Microsoft on Wednesday said it is investigating reports of a vulnerability in all supported versions of Internet Explorer, which is to say IE 6 through 8.
"The vulnerability exists due to an invalid flag reference within Internet Explorer," Microsoft said in a security advisory. "It is possible under certain conditions for the invalid flag reference to be accessed after an object is deleted. In a specially-crafted attack, in attempting to access a freed object, Internet Explorer can be caused to allow remote code execution."
|