⚠ Actively exploited in ransomware campaigns
This vulnerability is on the CISA Known Exploited Vulnerabilities list and has been used in known ransomware attacks. CISA required action: Apply updates per vendor instructions.. Due date: 2021-11-17.

CVE-2021-26411

CWE-416Use After Free21 documents11 sources
Severity
8.8HIGH
No vector
EPSS
92.5%
top 0.27%
CISA KEV
KEVRansomware
Added 2021-11-03
Due 2021-11-17
Exploit
Exploited in wild
Active exploitation observed
Timeline
PublishedMar 11
KEV addedNov 3
KEV dueNov 17
Latest updateOct 18
CISA Required Action: Apply updates per vendor instructions.

Description

Internet Explorer Memory Corruption Vulnerability Internet Explorer Memory Corruption Vulnerability

Affected Packages3 packages

CVEListV5microsoft/internet_explorer_91.0.0publication
CVEListV5microsoft/internet_explorer_111.0.0publication
CVEListV5microsoft/microsoft_edge_(edgehtml-based)1.0..0publication

🔴Vulnerability Details

4
Project0
The More You Know, The More You Know You Don’t Know - Project Zero2022-04-01
CVEList
Internet Explorer Memory Corruption Vulnerability2021-03-11
VulnCheck
Microsoft Internet Explorer Memory Corruption Vulnerability2021
Project0
Project Zero RCA: CVE-2021-26411: Internet Explorer MSHTML Double-Free

📋Vendor Advisories

2
CISA
Microsoft Internet Explorer Memory Corruption Vulnerability2021-11-03
Microsoft
Internet Explorer Memory Corruption Vulnerability2021-03-09

🕵️Threat Intelligence

4
Bleepingcomputer
MATA malware framework exploits EDR in attacks on defense firms2023-10-18
Trendmicro
Cinobi Banking Trojan Targets Cryptocurrency Exchange Users via Malvertising2021-08-09
Qualys
March 2021 Patch Tuesday – 82 Vulnerabilities, 10 Critical, Adobe | Qualys2021-03-09
Qualys
March 2021 Patch Tuesday – 82 Vulnerabilities, 10 Critical, Adobe2021-03-09
CVE-2021-26411 (HIGH CVSS 8.8) | Internet Explorer Memory Corruption | cvebase.io