Trend Micro Security

Uninitialized Memory Corruption Vulnerability (CVE-2010-3329)

  危険度: : 緊急
  CVE識別番号: CVE-2010-3329

  概要

mshtmled.dll in Microsoft Internet Explorer 7 and 8 allows remote attackers to execute arbitrary code via a crafted Microsoft Office document that causes the HtmlDlgHelper class destructor to access uninitialized memory, aka "Uninitialized Memory Corruption Vulnerability."

  トレンドマイクロの対策

Apply associated Trend Micro DPI Rules.

  対応方法

  Trend Micro Deep Security DPI Rule Number: 1004468
  Trend Micro Deep Security DPI Rule Name: 1004468 - Uninitialized Memory Corruption Vulnerability (CVE-2010-3329)

  影響を受けるソフトウェア

  • Microsoft IE 7
  • Microsoft IE 8