Severity
4.3MEDIUMNVD
EPSS
15.2%
top 5.37%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 14
Latest updateMay 4

Description

Microsoft Internet Explorer 6 through 9 does not properly perform copy-and-paste operations, which allows user-assisted remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Copy and Paste Information Disclosure Vulnerability."

CVSS vector

AV:N/AC:M/C:P/I:N/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

NVDmicrosoft/internet_explorer4 versions+3

Patches

🔴Vulnerability Details

1
GHSA
GHSA-x3jg-rhc2-qpv5: Microsoft Internet Explorer 6 through 9 does not properly perform copy-and-paste operations, which allows user-assisted remote attackers to read conte2022-05-04

📋Vendor Advisories

12
VMware
VMware vMA addresses a security issue2012-05-25
Red Hat
kernel: keys: NULL pointer deref in the user-defined key type2011-11-15
Red Hat
kernel: jbd/jbd2: invalid value of first log block leads to oops2011-11-01
Red Hat
kernel: crypto: ghash: null pointer deref if no key is set2011-10-20
Red Hat
kernel: cifs: signedness issue in CIFSFindNext()2011-08-23

💬Community

2
Bugzilla
CVE-2011-4110 kernel: keys: NULL pointer deref in the user-defined key type2011-11-04
Bugzilla
CVE-2011-2898 kernel: af_packet: infoleak2011-08-04
CVE-2012-0010 — Sensitive Information Exposure | cvebase