Skip to content
OnMSFT.com
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
Menu
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
  1. Home
  2. News
  3. Microsoft aware of targeted remote code execution attacks on IE8 and IE9, offers fix-it solution – onmsft.com

Microsoft aware of targeted remote code execution attacks on IE8 and IE9, offers fix-it solution – onmsft.com

Ron Ron
September 17, 2013
2 min read

Internet explorer

Microsoft has released a security advisory bulletin (2887505) today indicating that the company is aware and investigating public reports of a remote code execution vulnerability in all supported versions of Internet Explorer. More specifically, Microsoft is aware of targeted attacks that attempt to exploit this vulnerability in Internet Explorer 8 and Internet Explorer 9.

“The vulnerability exists in the way that Internet Explorer accesses an object in memory that has been deleted or has not been properly allocated. The vulnerability may corrupt memory in a way that could allow an attacker to execute arbitrary code in the context of the current user within Internet Explorer. An attacker could host a specially crafted website that is designed to exploit this vulnerability through Internet Explorer and then convince a user to view the website,” Microsoft explained in a security advisory released on September 17th.

Since Internet Explorer on Windows Server 2003, Windows Server 2008, Windows Server 2008 R2, Windows Server 2012, and Windows Server 2012 R2 all run in a restricted mode called “Enhanced Security Configuration”, the exploitation of this issue is mitigated. However, those on Internet Explorer 8 and Internet Explorer 9 on any other version of Windows are still vulnerable.

Once Microsoft concludes with the investigation, the devices and services giant will either release a security update on the next Patch Tuesday or as an out-of-cycle security update. It all depends on customer needs, as Microsoft puts it.

In the mean time, Microsoft has released a temporary fix-it solution, labeled as “CVE-2013-3893 MSHTML Shim Workaround”, which prevents exploitation of this issue. You can snag this fit-it solution via the download link below.

CVE-2013-3893 MSHTML Shim Workaround

Share This Post:

Share this article:
Tags:
Internet Explorer Internet Explorer 9 Security
Previous Article Updated Kinect for Windows SDK 1.8 released, over 700,000 downloads of the SDK so far – onmsft.com Next Article Windows 8.1 and Windows 8.1 Pro pricing and packaging revealed, costs $120 and $200 respectively – onmsft.com

Related Articles

Chrome and Gemini icons representing Gemini Live voice assistant integration in Chrome

Chrome tests Gemini Live voice assistant in a floating overlay panel

March 14, 2026

Chrome’s Organizer feature may sync Gemini and AI conversations across devices

March 14, 2026

After Chrome, Edge tests launching the browser automatically when you sign into Windows

March 13, 2026

Leave a Comment Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • Chrome tests Gemini Live voice assistant in a floating overlay panel
  • Chrome’s Organizer feature may sync Gemini and AI conversations across devices
  • After Chrome, Edge tests launching the browser automatically when you sign into Windows
  • iPhone Fold Latest Rumors: Display, Cameras, RAM and Price Details Revealed
  • Samsung fears first mobile operating loss due to memory price surge

Recent Comments

No comments to show.
OnMSFT.com

OnMSFT.com covers Microsoft news, reviews, and how-to guides. Formerly known as WinBeta, we have been your source for Microsoft news since 1998.

Categories

  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Gaming
  • Edge
  • Teams

Recent Posts

  • Chrome tests Gemini Live voice assistant in a floating overlay panel
  • Chrome’s Organizer feature may sync Gemini and AI conversations across devices
  • After Chrome, Edge tests launching the browser automatically when you sign into Windows
  • iPhone Fold Latest Rumors: Display, Cameras, RAM and Price Details Revealed
  • Samsung fears first mobile operating loss due to memory price surge

Quick Links

  • About OnMSFT.com
  • Contact OnMSFT
  • Join Our Team
  • Privacy Policy
© 2010–2026 OnMSFT.com LLC. All rights reserved.
About OnMSFT.comContact OnMSFTPrivacy Policy