_processing_server,Nortel_networks multimedia_comm_mas

References

BugTraq: 37188

CVE: CVE-2009-3671

Short Name
HTTP:STC:IE:IE-8-DOM-UN-MEM
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
8 CVE-2009-3671 DOM Explorer Internet Memory Uninitialized bid:37188
Release Date
12/08/2009
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Nortel_networks

Microsoft

CVSS Score

9.3

Found a potential security threat?