Lucene search

K
cveMicrosoftCVE-2010-2558
HistoryAug 11, 2010 - 6:47 p.m.

CVE-2010-2558

2010-08-1118:47:50
CWE-362
microsoft
web.nvd.nist.gov
37
cve-2010-2558
race condition
memory corruption
internet explorer
vulnerability
nvd
microsoft

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.244

Percentile

96.7%

Race condition in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to an object in memory, aka “Race Condition Memory Corruption Vulnerability.”

Affected configurations

Nvd
Node
microsoftinternet_explorerMatch6
AND
microsoftwindows_server_2003Match-sp2
OR
microsoftwindows_xpMatch-sp2professionalx64
OR
microsoftwindows_xpMatch-sp3
Node
microsoftinternet_explorerMatch7
AND
microsoftwindows_server_2003Match-sp2
OR
microsoftwindows_server_2008Match--
OR
microsoftwindows_server_2008Match-sp2
OR
microsoftwindows_vistaMatch-sp1
OR
microsoftwindows_vistaMatch-sp2
OR
microsoftwindows_xpMatch-sp2professionalx64
OR
microsoftwindows_xpMatch-sp3
Node
microsoftinternet_explorerMatch8
AND
microsoftwindows_7Match-
OR
microsoftwindows_server_2003Match-sp2
OR
microsoftwindows_server_2008Match--
OR
microsoftwindows_server_2008Match-sp2
OR
microsoftwindows_server_2008Matchr2
OR
microsoftwindows_vistaMatch-sp1
OR
microsoftwindows_vistaMatch-sp2
OR
microsoftwindows_xpMatch-sp2professionalx64
OR
microsoftwindows_xpMatch-sp3
VendorProductVersionCPE
microsoftinternet_explorer6cpe:/a:microsoft:internet_explorer:6:::

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.244

Percentile

96.7%