Executive brief
Microsoft Internet Explorer 9 through 11 contains a memory corruption vulnerability (out-of-bounds write) when processing crafted websites. This flaw allows remote attackers to execute arbitrary code or cause a denial-of-service condition.
Affected products
- Microsoft Internet Explorer 9 through 11
Timeline
- 2017-03-16: disclosed: NVD Published Date
- 2017-03-17: patched: MSRC advisory and patch information available
- 2022-05-24: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
- 2022-05-24: exploited: Confirmed exploited in the wild per CISA KEV entry