RULE(RULE ID:309658)

Rule General Information
Release Date: 2019-04-30
Rule Name: Microsoft Internet Explorer Use after Free Vulnerability (CVE-2013-3163)
Severity:
CVE ID:
CNNVD ID:
Rule Protection Details
Description: Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability".
Impact: A use-after-free vulnerability can be exploited by an attacker in the vulnerable product. Successful exploit may cause some adverse consequences, such as crash of the product, execution of arbitrary code.
Affected OS: Windows
Reference: https://docs.microsoft.com/en-us/security-updates/securitybulletins/2013/ms13-055
http://www.us-cert.gov/ncas/alerts/TA13-190A
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17363
Solutions
Microsoft has released a patch MS13-055 to eliminate the vulnerability. The patch can be downloaded at:
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2013/ms13-055