Get a Pentest and security assessment of your IT network.

Advisories

Zero Day Initiative Advisory 09-012

Zero Day Initiative Advisory 09-012 – This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Microsoft Internet Explorer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page. The specific flaw exists when processing, in XHTML strict mode, a CSS stylesheet containing a specific combination of style directives one of which must be a ‘zoom’. The fault in processing results in a memory corruption vulnerability which can be leveraged to execute arbitrary code under the context of the current user.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/74837/ZDI-09-012.txt

Source: https://packetstormsecurity.com/files/74837/Zero-Day-Initiative-Advisory-09-012.html

Related posts
Advisories

crossZone.txt

Advisories

Secunia Security Advisory 16900

Advisories

Secunia Security Advisory 19793

Advisories

Secunia Security Advisory 22534