RULE(RULE ID:330896)

Rule General Information
Release Date: 2020-08-24
Rule Name: Microsoft Internet Explorer 11 MSHTML CSplice Use-After-Free Vulnerability (CVE-2014-1785)
Severity:
CVE ID:
Rule Protection Details
Description: Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1769, CVE-2014-1782, CVE-2014-2753, CVE-2014-2755, CVE-2014-2760, CVE-2014-2761, CVE-2014-2772, and CVE-2014-2776.
Impact: A use-after-free vulnerability can be exploited by an attacker in the vulnerable product. Successful exploit may cause some adverse consequences, such as crash of the product, execution of arbitrary code.
Affected OS: Windows, Others
Reference: http://packetstormsecurity.com/files/140233/Microsoft-Internet-Explorer-11-MSHTML-CSpliceTreeEngine-RemoveSplice-Use-After-Free.html
SecurityTrackerID:1030370
ExploitDB:40946
http://blog.skylined.nl/20161220001.html
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://technet.microsoft.com/library/security/ms14-035