MS14-029: Security Update for Internet Explorer (2962482)

This script is Copyright (C) 2014 Tenable Network Security, Inc.


Synopsis :

The remote host has a web browser that is affected by multiple memory
corruption vulnerabilities.

Description :

The remote host is missing Internet Explorer (IE) Security Update
2962482.

The installed version of IE is affected by multiple memory corruption
vulnerabilities that could allow an attacker to execute arbitrary code
on the remote host.

See also :

http://technet.microsoft.com/en-us/security/bulletin/ms14-029

Solution :

Microsoft has released a set of patches for 2003, Vista, 2008, 7, 2008
R2, 8, 2012, 8.1, and 2012 R2.

Risk factor :

High / CVSS Base Score : 9.3
(CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 8.1
(CVSS2#E:ND/RL:OF/RC:C)
Public Exploit Available : true

Family: Windows : Microsoft Bulletins

Nessus Plugin ID: 73988 ()

Bugtraq ID: 67299
67301

CVE ID: CVE-2014-0310
CVE-2014-1815