CVE-2012-4792 | Microsoft Internet Explorer 6/7/8 mshtml.dll CDwnBindInfo resource management (EDB-23785 / Nessus ID 63372)
A vulnerability classified as critical has been found in Microsoft Internet Explorer 6/7/8. This affects the function CDwnBindInfo in the library mshtml.dll. The manipulation leads to improper resource management.
This vulnerability is uniquely identified as CVE-2012-4792. It is possible to initiate the attack remotely. Furthermore, there is an exploit available. Due to its background and reception, this vulnerability has an historic impact.
A worm is spreading, which is automatically exploiting this vulnerability.
It is recommended to upgrade the affected component.