Skip to main content
Live Webinar with SANS (June 25)— Agentic CTI Automation for Fun & ProfitRegister Free
Mallory
Back to intelligence
widely-deployed-product-advisoryactively-exploited-vulnerabilityendpoint-software-vulnerability

Microsoft Fixes 41 Internet Explorer Flaws Including Exploited RCE Bug

Updated 27d agoFirst seen May 26, 202618 sources

Microsoft released security update 3034682 to address 41 vulnerabilities in Internet Explorer 6 through 11, including multiple flaws that could allow remote code execution if a user visited a specially crafted webpage. The most severe issues could let an attacker run code with the same privileges as the current user, making the risk highest on systems where users have administrative rights. Microsoft rated the bulletin Critical for affected Windows client systems and Moderate for affected Windows server systems.

The bulletin said one flaw, CVE-2015-0071, had been exploited in the wild, while CVE-2014-8967 had been publicly disclosed before the patch was issued. Microsoft said the update corrects memory corruption and permission-validation issues, improves ASLR behavior, and strengthens cross-domain policy enforcement. It also noted that systems running Internet Explorer 9, 10, and 11 require updates 3021952 and 3034196 for full protection, with 3023607 and, on some platforms, 3036197 also potentially installed automatically.

Share:
Microsoft Fixes 41 Internet Explorer Flaws Including Exploited RCE Bug
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

16 events from the most recent confirmed update back to the earliest known activity.

16 EVENTS
Mar 1, 20233y ago

Microsoft publishes Security Bulletin MS15-019

Microsoft published Security Bulletin MS15-019, a separate critical security bulletin from the MS14-056, MS14-065, MS15-009, MS15-018, and MS15-032 entries already in the timeline. This represents a distinct Microsoft vulnerability disclosure and patch release event.

Microsoft Security Bulletin MS15-019 - Critical | Microsoft Learn

Microsoft publishes Security Bulletin MS15-018

Microsoft published Security Bulletin MS15-018, a separate critical security bulletin from the MS14-056, MS14-065, MS15-009, and MS15-032 entries already in the timeline. This represents a distinct Microsoft vulnerability disclosure and patch release event.

Microsoft Security Bulletin MS15-018 - Critical | Microsoft Learn

Microsoft publishes Security Bulletin MS14-056

Microsoft published Security Bulletin MS14-056, a separate critical security bulletin from the MS14-065, MS15-009, and MS15-032 entries already in the timeline. This represents a distinct Microsoft vulnerability disclosure and patch release event.

Microsoft Security Bulletin MS14-056 - Critical | Microsoft Learn

Microsoft publishes Security Bulletin MS14-052

Microsoft published Security Bulletin MS14-052, a separate critical security bulletin from the MS14-056, MS14-065, MS15-009, MS15-018, MS15-019, and MS15-032 entries already in the timeline. This represents a distinct Microsoft vulnerability disclosure and patch release event.

Microsoft Security Bulletin MS14-052 - Critical | Microsoft Learn

Microsoft publishes Security Bulletin MS14-051

Microsoft published Security Bulletin MS14-051, a distinct critical security bulletin not already represented in the existing timeline. This constitutes a separate Microsoft vulnerability disclosure and patch release event.

Microsoft Security Bulletin MS14-051 - Critical | Microsoft Learn

Microsoft publishes Security Bulletin MS14-037

Microsoft published Security Bulletin MS14-037, a distinct critical security bulletin not already represented in the existing timeline. This constitutes a separate Microsoft vulnerability disclosure and patch release event.

Microsoft Security Bulletin MS14-037 - Critical | Microsoft Learn

Microsoft publishes Security Bulletin MS14-035

Microsoft published Security Bulletin MS14-035, a distinct critical security bulletin not already represented in the existing timeline. This constitutes a separate Microsoft vulnerability disclosure and patch release event.

Microsoft Security Bulletin MS14-035 - Critical | Microsoft Learn

Microsoft publishes Security Bulletin MS14-029

Microsoft published Security Bulletin MS14-029 as a distinct critical security bulletin. This constitutes a separate Microsoft vulnerability disclosure and patch release event not already represented in the timeline.

Microsoft Security Bulletin MS14-029 - Critical | Microsoft Learn

Microsoft publishes Security Bulletin MS14-021

Microsoft published Security Bulletin MS14-021 as a distinct critical security bulletin. This constitutes a separate Microsoft vulnerability disclosure and patch release event not already represented in the timeline.

