January 19th, 2010

The Sourcefire VRT is aware of a vulnerability affecting Microsoft Internet Explorer. This release also contains an updated user interface.

Details: 

Microsoft Internet Explorer Memory Corruption (CVE-2010-0249): A vulnerability in Microsoft Internet Explorer may allow a remote attacker to execute code on a vulnerable system. The problem occurs when an invalid pointer reference is accessed after an object is deleted. A rule to detect attacks targeting this vulnerability is included in this release and is identified with GID 3, SID 16369. A previously released rule will also detect attacks targeting this vulnerability and is identified with GID 3, SID 16367.

For Assistance