RULE(RULE ID:311129)

Rule General Information
Release Date: 2010-03-09
Rule Name: Microsoft Internet Explorer 7 HTML Object Memory Corruption Vulnerability -1 (CVE-2007-0947)
Severity:
CVE ID:
Rule Protection Details
Description: Use-after-free vulnerability in Microsoft Internet Explorer 7 on Windows XP SP2, Windows Server 2003 SP1 or SP2, or Windows Vista allows remote attackers to execute arbitrary code via crafted HTML objects, resulting in accessing deallocated memory of CMarkup objects, aka the second of two "HTML Objects Memory Corruption Vulnerabilities" and a different issue than CVE-2007-0946.
Impact: Remote code execution
Affected OS: Windows
Reference: SecurityFocusBID:23772
CVE-2007-0947
Solutions
Update vendor's patch.