Microsoft Security Bulletin MS14-021 - Critical | Microsoft Learn

Microsoft publishes Security Bulletin MS14-018

Microsoft published Security Bulletin MS14-018 as a distinct critical security bulletin. This constitutes a separate Microsoft vulnerability disclosure and patch release event not already represented in the timeline.

Microsoft Security Bulletin MS14-018 - Critical | Microsoft Learn

Microsoft publishes Security Bulletin MS14-010

Microsoft published Security Bulletin MS14-010, a distinct critical security bulletin not already represented in the existing timeline. This constitutes a separate Microsoft vulnerability disclosure and patch release event.

Microsoft Security Bulletin MS14-010 - Critical | Microsoft Learn
Oct 14, 20224y ago

Microsoft publishes Security Bulletin MS14-012

Microsoft published Security Bulletin MS14-012 as part of its March 2014 security releases. The bulletin is listed as Critical for many client platforms and Moderate for many server platforms, affecting multiple supported Windows versions.

Microsoft Security Bulletin Summary for March 2014 | Microsoft Learn
Apr 14, 201511y ago

Microsoft publishes Security Bulletin MS15-032

Microsoft published Security Bulletin MS15-032, a separate critical security bulletin from MS15-009. This represents a distinct Microsoft vulnerability disclosure and patch release event.

Microsoft Security Bulletin MS15-032 - Critical | Microsoft Learn
Mar 4, 201511y ago

Microsoft revises MS15-009 to clarify related update installation

On March 4, 2015, Microsoft revised bulletin MS15-009 to clarify installation details for related updates required for full protection on Internet Explorer 9, 10, and 11. The revision noted dependencies involving updates 3021952 and 3034196, with additional updates 3023607 and in some cases 3036197 potentially installed automatically.

Feb 10, 201511y ago

Microsoft releases IE security update 3034682 in MS15-009

On February 10, 2015, Microsoft published Security Bulletin MS15-009 and released security update 3034682 for Internet Explorer. The update addressed 41 vulnerabilities in Internet Explorer 6 through 11, including a publicly disclosed flaw and an exploited vulnerability, with the most severe issues allowing remote code execution via a specially crafted webpage.

Nov 11, 201412y ago

Microsoft publishes Security Bulletin MS14-065

Microsoft published Security Bulletin MS14-065, a separate critical security bulletin from the MS15-009 and MS15-032 entries already in the timeline. This represents a distinct Microsoft vulnerability disclosure and patch release event.

Microsoft Security Bulletin MS14-065 - Critical | Microsoft Learn
LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

47 LINKEDOpen in app
Vulnerabilities
41 linked
Internet Explorer Memory Corruption VulnerabilityUse-after-free RCE in Microsoft Internet Explorer CSS run-in handlingInternet Explorer Memory Corruption VulnerabilityInternet Explorer 9 Memory Corruption VulnerabilityInternet Explorer 10 and 11 Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer 9 through 11 Memory Corruption RCEInternet Explorer Elevation of Privilege VulnerabilityInternet Explorer 9 and 10 Memory Corruption VulnerabilityInternet Explorer Elevation of Privilege VulnerabilityInternet Explorer ASLR Bypass VulnerabilityInternet Explorer 10 Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer 8 ASLR BypassInternet Explorer Cross-domain Information Disclosure VulnerabilityInternet Explorer 8 and 9 Memory Corruption RCEInternet Explorer 11 Memory Corruption VulnerabilityInternet Explorer 10 and 11 Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer 10 and 11 Memory Corruption RCEInternet Explorer 9 Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer 8 and 10 Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer 11 Memory Corruption VulnerabilityInternet Explorer 10 and 11 Memory Corruption VulnerabilityInternet Explorer 11 Memory Corruption VulnerabilityInternet Explorer 10 and 11 ASLR BypassInternet Explorer Memory Corruption VulnerabilityInternet Explorer 8 and 9 Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer 10 and 11 Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer 11 Memory Corruption VulnerabilityInternet Explorer 10 Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer Memory Corruption VulnerabilityInternet Explorer 9 through 11 Memory Corruption RCE
Affected products
5 linked
Enhanced Mitigation Experience ToolkitInternet ExplorerActive Directory Application ModeActive DirectoryActive Directory Lightweight Directory Service
Organizations
1 linked
Microsoft Corporation
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.

Microsoft Fixes 41 Internet Explorer Flaws Including Exploited RCE Bug | Mallory