RULE(RULE ID:312646)

Rule General Information
Release Date: 2016-02-23
Rule Name: WEB-CLIENT Microsoft Internet Explorer Scrollintoview Use after Free Vulnerability -1 (CVE-2015-0017)
Severity:
CVE ID:
Rule Protection Details
Description: Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability".
Impact: A use-after-free vulnerability can be exploited by an attacker in the vulnerable product. Successful exploit may cause some adverse consequences, such as crash of the product, execution of arbitrary code.
Affected OS: Windows
Reference: MicrosoftSecurityBulletin:MS15-009
SecurityFocusBID:72402
SecurityTrackerID:1031723
Solutions
Microsoft has released a patch MS15-009 to eliminate the vulnerability. The patch can be downloaded at http://technet.microsoft.com/security/bulletin/MS15-009